Question 1 of 30
In designing a secure network architecture for a financial institution, the network engineer must ensure that sensitive data is protected while maintaining accessibility for authorized users. The design includes multiple layers of security controls, such as firewalls, intrusion detection systems (IDS), and data encryption. If the engineer decides to implement a Zero Trust model, which of the following strategies would best support this approach in the context of network segmentation and access control?
Implementing micro-segmentation to isolate workloads and applying strict access controls based on user identity and device posture.
Utilizing a single perimeter firewall to protect the entire network from external threats.
Relying solely on traditional VPNs for remote access without additional authentication measures.
Allowing unrestricted access to internal resources for users within the corporate network.

Preparing for CISCO 500-651 Security Architecture for Systems Engineer (SASE)? Now land the interview.

73% of qualified candidates get rejected because of weak resumes. Build an ATS-optimized, recruiter-ready resume in under 5 minutes - free to start.

Build My Resume Free