Activity
Mon
Wed
Fri
Sun
Aug
Sep
Oct
Nov
Dec
Jan
Feb
Mar
Apr
May
Jun
What is this?
Less
More

Memberships

CISSP Study Group

2.2k members • Free

2 contributions to CISSP Study Group
CISSP Practice Question (Domain 4: Communication and Network Security)
A remote workforce uses split-tunnel VPN to reduce bandwidth costs. The security team discovers employees are accessing sanctioned SaaS applications directly from home networks, bypassing the corporate proxy and DLP controls. Management values the current performance gains. What is the MOST appropriate recommendation? A. Switch to full-tunnel VPN to route all traffic through corporate controls B. Deploy a cloud-based secure web gateway to enforce policy at the endpoint C. Accept the risk and document the DLP gap as a known exception D. Restrict SaaS access to corporate-managed devices only Come back for the answer tomorrow, or study more now!
0 likes • Mar 19
C. Going out on a limb here. The bypass is already happening and management value the performance gain. C could be proposed as a "recommendation", and it would be up to the business to decide if they would be willing to accept the risk and document the DLP gap.
Introductions
Welcome to the group! Please share what you hope to gain from being here, and for fun, tell us the best piece of advice you've ever received!
2 likes • Feb 5
Having just joined the group to help with my studies and to contribute my thoughts where I can. Best piece of advice I have heard is to maintain consistency over perfection.
1-2 of 2
@hiten-mistry-8319
Lead Architect for Cloud and Enterprise Solutions

Active 6h ago
Joined Feb 5, 2026
Powered by