According to NIST, what are the key mechanisms for defining,
managing, and enforcing policies in a ZTA?
A. Data access policy, public key infrastructure (PKI), and identity and access management (IAM)
B. Control plane, data plane, and application plane
C. Policy decision point (PDP), policy enforcement point (PEP), and
policy information point (PIP)
D. Policy engine (PE), policy administrator (PA), and policy broker (PB)
正解:C
解説: (Pass4Test メンバーにのみ表示されます)
質問 2:
Which approach to ZTA strongly emphasizes proper governance of
access privileges and entitlements for specific assets?
A. ZTA using network infrastructure and SDPs
B. ZTA using micro-segmentation
C. ZTA using enhanced identity governance
D. ZTA using device application sandboxing
正解:C
解説: (Pass4Test メンバーにのみ表示されます)
質問 3:
Which of the following is a key principle of ZT and is required for its implementation?
A. Encrypting all communications between any two endpoints
B. Making no assumptions about an entity's trustworthiness when it
requests access to a resource
C. Requiring that authentication and explicit authorization must occur after network access has been granted
D. Implementing strong anti-phishing email filters
正解:B
解説: (Pass4Test メンバーにのみ表示されます)
質問 4:
How can we use ZT to ensure that only legitimate users can access
a SaaS or PaaS? Select the best answer.
A. Integrating behavior analysis and geofencing as part of ZT controls
B. Enforcing multi-factor authentication (MFA) and single-sign on
(SSO)
C. Implementing micro-segmentation and mutual Transport Layer
Security (mTLS)
D. Configuring the security assertion markup language (SAML) service
provider only to accept requests from the designated ZT gateway
正解:B
解説: (Pass4Test メンバーにのみ表示されます)
質問 5:
Scenario: As a ZTA security administrator, you aim to enforce the
principle of least privilege for private cloud network access. Which
ZTA policy entity is mainly responsible for crafting and maintaining
these policies?
A. Policy enforcement point (PEP)
B. Policy administrator (PA)
C. Policy decision point (PDP)
D. Gateway enforcing access policies
正解:C
解説: (Pass4Test メンバーにのみ表示されます)
Miyakawa -
「最短で」「確実に合格」するためのノウハウだね。ほんとうにCCZTの問題集を買って大正解だ。