Pre-Summer Special Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: validbest

Exam CMMC-CCA All Questions
Exam CMMC-CCA All Questions

View all questions & answers for the CMMC-CCA exam

Cyber AB CMMC CMMC-CCA Question # 20 Topic 3 Discussion

CMMC-CCA Exam Topic 3 Question 20 Discussion:
Question #: 20
Topic #: 3

CMMC practice SC.L2-3.13.6 assessment objectives [a] and [b] require contractors’ systems to deny network communications traffic by default [a] and allow network communications traffic by exception [b] respectively. As a CCA, you assess whether an OSC has segmented its network into different zones. The OSC has implemented Access Control Lists (ACLs) on its network devices to permit or deny traffic based on source and destination IP addresses and ports. Additionally, the OSC uses a Fortinet Next-Generation Firewall (NGFW). To monitor their computing environment, theOSC uses a state-of-the-art SIEM. Which of the following assessment methods is NOT a method you would use to assess whether the OSC has met assessment objectives [a] and [b]?


A.

Examine the ACL configurations on the network devices


B.

Observe the SIEM monitoring and logging capabilities


C.

Interview the system administrators about the organization’s network segmentation strategy


D.

Analyze the firewall rules and policy settings on the NGFW


Get Premium CMMC-CCA Questions

Contribute your Thoughts:


Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.