A large financial institution has hired you as a security consultant to review their existing cybersecurity architecture. During your assessment, you discover they have implemented a firewall at the perimeter, endpoint protection software on all workstations, and data encryption for their databases. The CISO asks for your recommendation on improving their security posture. Which approach best demonstrates the principle of defense in depth?
Implement network segmentation, deploy intrusion detection systems, add multi-factor authentication, and conduct security awareness training
Invest in advanced threat monitoring systems and hire a 24/7 security operations team
Replace the existing firewall with a next-generation firewall that includes intrusion prevention capabilities, hire a 24/7 security operations team, improve encryption algorithms
Defense in depth requires implementing multiple complementary layers of security controls across different aspects of the system architecture. The correct answer provides diverse controls addressing various security layers: network segmentation to contain threats, intrusion detection for monitoring, multi-factor authentication for access control, and security awareness for the human element. The incorrect options either focus too narrowly on a single security layer (like just adding firewalls), emphasize only detection capabilities, or replace existing controls rather than building additional protective layers throughout the system.
Ask Bash
Bash is our AI bot, trained to help you pass your exam. AI Generated Content may display inaccurate information, always double-check anything important.
What is network segmentation and why is it important for security?
Open an interactive chat with Bash
How do intrusion detection systems (IDS) contribute to defense in depth?
Open an interactive chat with Bash
What is multi-factor authentication (MFA) and why is it essential?
Open an interactive chat with Bash
ISC2 CISSP
Security Architecture and Engineering
Your Score:
Report Issue
Bash, the Crucial Exams Chat Bot
AI Bot
Loading...
Loading...
Loading...
IT & Cybersecurity Package Join Premium for Full Access