ISC2 CISSP Practice Question

A financial services company is redesigning its network security architecture to adopt a Zero Trust model, with the primary goal of mitigating the risk of lateral movement. Which of the following changes BEST represents the implementation of a core Zero Trust principle?

  • Requiring every access request to any internal application to be authenticated and authorized based on user identity and device health, regardless of the user's network location.

  • Implementing mandatory annual security awareness training for all employees to reduce the risk of phishing attacks.

  • Deploying a next-generation firewall at the network perimeter with advanced threat intelligence to inspect all ingress and egress traffic.

  • Encrypting all data at rest within the company's data center to protect it from physical theft of hardware.

ISC2 CISSP
Communication and Network Security
Your Score:
Settings & Objectives
Random Mixed
Questions are selected randomly from all chosen topics, with a preference for those you haven’t seen before. You may see several questions from the same objective or domain in a row.
Rotate by Objective
Questions cycle through each objective or domain in turn, helping you avoid long streaks of questions from the same area. You may see some repeat questions, but the distribution will be more balanced across topics.

Check or uncheck an objective to set which questions you will receive.

Bash, the Crucial Exams Chat Bot
AI Bot