exam questions

Exam CISM All Questions

View all questions & answers for the CISM exam

Exam CISM topic 1 question 319 discussion

Actual exam question from Isaca's CISM
Question #: 319
Topic #: 1
[All CISM Questions]

Which of the following is the BEST method for determining whether a firewall has been configured to provide a comprehensive perimeter defense?

  • A. A port scan of the firewall from an internal source
  • B. A simulated denial of service (DoS) attack against the firewall
  • C. A validation of the current firewall rule set
  • D. A ping test from an external source
Show Suggested Answer Hide Answer
Suggested Answer: C 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
Hugo1717
10 months, 1 week ago
Selected Answer: C
The correct answer is C. A validation of the current firewall rule set. Explanation: Among the options provided, validating the current firewall rule set is the best method for determining whether a firewall has been configured to provide a comprehensive perimeter defense. Here's why this option is the best method: C. A validation of the current firewall rule set: This involves reviewing and analyzing the existing firewall rules to ensure they align with the organization's security policies and objectives. By validating the rule set, you can identify any misconfigurations, unnecessary rules, or potential security gaps. This method directly assesses the effectiveness of the firewall's configuration in providing comprehensive perimeter defense.
upvoted 3 times
...
[Removed]
11 months, 3 weeks ago
Selected Answer: C
validate the rules one by one
upvoted 1 times
...
richck102
1 year ago
Selected Answer: C
C. A validation of the current firewall rule set
upvoted 2 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...