PCCET · Question #224
What is a method a security operating platform uses to reduce threats?
The correct answer is A. Enabling applications based on user and device requirements and blocking unneeded. This question asks for a method a security operating platform uses to reduce threats.
Question
What is a method a security operating platform uses to reduce threats?
Options
- AEnabling applications based on user and device requirements and blocking unneeded
- BAllowing all SaaS applications
- CEnabling all cloud native applications that are part of the Dev/Sec/Ops CI/CD pipeline
- DDisabling all SaaS applications
How the community answered
(25 responses)- A88% (22)
- B8% (2)
- D4% (1)
Why each option
This question asks for a method a security operating platform uses to reduce threats.
A security operating platform effectively reduces threats by implementing strict application control, enabling only applications based on legitimate user and device requirements while actively blocking unneeded or unauthorized software. This 'least privilege' approach minimizes the attack surface by preventing the execution of potentially malicious or vulnerable programs.
Allowing all SaaS applications without proper vetting and control introduces significant security risks, as it can expose the organization to unmanaged or vulnerable third-party services.
Enabling all cloud-native applications, even within a CI/CD pipeline, without robust security validation and policy enforcement, is not a method to reduce threats and can introduce vulnerabilities.
Disabling all SaaS applications is an extreme measure that would severely disrupt business operations and productivity, making it an impractical and ineffective security strategy.
Concept tested: Security operating platform threat reduction strategy
Source: https://learn.microsoft.com/en-us/microsoft-365/security/defender-endpoint/attack-surface-reduction-rules-reference
Topics
Community Discussion
No community discussion yet for this question.