ISC2 CISSP Practice Question

A large financial institution has hired you as a security consultant to review their existing cybersecurity architecture. During your assessment, you discover they have implemented a firewall at the perimeter, endpoint protection software on all workstations, and data encryption for their databases. The CISO asks for your recommendation on improving their security posture. Which approach best demonstrates the principle of defense in depth?

  • Implement network segmentation, deploy intrusion detection systems, add multi-factor authentication, and conduct security awareness training

  • Deploy additional firewalls between critical internal network segments, implement phishing exercises, review employee access logs

  • Invest in advanced threat monitoring systems and hire a 24/7 security operations team

  • Replace the existing firewall with a next-generation firewall that includes intrusion prevention capabilities, hire a 24/7 security operations team, improve encryption algorithms

ISC2 CISSP
Security Architecture and Engineering
Your Score:
Settings & Objectives
Random Mixed
Questions are selected randomly from all chosen topics, with a preference for those you haven’t seen before. You may see several questions from the same objective or domain in a row.
Rotate by Objective
Questions cycle through each objective or domain in turn, helping you avoid long streaks of questions from the same area. You may see some repeat questions, but the distribution will be more balanced across topics.

Check or uncheck an objective to set which questions you will receive.

Bash, the Crucial Exams Chat Bot
AI Bot