Q: 16
Protection-in-depth is the strategy of:
Options
Discussion
A , exam reports usually say defense-in-depth means stacking multiple layers around the asset.
Call it it's D for this one. I think you usually protect what matters most, so more valuable assets get more layers, right? Might be missing something but that's how I've always approached it. Let me know if you see it differently.
Option D here. I figured you apply security based on value, so higher-value assets get more precautions. Not fully sure though, since "defense-in-depth" makes me think about priorities too. Any disagreements?
A
Probably A, since defense-in-depth is all about layers around the asset, not just deterrence or assigning controls to everything.
Be respectful. No spam.