nerdexam
CompTIA

CAS-003 · Question #408

A recent overview of the network's security and storage applications reveals a large amount of data that needs to be isolated for security reasons. Below are the critical applications and devices…

The correct answer is B. Log forwarding F. Zones. Data aggregation - collecting and correlating events from multiple sources - is achieved through log forwarding (B). By configuring each critical device (firewall, core switches, virtual environment, NAC) to forward logs to a central SIEM or log aggregator, security teams can…

Enterprise Security Operations

Question

A recent overview of the network's security and storage applications reveals a large amount of data that needs to be isolated for security reasons. Below are the critical applications and devices configured on the network:

Firewall Core switches RM server Virtual environment NAC solution The security manager also wants data from all critical applications to be aggregated to correlate events from multiple sources. Which of the following must be configured in certain applications to help ensure data aggregation and data isolation are implemented on the critical applications and devices? (Select TWO).

Options

  • ARouting tables
  • BLog forwarding
  • CData remanants
  • DPort aggregation
  • ENIC teaming
  • FZones

How the community answered

(51 responses)
  • A
    2% (1)
  • B
    80% (41)
  • C
    4% (2)
  • D
    10% (5)
  • E
    4% (2)

Explanation

Data aggregation - collecting and correlating events from multiple sources - is achieved through log forwarding (B). By configuring each critical device (firewall, core switches, virtual environment, NAC) to forward logs to a central SIEM or log aggregator, security teams can correlate events across the entire environment. Data isolation - separating sensitive data from other network traffic - is achieved through zones (F). Network zones (e.g., DMZ, trusted zone, untrusted zone) segment the network so that sensitive data only flows within defined boundaries, enforced typically by the firewall. Routing tables (A) direct traffic but do not enforce isolation on their own. Data remnants (C) is not a security control. Port aggregation (D) and NIC teaming (E) are bandwidth/redundancy technologies, not security isolation controls.

Topics

#log forwarding#network zones#SIEM#data isolation

Community Discussion

No community discussion yet for this question.

Full CAS-003 Practice