nerdexam
CompTIA

SY0-301 · Question #105

An IT security technician needs to establish host based security for company workstations. Which of the following will BEST meet this requirement?

The correct answer is D. Implement OS hardening by applying GPOs. Host-based security refers to controls applied directly on individual endpoints. Implementing OS hardening via Group Policy Objects (GPOs) applies security settings - such as disabling unnecessary services, enforcing password policies, and restricting access - directly to each…

Security architecture

Question

An IT security technician needs to establish host based security for company workstations. Which of the following will BEST meet this requirement?

Options

  • AImplement IIS hardening by restricting service accounts.
  • BImplement database hardening by applying vendor guidelines.
  • CImplement perimeter firewall rules to restrict access.
  • DImplement OS hardening by applying GPOs.

How the community answered

(28 responses)
  • A
    4% (1)
  • C
    7% (2)
  • D
    89% (25)

Explanation

Host-based security refers to controls applied directly on individual endpoints. Implementing OS hardening via Group Policy Objects (GPOs) applies security settings - such as disabling unnecessary services, enforcing password policies, and restricting access - directly to each workstation, making it the best host-based solution. IIS hardening applies to web servers, not workstations. Database hardening targets database servers. Perimeter firewall rules are a network-level control, not host-based.

Topics

#host hardening#GPO#OS hardening#endpoint security

Community Discussion

No community discussion yet for this question.

Full SY0-301 Practice