← All CySA+ Test Flashcard Decks

CySA+ Test Security Architecture and Tools Flashcards

6 cards from real CySA+ Test practice questions. Tap to flip, then mark Knew It or Still Learning — missed cards come back until you master them.

Read the first 6 CySA+ Test Security Architecture and Tools flashcards as text
  1. Which CySA+ architecture concept requires verifying the identity of both users and devices before granting access to resources, regardless of their network location?

    Answer: Zero trust architecture

    Zero trust architecture enforces strict identity verification for every user and device, eliminating implicit trust based on network location.

  2. An analyst needs to prevent a compromised host in one VLAN from accessing sensitive systems in another VLAN. Which network architecture control achieves this?

    Answer: Network segmentation

    Network segmentation divides the network into isolated segments so that a compromise in one segment cannot directly spread to others.

  3. Which tool provides visibility into user and entity behavior by establishing baselines and alerting on anomalous activities like unusual login times or data transfers?

    Answer: UEBA (User and Entity Behavior Analytics)

    UEBA uses machine learning to baseline normal behavior for users and entities, flagging deviations that may indicate insider threats or compromised accounts.

  4. Which security architecture control isolates workloads within a cloud environment by enforcing micro-segmentation policies between individual services?

    Answer: Software-defined networking micro-segmentation

    Micro-segmentation in software-defined networking enforces granular access policies between individual workloads, limiting lateral movement in cloud environments.

  5. A CySA+ analyst discovers that an attacker used a privileged service account to move laterally across systems. Which control would BEST have mitigated this risk?

    Answer: Privileged Access Management (PAM)

    PAM controls, monitors, and limits the use of privileged accounts, reducing the risk of their abuse for lateral movement.

  6. Which security tool acts as an intermediary between users and cloud services, enforcing security policies and providing visibility into cloud application usage?

    Answer: CASB (Cloud Access Security Broker)

    A CASB sits between users and cloud service providers, enforcing security policies such as DLP, access control, and threat detection for cloud apps.