nerdexam
ExamsCAS-002Questions#572
CompTIA

CAS-002 · Question #572

CAS-002 Question #572: Real Exam Question with Answer & Explanation

The correct answer is D: Enforcement of security policies on mobile/remote devices, standard images and device. When all devices must support collaboration, VoIP, and achieve 6-nines availability under equal CIA weighting, enforcing security policies with standard images across all device types provides the most balanced and comprehensive control.

Question

A system architect has the following constraints from the customer: - Confidentiality, Integrity, and Availability (CIA) are all of equal importance. - Average availability must be at least 6 nines (99.9999%). - All devices must support collaboration with every other user device. - All devices must be VoIP and teleconference ready. Which of the following security controls is the BEST to apply to this architecture?

Options

  • ADeployment of multiple standard images based on individual hardware configurations,
  • BEnforcement of strict network access controls and bandwidth minimization techniques, a
  • CDeployment of a unified VDI across all devices, SSD RAID in all servers, multiple identical
  • DEnforcement of security policies on mobile/remote devices, standard images and device

Explanation

When all devices must support collaboration, VoIP, and achieve 6-nines availability under equal CIA weighting, enforcing security policies with standard images across all device types provides the most balanced and comprehensive control.

Common mistakes.

  • A. Multiple images based on individual hardware configurations introduces inconsistency and increases the attack surface, conflicting with the need for uniform security across all collaborating devices.
  • B. Strict bandwidth minimization techniques directly undermine the VoIP and teleconference readiness requirement, as real-time multimedia traffic requires adequate, prioritized bandwidth.
  • C. A centralized VDI introduces a single point of failure that is difficult to achieve 6-nines availability for, and SSD RAID alone does not address the full CIA triad or the mobile/remote device security requirement.

Concept tested. Security architecture balancing CIA, availability, and unified device policy

Reference. https://csrc.nist.gov/publications/detail/sp/800-53/rev-5/final

Community Discussion

No community discussion yet for this question.

Full CAS-002 Practice