Certified Information Systems Security Professional CISSP · Free Practice Question Medium
Question 118
Which of the following is the MOST effective way to secure access to cloud services through a CASB (Cloud Access Security Broker)?
- A Implementing firewalls
- B Enforcing strong password policies
- C Implementing multi-factor authentication
- D Conducting regular security audits
Reveal correct answer
Correct answer: C
Explanation
The correct answer: Implementing multi-factor authentication is the MOST effective way to secure access to cloud services through a CASB. This method adds an additional layer of security by requiring users to provide multiple forms of authentication, such as a password and a one-time code sent to their phone thus making it more difficult for potential intruders to gain access. A CASB can facilitate the enforcement of MFA for cloud services, providing an additional layer of security. The incorrect answers: Firewalls are important for protecting network perimeters and internal network segments but they aren't specifically designed to secure access to cloud services through a CASB. Firewalls mainly focus on blocking or allowing certain types of network traffic, rather than authenticating individual user access to cloud services. Enforcing strong password policies is a vital part of any cybersecurity strategy but passwords alone aren't the most effective way to secure access to cloud services via a CASB. Even the strongest password can be compromised, and if it's the only authentication factor, an attacker can gain access. While regular security audits are crucial for identifying security gaps and ensuring compliance with security policies, they are not the most effective method for securing access to cloud services via a CASB. Audits are typically reactive and not designed to provide real-time security like multi-factor authentication.Discussion
Think the marked answer is wrong, or have a better explanation? Share it below — comments appear after review.
You must be logged in to post a comment.
