Security and Risk Management Question #121

Which remote access policy most effectively demonstrates the 'Trust but Verify' principle in a highly regulated financial firm?

A. Granting access based on predefined IP and MAC address allow-lists.
B. Adopting a Zero Trust network architecture with ongoing verification and posture checks.
C. Allowing senior management unrestricted access with passive anomaly monitoring.
D. Using a VPN with 2FA and conducting periodic monthly security audits.
Domain Concept: Security and Risk Management

This scenario evaluates management-level decision making in Security and Risk Management. In CISSP exam scenarios, evaluate answers through executive governance, risk assessment, life safety, and due diligence before implementing technical controls.

💡 View the Answer & Detailed Explanation

The correct answer to this scenario-based question requires an understanding of the CISSP Managerial Mindset. Register to view our in-depth explanation and access 1100+ adaptive questions completely free.

Fuel the Mission ☕

Keep the vault updated and the servers running.

$
Secure Payment via PayPal

Verified Excellence

Spread the Word

If you like us, share us with your peers.

Scroll to Top