A company is redesigning its network architecture after experiencing a data breach where an attacker with compromised VPN credentials accessed multiple internal systems. The CISO wants to implement a security model that continuously validates identity and enforces least privilege access controls for all users and devices, regardless of network location. Which of the following security approaches would BEST address these requirements?
The correct answer is Zero Trust Architecture. Zero Trust Architecture is built on the principle of "never trust, always verify" and treats all users, devices, and network traffic as potentially hostile, regardless of whether they are inside or outside the traditional network perimeter. Unlike traditional security models that focus on defending the perimeter, Zero Trust continuously verifies identity, authenticates and authorizes every access request, enforces least privilege, and monitors for suspicious activities throughout the entire session.
Network Segmentation is a good security practice but focuses on dividing the network into segments rather than continuously verifying all access. Defense in Depth uses multiple layers of security but doesn't necessarily verify each access request continually. Role-Based Access Control is an important component of identity management but doesn't encompass the full scope of the continuous verification and device validation that Zero Trust provides across all resources regardless of network location.
Ask Bash
Bash is our AI bot, trained to help you pass your exam. AI Generated Content may display inaccurate information, always double-check anything important.
What is Zero Trust Architecture?
Open an interactive chat with Bash
What is the principle of least privilege?
Open an interactive chat with Bash
How does continuous verification work in Zero Trust?
Open an interactive chat with Bash
ISC2 CISSP
Security Architecture and Engineering
Your Score:
Report Issue
Bash, the Crucial Exams Chat Bot
AI Bot
Loading...
Loading...
Loading...
IT & Cybersecurity Package Join Premium for Full Access