Cyber AB Certified CMMC Assessor (CCA) Exam CMMC-CCA Question # 25 Topic 3 Discussion

Cyber AB Certified CMMC Assessor (CCA) Exam CMMC-CCA Question # 25 Topic 3 Discussion

CMMC-CCA Exam Topic 3 Question 25 Discussion:
Question #: 25
Topic #: 3

CMMC practice SC.L2-3.13.6 assessment objectives [a] and [b] require contractors’ systems to deny network communications traffic by default [a] and allow network communications traffic by exception [b] respectively. As a CCA, you assess whether an OSC has segmented its network into different zones. The OSC has implemented Access Control Lists (ACLs) on its network devices to permit or deny traffic based on source and destination IP addresses and ports. Additionally, the OSC uses a Fortinet Next-Generation Firewall (NGFW). To monitor their computing environment, theOSC uses a state-of-the-art SIEM. Which of the following assessment methods is NOT a method you would use to assess whether the OSC has met assessment objectives [a] and [b]?


A.

Examine the ACL configurations on the network devices


B.

Observe the SIEM monitoring and logging capabilities


C.

Interview the system administrators about the organization’s network segmentation strategy


D.

Analyze the firewall rules and policy settings on the NGFW


Get Premium CMMC-CCA Questions

Contribute your Thoughts:


Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.