During a security audit, a consulting firm notices inconsistencies between the documentation and the environment. Which of the following can keep a record of who made the changes and what the changes are?
Configuration monitoring can keep a record of who made the changes and what the changes are.
Configuration monitoring tools are designed to track changes in system configurations and maintain a history of modifications, including details about who made the changes. This capability is essential during security audits to ensure compliance and identify unauthorized alterations.
Network access control focuses on managing and restricting network access based on predetermined security policies. While it can prevent unauthorized access to the network, it does not track specific changes made to configurations or document who initiated those changes. Thus, it lacks the necessary auditing capabilities for change management.
Configuration monitoring systems are specifically built to log changes in system configurations, including detailed information on what changes were made and by whom. This real-time tracking is crucial for maintaining security and compliance, making it the most suitable choice for recording changes during a security audit.
The Zero Trust model emphasizes strict access controls and verification processes for users trying to access resources, assuming that threats could be internal or external. However, while it enhances security, it does not inherently provide logging or tracking of configuration changes. Therefore, it does not fulfill the requirement of documenting who made changes or what those changes were.
Syslog is a standard for message logging that can capture various system events and activities. Although it can log events related to configuration changes, it does not inherently provide a structured way to track who made specific changes or the details of those changes. It is more of a general logging mechanism rather than a dedicated configuration monitoring solution.
Effective configuration monitoring is crucial for maintaining security and compliance during audits, as it provides detailed records of changes, including who made them. While other options like network access control, Zero Trust, and Syslog contribute to security in different ways, they do not offer the comprehensive change tracking required for thorough documentation as configuration monitoring does.
Related Questions
View allA network engineer configures network ports in a public office. To inc...
An administrator is troubleshooting a Layer 3 communication issue betw...
A company's Chief Information Security Officer (CISO) requires that al...
A network administrator is troubleshooting a connectivity issue betwee...
Which of the following connection methods allows a network engineer to...
Related Quizzes
View allCompTIA A Plus Certification Exam
CompTIA A Plus Exam Questions
CompTIA A Plus 1001 Exams Practice
CompTIA A Plus Practice Exam
CompTIA CySA+ Cybersecurity Analyst Certification all in One Exam Guide
CompTIA Security Plus Exam Answers
Free CompTIA Security Plus Practice Test
CompTIA Security Plus Simulation Questions
CompTIA Security Plus 501 Practice Questions
CompTIA Security Plus Example Questions
- ✓ 500+ Practice Questions
- ✓ Detailed Explanations
- ✓ Progress Analytics
- ✓ Exam Simulations