CEH v13 · 20 official modules

All 5,000 CEH questions.

Search original practice content, filter by EC-Council module or exam domain, and open any question in revision mode.

0 answered overall

Showing 2,101–2,150 of 5,000 matching questions

50 per page
2101
Module 6 · Foundation Domain 3 · Security network access control Unanswered

During an authorized retail-company assessment (RET-LAB-M06-2101), which action most directly controls the risk related to "network access control"?

View answer choices
  1. Design overlapping controls across identity, endpoint, network, application, and data layers.
  2. Maintain tested playbooks, roles, communications, evidence handling, and exercises.
  3. Maintain a repeatable assessment process tied to asset value and risk ownership.
  4. Use strong authentication, posture checks, restricted onboarding, and continuous reevaluation.
Practice
2102
Module 6 · Foundation Domain 3 · Security network access control Unanswered

During a hospital incident-response exercise (HLT-SOC-M06-2102), which action most directly controls the risk related to "network access control"?

View answer choices
  1. Use strong authentication, posture checks, restricted onboarding, and continuous reevaluation.
  2. Maintain tested playbooks, roles, communications, evidence handling, and exercises.
  3. Maintain a repeatable assessment process tied to asset value and risk ownership.
  4. Design overlapping controls across identity, endpoint, network, application, and data layers.
Practice
2103
Module 6 · Foundation Domain 3 · Security network access control Unanswered

During a university cyber-range engagement (EDU-RANGE-M06-2103), which action most directly controls the risk related to "network access control"?

View answer choices
  1. Maintain a repeatable assessment process tied to asset value and risk ownership.
  2. Use strong authentication, posture checks, restricted onboarding, and continuous reevaluation.
  3. Design overlapping controls across identity, endpoint, network, application, and data layers.
  4. Maintain tested playbooks, roles, communications, evidence handling, and exercises.
Practice
2104
Module 6 · Applied Domain 3 · Security network access control Unanswered

During a financial-services purple-team test (FIN-PT-M06-2104), which action most directly controls the risk related to "network access control"?

View answer choices
  1. Use strong authentication, posture checks, restricted onboarding, and continuous reevaluation.
  2. Maintain tested playbooks, roles, communications, evidence handling, and exercises.
  3. Design overlapping controls across identity, endpoint, network, application, and data layers.
  4. Maintain a repeatable assessment process tied to asset value and risk ownership.
Practice
2105
Module 6 · Applied Domain 3 · Security network access control Unanswered

During a cloud startup security audit (CLD-AUDIT-M06-2105), which action most directly controls the risk related to "network access control"?

View answer choices
  1. Design overlapping controls across identity, endpoint, network, application, and data layers.
  2. Maintain a repeatable assessment process tied to asset value and risk ownership.
  3. Maintain tested playbooks, roles, communications, evidence handling, and exercises.
  4. Use strong authentication, posture checks, restricted onboarding, and continuous reevaluation.
Practice
2106
Module 6 · Applied Domain 3 · Security network access control Unanswered

During a government risk-validation project (GOV-RISK-M06-2106), which action most directly controls the risk related to "network access control"?

View answer choices
  1. Use strong authentication, posture checks, restricted onboarding, and continuous reevaluation.
  2. Maintain a repeatable assessment process tied to asset value and risk ownership.
  3. Maintain tested playbooks, roles, communications, evidence handling, and exercises.
  4. Design overlapping controls across identity, endpoint, network, application, and data layers.
Practice
2107
Module 6 · Applied Domain 3 · Security network access control Unanswered

During an e-commerce application review (ECOM-WEB-M06-2107), which action most directly controls the risk related to "network access control"?

View answer choices
  1. Maintain a repeatable assessment process tied to asset value and risk ownership.
  2. Use strong authentication, posture checks, restricted onboarding, and continuous reevaluation.
  3. Design overlapping controls across identity, endpoint, network, application, and data layers.
  4. Maintain tested playbooks, roles, communications, evidence handling, and exercises.
Practice
2108
Module 6 · Advanced Domain 3 · Security network access control Unanswered

During a manufacturing and OT security review (MFG-OT-M06-2108), which action most directly controls the risk related to "network access control"?

View answer choices
  1. Maintain tested playbooks, roles, communications, evidence handling, and exercises.
  2. Design overlapping controls across identity, endpoint, network, application, and data layers.
  3. Use strong authentication, posture checks, restricted onboarding, and continuous reevaluation.
  4. Maintain a repeatable assessment process tied to asset value and risk ownership.
Practice
2109
Module 6 · Advanced Domain 3 · Security network access control Unanswered

During a mobile-services penetration test (MOB-TEST-M06-2109), which action most directly controls the risk related to "network access control"?

View answer choices
  1. Maintain tested playbooks, roles, communications, evidence handling, and exercises.
  2. Maintain a repeatable assessment process tied to asset value and risk ownership.
  3. Design overlapping controls across identity, endpoint, network, application, and data layers.
  4. Use strong authentication, posture checks, restricted onboarding, and continuous reevaluation.
Practice
2110
Module 6 · Advanced Domain 3 · Security network access control Unanswered

During a global-enterprise mock CEH scenario (ENT-MOCK-M06-2110), which action most directly controls the risk related to "network access control"?

View answer choices
  1. Maintain a repeatable assessment process tied to asset value and risk ownership.
  2. Use strong authentication, posture checks, restricted onboarding, and continuous reevaluation.
  3. Design overlapping controls across identity, endpoint, network, application, and data layers.
  4. Maintain tested playbooks, roles, communications, evidence handling, and exercises.
Practice
2111
Module 6 · Foundation Domain 3 · Security network access control Unanswered

During an authorized retail-company assessment (RET-LAB-M06-2111), which evidence best supports an assessment of "network access control"?

View answer choices
  1. NAC decisions showing identity, posture, assigned role, and resulting network access.
  2. A risk register with likelihood, impact, owner, treatment, and review date.
  3. A timeline linking alerts, decisions, evidence, containment, and recovery actions.
  4. An architecture map showing which independent controls interrupt each attack path.
Practice
2112
Module 6 · Foundation Domain 3 · Security network access control Unanswered

During a hospital incident-response exercise (HLT-SOC-M06-2112), which evidence best supports an assessment of "network access control"?

View answer choices
  1. An architecture map showing which independent controls interrupt each attack path.
  2. A risk register with likelihood, impact, owner, treatment, and review date.
  3. A timeline linking alerts, decisions, evidence, containment, and recovery actions.
  4. NAC decisions showing identity, posture, assigned role, and resulting network access.
Practice
2113
Module 6 · Foundation Domain 3 · Security network access control Unanswered

During a university cyber-range engagement (EDU-RANGE-M06-2113), which evidence best supports an assessment of "network access control"?

View answer choices
  1. NAC decisions showing identity, posture, assigned role, and resulting network access.
  2. A timeline linking alerts, decisions, evidence, containment, and recovery actions.
  3. An architecture map showing which independent controls interrupt each attack path.
  4. A risk register with likelihood, impact, owner, treatment, and review date.
Practice
2114
Module 6 · Applied Domain 3 · Security network access control Unanswered

During a financial-services purple-team test (FIN-PT-M06-2114), which evidence best supports an assessment of "network access control"?

View answer choices
  1. An architecture map showing which independent controls interrupt each attack path.
  2. NAC decisions showing identity, posture, assigned role, and resulting network access.
  3. A risk register with likelihood, impact, owner, treatment, and review date.
  4. A timeline linking alerts, decisions, evidence, containment, and recovery actions.
Practice
2115
Module 6 · Applied Domain 3 · Security network access control Unanswered

During a cloud startup security audit (CLD-AUDIT-M06-2115), which evidence best supports an assessment of "network access control"?

View answer choices
  1. NAC decisions showing identity, posture, assigned role, and resulting network access.
  2. A risk register with likelihood, impact, owner, treatment, and review date.
  3. A timeline linking alerts, decisions, evidence, containment, and recovery actions.
  4. An architecture map showing which independent controls interrupt each attack path.
Practice
2116
Module 6 · Applied Domain 3 · Security network access control Unanswered

During a government risk-validation project (GOV-RISK-M06-2116), which evidence best supports an assessment of "network access control"?

View answer choices
  1. An architecture map showing which independent controls interrupt each attack path.
  2. A risk register with likelihood, impact, owner, treatment, and review date.
  3. A timeline linking alerts, decisions, evidence, containment, and recovery actions.
  4. NAC decisions showing identity, posture, assigned role, and resulting network access.
Practice
2117
Module 6 · Applied Domain 3 · Security network access control Unanswered

During an e-commerce application review (ECOM-WEB-M06-2117), which evidence best supports an assessment of "network access control"?

View answer choices
  1. A timeline linking alerts, decisions, evidence, containment, and recovery actions.
  2. An architecture map showing which independent controls interrupt each attack path.
  3. NAC decisions showing identity, posture, assigned role, and resulting network access.
  4. A risk register with likelihood, impact, owner, treatment, and review date.
Practice
2118
Module 6 · Advanced Domain 3 · Security network access control Unanswered

During a manufacturing and OT security review (MFG-OT-M06-2118), which evidence best supports an assessment of "network access control"?

View answer choices
  1. An architecture map showing which independent controls interrupt each attack path.
  2. A risk register with likelihood, impact, owner, treatment, and review date.
  3. NAC decisions showing identity, posture, assigned role, and resulting network access.
  4. A timeline linking alerts, decisions, evidence, containment, and recovery actions.
Practice
2119
Module 6 · Advanced Domain 3 · Security network access control Unanswered

During a mobile-services penetration test (MOB-TEST-M06-2119), which evidence best supports an assessment of "network access control"?

View answer choices
  1. NAC decisions showing identity, posture, assigned role, and resulting network access.
  2. A timeline linking alerts, decisions, evidence, containment, and recovery actions.
  3. A risk register with likelihood, impact, owner, treatment, and review date.
  4. An architecture map showing which independent controls interrupt each attack path.
Practice
2120
Module 6 · Advanced Domain 3 · Security network access control Unanswered

During a global-enterprise mock CEH scenario (ENT-MOCK-M06-2120), which evidence best supports an assessment of "network access control"?

View answer choices
  1. An architecture map showing which independent controls interrupt each attack path.
  2. A risk register with likelihood, impact, owner, treatment, and review date.
  3. A timeline linking alerts, decisions, evidence, containment, and recovery actions.
  4. NAC decisions showing identity, posture, assigned role, and resulting network access.
Practice
2121
Module 6 · Foundation Domain 3 · Security network segmentation Unanswered

During an authorized retail-company assessment (RET-LAB-M06-2121), which statement most accurately defines "network segmentation"?

View answer choices
  1. Separation of systems into controlled zones with restricted communication paths.
  2. Coordinated preparation, detection, analysis, containment, eradication, recovery, and improvement after incidents.
  3. Layering independent preventive, detective, and corrective controls so one failure is not decisive.
  4. Identification and evaluation of threats, vulnerabilities, likelihood, and impact to support treatment decisions.
Practice
2122
Module 6 · Foundation Domain 3 · Security network segmentation Unanswered

During a hospital incident-response exercise (HLT-SOC-M06-2122), which statement most accurately defines "network segmentation"?

View answer choices
  1. Layering independent preventive, detective, and corrective controls so one failure is not decisive.
  2. Separation of systems into controlled zones with restricted communication paths.
  3. Identification and evaluation of threats, vulnerabilities, likelihood, and impact to support treatment decisions.
  4. Coordinated preparation, detection, analysis, containment, eradication, recovery, and improvement after incidents.
Practice
2123
Module 6 · Foundation Domain 3 · Security network segmentation Unanswered

During a university cyber-range engagement (EDU-RANGE-M06-2123), which statement most accurately defines "network segmentation"?

View answer choices
  1. Coordinated preparation, detection, analysis, containment, eradication, recovery, and improvement after incidents.
  2. Identification and evaluation of threats, vulnerabilities, likelihood, and impact to support treatment decisions.
  3. Separation of systems into controlled zones with restricted communication paths.
  4. Layering independent preventive, detective, and corrective controls so one failure is not decisive.
Practice
2124
Module 6 · Applied Domain 3 · Security network segmentation Unanswered

During a financial-services purple-team test (FIN-PT-M06-2124), which statement most accurately defines "network segmentation"?

View answer choices
  1. Layering independent preventive, detective, and corrective controls so one failure is not decisive.
  2. Identification and evaluation of threats, vulnerabilities, likelihood, and impact to support treatment decisions.
  3. Coordinated preparation, detection, analysis, containment, eradication, recovery, and improvement after incidents.
  4. Separation of systems into controlled zones with restricted communication paths.
Practice
2125
Module 6 · Applied Domain 3 · Security network segmentation Unanswered

During a cloud startup security audit (CLD-AUDIT-M06-2125), which statement most accurately defines "network segmentation"?

View answer choices
  1. Coordinated preparation, detection, analysis, containment, eradication, recovery, and improvement after incidents.
  2. Layering independent preventive, detective, and corrective controls so one failure is not decisive.
  3. Separation of systems into controlled zones with restricted communication paths.
  4. Identification and evaluation of threats, vulnerabilities, likelihood, and impact to support treatment decisions.
Practice
2126
Module 6 · Applied Domain 3 · Security network segmentation Unanswered

During a government risk-validation project (GOV-RISK-M06-2126), which statement most accurately defines "network segmentation"?

View answer choices
  1. Layering independent preventive, detective, and corrective controls so one failure is not decisive.
  2. Separation of systems into controlled zones with restricted communication paths.
  3. Identification and evaluation of threats, vulnerabilities, likelihood, and impact to support treatment decisions.
  4. Coordinated preparation, detection, analysis, containment, eradication, recovery, and improvement after incidents.
Practice
2127
Module 6 · Applied Domain 3 · Security network segmentation Unanswered

During an e-commerce application review (ECOM-WEB-M06-2127), which statement most accurately defines "network segmentation"?

View answer choices
  1. Separation of systems into controlled zones with restricted communication paths.
  2. Coordinated preparation, detection, analysis, containment, eradication, recovery, and improvement after incidents.
  3. Identification and evaluation of threats, vulnerabilities, likelihood, and impact to support treatment decisions.
  4. Layering independent preventive, detective, and corrective controls so one failure is not decisive.
Practice
2128
Module 6 · Advanced Domain 3 · Security network segmentation Unanswered

During a manufacturing and OT security review (MFG-OT-M06-2128), which statement most accurately defines "network segmentation"?

View answer choices
  1. Layering independent preventive, detective, and corrective controls so one failure is not decisive.
  2. Identification and evaluation of threats, vulnerabilities, likelihood, and impact to support treatment decisions.
  3. Coordinated preparation, detection, analysis, containment, eradication, recovery, and improvement after incidents.
  4. Separation of systems into controlled zones with restricted communication paths.
Practice
2129
Module 6 · Advanced Domain 3 · Security network segmentation Unanswered

During a mobile-services penetration test (MOB-TEST-M06-2129), which statement most accurately defines "network segmentation"?

View answer choices
  1. Separation of systems into controlled zones with restricted communication paths.
  2. Layering independent preventive, detective, and corrective controls so one failure is not decisive.
  3. Coordinated preparation, detection, analysis, containment, eradication, recovery, and improvement after incidents.
  4. Identification and evaluation of threats, vulnerabilities, likelihood, and impact to support treatment decisions.
Practice
2130
Module 6 · Advanced Domain 3 · Security network segmentation Unanswered

During a global-enterprise mock CEH scenario (ENT-MOCK-M06-2130), which statement most accurately defines "network segmentation"?

View answer choices
  1. Separation of systems into controlled zones with restricted communication paths.
  2. Identification and evaluation of threats, vulnerabilities, likelihood, and impact to support treatment decisions.
  3. Coordinated preparation, detection, analysis, containment, eradication, recovery, and improvement after incidents.
  4. Layering independent preventive, detective, and corrective controls so one failure is not decisive.
Practice
2131
Module 6 · Foundation Domain 3 · Security network segmentation Unanswered

During an authorized retail-company assessment (RET-LAB-M06-2131), which risk is most directly associated with "network segmentation"?

View answer choices
  1. Controls chosen without risk context may protect low-value assets while critical risks remain.
  2. Flat networks make lateral movement and broad compromise easier.
  3. Reliance on a single control creates a direct path when that control fails or is bypassed.
  4. Unplanned actions can destroy evidence, prolong compromise, or disrupt recovery.
Practice
2132
Module 6 · Foundation Domain 3 · Security network segmentation Unanswered

During a hospital incident-response exercise (HLT-SOC-M06-2132), which risk is most directly associated with "network segmentation"?

View answer choices
  1. Flat networks make lateral movement and broad compromise easier.
  2. Reliance on a single control creates a direct path when that control fails or is bypassed.
  3. Unplanned actions can destroy evidence, prolong compromise, or disrupt recovery.
  4. Controls chosen without risk context may protect low-value assets while critical risks remain.
Practice
2133
Module 6 · Foundation Domain 3 · Security network segmentation Unanswered

During a university cyber-range engagement (EDU-RANGE-M06-2133), which risk is most directly associated with "network segmentation"?

View answer choices
  1. Reliance on a single control creates a direct path when that control fails or is bypassed.
  2. Unplanned actions can destroy evidence, prolong compromise, or disrupt recovery.
  3. Controls chosen without risk context may protect low-value assets while critical risks remain.
  4. Flat networks make lateral movement and broad compromise easier.
Practice
2134
Module 6 · Applied Domain 3 · Security network segmentation Unanswered

During a financial-services purple-team test (FIN-PT-M06-2134), which risk is most directly associated with "network segmentation"?

View answer choices
  1. Flat networks make lateral movement and broad compromise easier.
  2. Controls chosen without risk context may protect low-value assets while critical risks remain.
  3. Unplanned actions can destroy evidence, prolong compromise, or disrupt recovery.
  4. Reliance on a single control creates a direct path when that control fails or is bypassed.
Practice
2135
Module 6 · Applied Domain 3 · Security network segmentation Unanswered

During a cloud startup security audit (CLD-AUDIT-M06-2135), which risk is most directly associated with "network segmentation"?

View answer choices
  1. Reliance on a single control creates a direct path when that control fails or is bypassed.
  2. Flat networks make lateral movement and broad compromise easier.
  3. Controls chosen without risk context may protect low-value assets while critical risks remain.
  4. Unplanned actions can destroy evidence, prolong compromise, or disrupt recovery.
Practice
2136
Module 6 · Applied Domain 3 · Security network segmentation Unanswered

During a government risk-validation project (GOV-RISK-M06-2136), which risk is most directly associated with "network segmentation"?

View answer choices
  1. Flat networks make lateral movement and broad compromise easier.
  2. Reliance on a single control creates a direct path when that control fails or is bypassed.
  3. Unplanned actions can destroy evidence, prolong compromise, or disrupt recovery.
  4. Controls chosen without risk context may protect low-value assets while critical risks remain.
Practice
2137
Module 6 · Applied Domain 3 · Security network segmentation Unanswered

During an e-commerce application review (ECOM-WEB-M06-2137), which risk is most directly associated with "network segmentation"?

View answer choices
  1. Unplanned actions can destroy evidence, prolong compromise, or disrupt recovery.
  2. Controls chosen without risk context may protect low-value assets while critical risks remain.
  3. Reliance on a single control creates a direct path when that control fails or is bypassed.
  4. Flat networks make lateral movement and broad compromise easier.
Practice
2138
Module 6 · Advanced Domain 3 · Security network segmentation Unanswered

During a manufacturing and OT security review (MFG-OT-M06-2138), which risk is most directly associated with "network segmentation"?

View answer choices
  1. Flat networks make lateral movement and broad compromise easier.
  2. Controls chosen without risk context may protect low-value assets while critical risks remain.
  3. Unplanned actions can destroy evidence, prolong compromise, or disrupt recovery.
  4. Reliance on a single control creates a direct path when that control fails or is bypassed.
Practice
2139
Module 6 · Advanced Domain 3 · Security network segmentation Unanswered

During a mobile-services penetration test (MOB-TEST-M06-2139), which risk is most directly associated with "network segmentation"?

View answer choices
  1. Reliance on a single control creates a direct path when that control fails or is bypassed.
  2. Controls chosen without risk context may protect low-value assets while critical risks remain.
  3. Flat networks make lateral movement and broad compromise easier.
  4. Unplanned actions can destroy evidence, prolong compromise, or disrupt recovery.
Practice
2140
Module 6 · Advanced Domain 3 · Security network segmentation Unanswered

During a global-enterprise mock CEH scenario (ENT-MOCK-M06-2140), which risk is most directly associated with "network segmentation"?

View answer choices
  1. Unplanned actions can destroy evidence, prolong compromise, or disrupt recovery.
  2. Controls chosen without risk context may protect low-value assets while critical risks remain.
  3. Reliance on a single control creates a direct path when that control fails or is bypassed.
  4. Flat networks make lateral movement and broad compromise easier.
Practice
2141
Module 6 · Foundation Domain 3 · Security network segmentation Unanswered

During an authorized retail-company assessment (RET-LAB-M06-2141), which action most directly controls the risk related to "network segmentation"?

View answer choices
  1. Segment by trust and function, enforce policy, and continuously validate reachability.
  2. Design overlapping controls across identity, endpoint, network, application, and data layers.
  3. Maintain tested playbooks, roles, communications, evidence handling, and exercises.
  4. Maintain a repeatable assessment process tied to asset value and risk ownership.
Practice
2142
Module 6 · Foundation Domain 3 · Security network segmentation Unanswered

During a hospital incident-response exercise (HLT-SOC-M06-2142), which action most directly controls the risk related to "network segmentation"?

View answer choices
  1. Design overlapping controls across identity, endpoint, network, application, and data layers.
  2. Maintain a repeatable assessment process tied to asset value and risk ownership.
  3. Segment by trust and function, enforce policy, and continuously validate reachability.
  4. Maintain tested playbooks, roles, communications, evidence handling, and exercises.
Practice
2143
Module 6 · Foundation Domain 3 · Security network segmentation Unanswered

During a university cyber-range engagement (EDU-RANGE-M06-2143), which action most directly controls the risk related to "network segmentation"?

View answer choices
  1. Segment by trust and function, enforce policy, and continuously validate reachability.
  2. Maintain tested playbooks, roles, communications, evidence handling, and exercises.
  3. Maintain a repeatable assessment process tied to asset value and risk ownership.
  4. Design overlapping controls across identity, endpoint, network, application, and data layers.
Practice
2144
Module 6 · Applied Domain 3 · Security network segmentation Unanswered

During a financial-services purple-team test (FIN-PT-M06-2144), which action most directly controls the risk related to "network segmentation"?

View answer choices
  1. Design overlapping controls across identity, endpoint, network, application, and data layers.
  2. Maintain a repeatable assessment process tied to asset value and risk ownership.
  3. Maintain tested playbooks, roles, communications, evidence handling, and exercises.
  4. Segment by trust and function, enforce policy, and continuously validate reachability.
Practice
2145
Module 6 · Applied Domain 3 · Security network segmentation Unanswered

During a cloud startup security audit (CLD-AUDIT-M06-2145), which action most directly controls the risk related to "network segmentation"?

View answer choices
  1. Maintain tested playbooks, roles, communications, evidence handling, and exercises.
  2. Design overlapping controls across identity, endpoint, network, application, and data layers.
  3. Segment by trust and function, enforce policy, and continuously validate reachability.
  4. Maintain a repeatable assessment process tied to asset value and risk ownership.
Practice
2146
Module 6 · Applied Domain 3 · Security network segmentation Unanswered

During a government risk-validation project (GOV-RISK-M06-2146), which action most directly controls the risk related to "network segmentation"?

View answer choices
  1. Design overlapping controls across identity, endpoint, network, application, and data layers.
  2. Maintain a repeatable assessment process tied to asset value and risk ownership.
  3. Segment by trust and function, enforce policy, and continuously validate reachability.
  4. Maintain tested playbooks, roles, communications, evidence handling, and exercises.
Practice
2147
Module 6 · Applied Domain 3 · Security network segmentation Unanswered

During an e-commerce application review (ECOM-WEB-M06-2147), which action most directly controls the risk related to "network segmentation"?

View answer choices
  1. Segment by trust and function, enforce policy, and continuously validate reachability.
  2. Maintain a repeatable assessment process tied to asset value and risk ownership.
  3. Maintain tested playbooks, roles, communications, evidence handling, and exercises.
  4. Design overlapping controls across identity, endpoint, network, application, and data layers.
Practice
2148
Module 6 · Advanced Domain 3 · Security network segmentation Unanswered

During a manufacturing and OT security review (MFG-OT-M06-2148), which action most directly controls the risk related to "network segmentation"?

View answer choices
  1. Design overlapping controls across identity, endpoint, network, application, and data layers.
  2. Maintain a repeatable assessment process tied to asset value and risk ownership.
  3. Maintain tested playbooks, roles, communications, evidence handling, and exercises.
  4. Segment by trust and function, enforce policy, and continuously validate reachability.
Practice
2149
Module 6 · Advanced Domain 3 · Security network segmentation Unanswered

During a mobile-services penetration test (MOB-TEST-M06-2149), which action most directly controls the risk related to "network segmentation"?

View answer choices
  1. Maintain tested playbooks, roles, communications, evidence handling, and exercises.
  2. Design overlapping controls across identity, endpoint, network, application, and data layers.
  3. Segment by trust and function, enforce policy, and continuously validate reachability.
  4. Maintain a repeatable assessment process tied to asset value and risk ownership.
Practice
2150
Module 6 · Advanced Domain 3 · Security network segmentation Unanswered

During a global-enterprise mock CEH scenario (ENT-MOCK-M06-2150), which action most directly controls the risk related to "network segmentation"?

View answer choices
  1. Segment by trust and function, enforce policy, and continuously validate reachability.
  2. Maintain tested playbooks, roles, communications, evidence handling, and exercises.
  3. Maintain a repeatable assessment process tied to asset value and risk ownership.
  4. Design overlapping controls across identity, endpoint, network, application, and data layers.
Practice