PSE-SASE · Question #13
Which component of the secure access service edge (SASE) solution provides complete session protection, regardless of whether a user is on or off the corporate network?
The correct answer is A. Zero Trust. Zero Trust is correct because its core principle - "never trust, always verify" - applies to every session regardless of where the user is connecting from. Unlike perimeter-based security that trusts users once they're "inside" the network, Zero Trust continuously authenticates…
Question
Which component of the secure access service edge (SASE) solution provides complete session protection, regardless of whether a user is on or off the corporate network?
Options
- AZero Trust
- Bthreat prevention
- Csingle-pass architecture (SPA)
- DDNS Security
How the community answered
(17 responses)- A88% (15)
- B6% (1)
- D6% (1)
Explanation
Zero Trust is correct because its core principle - "never trust, always verify" - applies to every session regardless of where the user is connecting from. Unlike perimeter-based security that trusts users once they're "inside" the network, Zero Trust continuously authenticates and authorizes every session, making it inherently location-agnostic.
Why the others are wrong:
- B. Threat prevention is a security capability (blocking malware, exploits, etc.) within SASE, not a framework governing session trust. It doesn't address the on/off-network distinction.
- C. Single-pass architecture (SPA) is an efficiency feature - it processes traffic through all security checks in one pass to reduce latency. It's about performance, not session protection scope.
- D. DNS Security is a specific control that guards against DNS-based attacks and malicious domains. It's one layer of protection, not a holistic session-protection model.
Memory tip: Think of Zero Trust as "location-blind security" - it doesn't care if you're in the office or a coffee shop. The phrase "never trust, always verify" is the giveaway that Zero Trust is the answer whenever a question mentions protection that works regardless of location or network.
Topics
Community Discussion
No community discussion yet for this question.