CISSP Practice Question (Domain 4: Communication and Network Security)
A remote workforce uses split-tunnel VPN to reduce bandwidth costs. The security team discovers employees are accessing sanctioned SaaS applications directly from home networks, bypassing the corporate proxy and DLP controls. Management values the current performance gains. What is the MOST appropriate recommendation?
A. Switch to full-tunnel VPN to route all traffic through corporate controls
B. Deploy a cloud-based secure web gateway to enforce policy at the endpoint
C. Accept the risk and document the DLP gap as a known exception
D. Restrict SaaS access to corporate-managed devices only
Come back for the answer tomorrow, or study more now!
1
19 comments
Vincent Primiani
7
CISSP Practice Question (Domain 4: Communication and Network Security)
CISSP Study Group
skool.com/cybersecurity-study-group
Share resources, get advice, and connect with peers studying cybersecurity. Join our CISSP study group and connect with fellow professionals today!
Leaderboard (30-day)
Powered by