nerdexam
GIAC

GSEC · Question #319

A company disables cd drives for users; what defense strategy is this a part of?

The correct answer is C. Protected Enclaves. Disabling CD drives restricts hardware access within a defined secure zone, which is a core characteristic of the protected enclaves defense strategy.

Defense in Depth and Protocols

Question

A company disables cd drives for users; what defense strategy is this a part of?

Options

  • AUniform Protection
  • BInformation-Centric
  • CProtected Enclaves
  • DVector-oriented

How the community answered

(56 responses)
  • A
    13% (7)
  • B
    5% (3)
  • C
    79% (44)
  • D
    4% (2)

Why each option

Disabling CD drives restricts hardware access within a defined secure zone, which is a core characteristic of the protected enclaves defense strategy.

AUniform Protection

Uniform protection applies identical security controls across all systems regardless of sensitivity, rather than creating segmented zones with targeted hardware restrictions.

BInformation-Centric

Information-centric defense focuses on protecting data itself as it flows across systems, rather than restricting specific hardware peripherals at an endpoint.

CProtected EnclavesCorrect

The protected enclaves strategy segments an environment into isolated, secure zones where access to resources and hardware is tightly controlled and limited to what is necessary. Disabling removable media like CD drives enforces that boundary by preventing unauthorized data exfiltration or malware introduction within the enclave.

DVector-oriented

Vector-oriented defense identifies and mitigates specific attack pathways at a high level, and does not describe creating isolated zones with enforced hardware access controls.

Concept tested: Protected enclaves defense strategy for endpoint hardware control

Source: https://csrc.nist.gov/publications/detail/sp/800-27/rev-a/final

Topics

#defense in depth#protected enclaves#removable media#access restriction

Community Discussion

No community discussion yet for this question.

Full GSEC Practice