exam questions

Exam SY0-601 All Questions

View all questions & answers for the SY0-601 exam

Exam SY0-601 topic 1 question 239 discussion

Actual exam question from CompTIA's SY0-601
Question #: 239
Topic #: 1
[All SY0-601 Questions]

Which of the following documents provides guidance regarding the recommended deployment of network security systems from the manufacturer?

  • A. Cloud control matrix
  • B. Reference architecture
  • C. NIST RMF
  • D. CIS Top 20
Show Suggested Answer Hide Answer
Suggested Answer: B 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
dansecu
Highly Voted 2 years, 8 months ago
Selected Answer: B
Correct answer is B, becouse the vendorrs are responsble for their products and solutions and they are providing reference arhitectures. CIS Top 20 - is a security controls framework..
upvoted 18 times
...
NerdAlert
Highly Voted 2 years, 3 months ago
Selected Answer: D
WAIT! I have the Security+ Study Guide book, and Reference Architecture is only mentioned ONCE briefly in section 5.2 - it says: CSA (Cloud Security Alliance) Reference Architecture is also known as CSA Enterprise Architecture, and it is related to the CSA's cloud security tools and methods to assess the security of a cloud computing environment. THATS IT. 2 pages before that - "Center for Internet Security (CIS) provides OS, application, and hardware security config guides for a wide range of products." their mission is best practice cyber defense solutions and they provide solutions via crowdsourcing It's D!
upvoted 11 times
sujon_london
1 year, 10 months ago
This explanation may helps or differentiates The **CIS (Center for Internet Security)** provides the CIS Controls and the CIS Benchmarks, including the CIS Top 20 Critical Security Controls. The CIS Top 20 is a prioritized set of actions designed to improve an organization's cybersecurity posture. It outlines specific steps that organizations can take to enhance their security and protect against common cyber threats. The Center for Internet Security is a nonprofit organization that focuses on enhancing cybersecurity readiness and response for both public and private sectors. Answer is B
upvoted 2 times
RamnathKM
1 year, 3 months ago
CIS 11. 11. Secure Configuration for Network Devices, such as Firewalls, Routers, and Switches
upvoted 1 times
...
...
user1234493
2 years, 2 months ago
Uhm... I will come back to it.
upvoted 1 times
...
LeonardSnart
2 years ago
I have to agree with you, the only mention of reference architecture in any of the 7 Sec+ books I have is only about cloud security. The top 20 list seems to refer to CIS Controls, " The CIS Controls are controls for securing an organization and consist of more than 20 basic and advanced cybersecurity recommendations." [Comptia Security+ Seventh Edition by Mark Ciampa] "One excellent example of benchmarks is the collection of CIS Controls from the Center for Internet Security, the same folks who made the CIS Benchmarks mentioned earlier. These platform-specific benchmarks are wonderfully detailed and are an excellent tool for those of us who need a more step-by-step guide for securing a broad cross-section of platforms." [Mike Meyers' Security+ Certification Guide Third Edition SY0-601] I'll also agree it's more likely to be D than B in this case.
upvoted 2 times
...
...
Dapsie
Most Recent 1 year, 1 month ago
Selected Answer: B
Reading the question slowly shows me the document's source is the manufacturer of the security solution.
upvoted 1 times
...
AspiringNerd
1 year, 2 months ago
Selected Answer: B
The document that provides guidance regarding the recommended deployment of network security systems from the manufacturer is: B. Reference architecture. A reference architecture is a document or model provided by a manufacturer or vendor that outlines best practices, design principles, and recommended configurations for deploying their network security systems. It typically includes diagrams, specifications, and guidelines for implementing the manufacturer's products in a secure and efficient manner. Reference architectures help organizations understand how to deploy and integrate network security systems effectively to meet their security requirements and objectives. It specifically asks from the manufacturer.
upvoted 2 times
...
LordJaraxxus
1 year, 3 months ago
Selected Answer: B
In cybersecurity, reference architecture is a document or set of documents that provides a set of standards. As an example, a software reference architecture documents high-level design decisions. It may stress the need to create reusable modules and follow a specific standard related to interfaces. Some software reference architecture documents list procedures, functions, and methods that a software project should use. You won’t find a single reference architecture that meets the needs of all projects. Instead, the key is that complex projects often use one to standardize everyone’s efforts on a project.
upvoted 2 times
...
Teleco0997
1 year, 7 months ago
Selected Answer: B
The Center for Internet Security (CIS) Top 20 Critical Security Controls is a set of best practices designed to help organizations improve their cybersecurity posture. While it provides valuable security controls, it may not focus on the deployment specifics recommended by manufacturers. Answer is B
upvoted 3 times
...
sujon_london
1 year, 10 months ago
The CIS (Center for Internet Security) provides the CIS Controls and the CIS Benchmarks, including the CIS Top 20 Critical Security Controls. The CIS Top 20 is a prioritized set of actions designed to improve an organization's cybersecurity posture. It outlines specific steps that organizations can take to enhance their security and protect against common cyber threats. The Center for Internet Security is a nonprofit organization that focuses on enhancing cybersecurity readiness and response for both public and private sectors. Therefore it’s vendor’s responsibility to produce reference architectures
upvoted 2 times
...
ApplebeesWaiter1122
1 year, 11 months ago
Selected Answer: B
A reference architecture is a document that provides guidance and best practices on how to deploy and configure specific technology solutions or systems. It typically comes from the manufacturer or vendor of the product and offers a recommended design and deployment approach to achieve security, performance, and other desired outcomes. It serves as a blueprint for organizations to follow when implementing the technology in their environment.
upvoted 4 times
...
aw23
2 years, 1 month ago
cannot find "Reference architecture" in the exam objective
upvoted 3 times
LO353
1 year, 9 months ago
cca csm
upvoted 1 times
...
...
tutita
2 years, 2 months ago
Selected Answer: B
A reference architecture is a document or set of documents that provides recommended structures and integrations of IT products and services to form a solution. The reference architecture embodies accepted industry best practices, typically suggesting the optimal delivery method for specific technologies.
upvoted 2 times
...
ronniehaang
2 years, 5 months ago
Selected Answer: B
B. Reference Architecture A reference architecture provides a blueprint for deploying a specific technology solution, including the network security systems. It outlines the recommended deployment architecture, components, and technologies that are necessary for a secure and effective deployment of the solution. The reference architecture provides step-by-step instructions on how to implement the solution, ensuring that all necessary security measures are taken and that the deployment is done in the most secure manner possible. It provides best practices, design patterns, and guidelines to help organizations ensure the security and stability of their network security systems.
upvoted 2 times
...
asum
2 years, 5 months ago
Enterprise reference architecture (ea.cloudsecurityalliance.org)—best practice methodology and tools for CSPs to use in architecting cloud solutions. The solutions are divided across a number of domains, such as risk management and infrastructure, application, and presentation services.
upvoted 1 times
...
[Removed]
2 years, 6 months ago
Is kinda impossible to look something over the internet that talks about this reference architecture thing.. Compare to CIS Top 20 that talks about network security and it looks as a better answer for CIS Top 20. But who knows.. I could be wrong..
upvoted 1 times
...
carpathia
2 years, 7 months ago
I am not sure about this ref arch. I have actually found it in Conklin's book, but under Cloud Security, pg 587
upvoted 2 times
...
carpathia
2 years, 7 months ago
I haven't seen this Reference Architecture in any of the Comptia books, videos etc. It doesn't mean it doesn't exist and can be used in th exam.
upvoted 2 times
...
G4ct756
2 years, 8 months ago
Selected Answer: B
Definitely B. For example : aws's Reference Architecture Examples and Best Practices site. https://aws.amazon.com/architecture/ - includes best practices , example and recommendations for aws environment usage.
upvoted 2 times
...
Mahougbe
2 years, 8 months ago
Selected Answer: B
Answer is B
upvoted 2 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...