CISSP Practice Question: ABC Corporation is implementing Network Access Control (NAC) to secure its network.…
Correct Answer: B. Posture assessment enforcement
Explanation (CISSP Manager Logic):
Posture assessment allows management to enforce security compliance by verifying the health and configuration of an endpoint before granting access. This ensures that the business risk associated with non-compliant or infected devices is mitigated at the network edge.
By implementing this solution, you:
- Ensure devices meet minimum security baselines like current antivirus signatures.
- Automate the quarantine of non-compliant systems to prevent lateral movement.
- Reduce the administrative burden of manual compliance audits.
While the other options are relevant, they fall short because:
- A: 802.1X provides port-based authentication for identity but does not inherently inspect the internal health or software status of the device.
- C: MAC address authentication is easily spoofed and only identifies the hardware, offering no insight into security policy compliance.
- D: Web authentication validates user credentials via a captive portal but lacks the technical capability to scan for antivirus definitions.
Think like a manager:
Prioritize solutions that enforce policy compliance and verify system integrity before granting trust. Security is not just about who is connecting, but the state of the device they are using.
Ready to find out if you'd pass?
5,000+ expert-calibrated questions, adaptive CAT mock exams, and gap analysis that shows exactly what to study next.
Try 5 free questions Start 7-day free trial