exam questions

Exam CS0-002 All Questions

View all questions & answers for the CS0-002 exam

Exam CS0-002 topic 1 question 188 discussion

Actual exam question from CompTIA's CS0-002
Question #: 188
Topic #: 1
[All CS0-002 Questions]

The Chief Information Officer (CIO) of a large healthcare institution is concerned about all machines having direct access to sensitive patient information. Which of the following should the security analyst implement to BEST mitigate the risk of sensitive data exposure?

  • A. A cloud access service broker system
  • B. NAC to ensure minimum standards are met
  • C. MFA on all workstations
  • D. Network segmentation
Show Suggested Answer Hide Answer
Suggested Answer: D 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
mcNik
Highly Voted 4 years, 1 month ago
Comptia really like segmentation.
upvoted 38 times
2Fish
2 years, 3 months ago
For real.. but for real, Segmentation makes sense here.
upvoted 1 times
...
...
arvig
Highly Voted 4 years, 1 month ago
I was thinking the same ! CompTIA segmentation+ haha...
upvoted 17 times
talosDevbot
2 years, 4 months ago
LOL xD
upvoted 2 times
...
...
novolyus
Most Recent 1 year, 7 months ago
Selected Answer: D
It is talking about machines, not users. So it is not NAC
upvoted 1 times
...
Kickuh06
1 year, 11 months ago
Selected Answer: D
From what I've seen so far, if either "API" or "Segmentation" is in one of the answers, that's the answer. no, but really, Segmentation makes the most sense.
upvoted 3 times
...
Dutch012
2 years ago
From what I know NAC is able to Control access to the applications and resources users aim to access. So I am going with B.
upvoted 1 times
...
TheStudiousPeepz
2 years, 8 months ago
Selected Answer: D
As long as the device adheres to NAC it will let them on, which means the answer is D
upvoted 2 times
...
R00ted
2 years, 8 months ago
Selected Answer: B
NAC solutions are designed to manage the systems that connect directly to an organization's wired or wireless network. They provide excellent protection against intruders who seek to gain access to the organization's information resources by physically accessing a facility and connecting a device to the physical network. They don't provide protection against intruders seeking to gain access over a network connection. That's where firewalls enter the picture
upvoted 1 times
R00ted
2 years, 8 months ago
Changing this answer to network segmentation
upvoted 5 times
...
...
Weezyfbaby
2 years, 9 months ago
Selected Answer: D
Network segmentation, in a general sense, means clustering systems that work in a similar capacity and isolating them from other clusters. Dividing systems gives enterprises the ability to prioritize the security of networks containing highly sensitive data over those with low or even moderately sensitive data.
upvoted 2 times
...
Cizzla7049
2 years, 9 months ago
Selected Answer: B
NAC segments endpoints on the network. This makes more sense than network segmentation. Will you have different networks to access the info? Makes more sense to have same network but segment the endpoints and what access and provileges theh have
upvoted 2 times
...
Cizzla7049
2 years, 9 months ago
I choose NAC. network accesss control, this is a better anseer than segmentation
upvoted 1 times
...
miabe
2 years, 11 months ago
Selected Answer: D
looks good to me
upvoted 1 times
...
FrancisBakon
2 years, 11 months ago
I think the keyword here is "direct access". So may be that is why NW/segmentation is what they are looking for.
upvoted 1 times
...
FrancisBakon
2 years, 11 months ago
Selected Answer: D
Another example of a forced question from an already thought answer. There is no mention of segmentation here https://owasp.org/www-project-top-ten/2017/A3_2017-Sensitive_Data_Exposure but all other answers except D makes less sense
upvoted 1 times
...
Xyz_40
3 years, 5 months ago
CASB works best here though. But this is COMPTIA
upvoted 1 times
SgtDeath
3 years, 4 months ago
Cloud Access Security broker - aka for the Cloud Access. this would be speaking of Segmentation to make sure only certain systems allowed to access the data.
upvoted 1 times
...
NerdAlert
2 years, 2 months ago
CASB helps enforce security policies on cloud data. It doesn't say cloud anywhere here
upvoted 1 times
...
...
Practice_all
3 years, 11 months ago
NW Segmentation can only accomplish this given the other options.
upvoted 3 times
...
SniipZ
4 years ago
Network Segmentation
upvoted 3 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...