An organization is implementing a security architecture for their critical infrastructure systems that control industrial equipment. Which physical network segmentation method provides the highest level of security by ensuring complete isolation from untrusted networks?
An air-gapped network provides the highest level of security through complete physical isolation from untrusted networks, including the internet. In an air-gapped environment, there is no physical connection between the secure network and any external networks, making it substantially more difficult for external threat actors to gain access through network-based attacks. This is why air-gapped networks are commonly used for critical infrastructure, military systems, and other high-security environments.
In-band management uses the same network path for both data and management traffic, which doesn't provide isolation. Out-of-band management uses a separate network for management traffic but still maintains connectivity. DMZ implementation creates buffer zones between networks but doesn't provide complete physical isolation.
Ask Bash
Bash is our AI bot, trained to help you pass your exam. AI Generated Content may display inaccurate information, always double-check anything important.
What is an air-gapped network?
Open an interactive chat with Bash
Why is physical segmentation important for critical infrastructure?
Open an interactive chat with Bash
What are the differences between in-band and out-of-band management?
Open an interactive chat with Bash
ISC2 CISSP
Communication and Network Security
Your Score:
Report Issue
Bash, the Crucial Exams Chat Bot
AI Bot
Loading...
Loading...
Loading...
IT & Cybersecurity Package Join Premium for Full Access