GIAC
GSEC · Question #319
GSEC Question #319: Real Exam Question with Answer & Explanation
The correct answer is C. Protected Enclaves. Disabling CD drives restricts hardware access within a defined secure zone, which is a core characteristic of the protected enclaves defense strategy.
Question
A company disables cd drives for users; what defense strategy is this a part of?
Options
- AUniform Protection
- BInformation-Centric
- CProtected Enclaves
- DVector-oriented
Explanation
Disabling CD drives restricts hardware access within a defined secure zone, which is a core characteristic of the protected enclaves defense strategy.
Common mistakes.
- A. Uniform protection applies identical security controls across all systems regardless of sensitivity, rather than creating segmented zones with targeted hardware restrictions.
- B. Information-centric defense focuses on protecting data itself as it flows across systems, rather than restricting specific hardware peripherals at an endpoint.
- D. Vector-oriented defense identifies and mitigates specific attack pathways at a high level, and does not describe creating isolated zones with enforced hardware access controls.
Concept tested. Protected enclaves defense strategy for endpoint hardware control
Reference. https://csrc.nist.gov/publications/detail/sp/800-27/rev-a/final
Community Discussion
No community discussion yet for this question.