nerdexam
CompTIA

SY0-701 · Question #960

A company that operates with most of its infrastructure in the cloud had its development environment breached. The attackers gained access via a public-facing development application and were able…

The correct answer is A. Moving each environment to a separate VPC in the company cloud account. Placing development and production environments in separate VPCs provides strong network isolation, preventing attackers from pivoting between them even if one environment is

Submitted by deeparc· Mar 6, 2026Security architecture

Question

A company that operates with most of its infrastructure in the cloud had its development environment breached. The attackers gained access via a public-facing development application and were able to pivot to the production environment. Which of the following architecture changes would best prevent this from occurring again?

Options

  • AMoving each environment to a separate VPC in the company cloud account
  • BDeploying firewalls in the company cloud account
  • CMigrating the development environment to an on-premises environment
  • DImplementing security groups restricting access between environments

How the community answered

(28 responses)
  • A
    57% (16)
  • B
    14% (4)
  • C
    7% (2)
  • D
    21% (6)

Explanation

Placing development and production environments in separate VPCs provides strong network isolation, preventing attackers from pivoting between them even if one environment is

Community Discussion

No community discussion yet for this question.

Full SY0-701 Practice