Summer Certification Special Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: force70

Zscaler Digital Transformation Administrator ZDTA Question # 51 Topic 6 Discussion

Zscaler Digital Transformation Administrator ZDTA Question # 51 Topic 6 Discussion

ZDTA Exam Topic 6 Question 51 Discussion:
Question #: 51
Topic #: 6

A microsegmentation policy set contains a broad “allow employees to internal applications” rule before more specific controls. An incident review found SMB access from non-finance hosts to a finance file share.

Which refinement best addresses the unintended access while improving the internal security posture?


A.

Add bandwidth QoS constraints to the internal applications segment so non-finance SMB attempts are deprioritized at runtime


B.

Insert deception assets in the finance segment to divert suspicious SMB traffic away from the file share and collect telemetry


C.

Tighten URL Filtering for internal destinations so SMB-related domains resolve poorly in non-finance contexts


D.

Reorder the rules so the deny for non-finance SMB is evaluated before broad employee allows, and scope the SMB policy to finance hosts and device posture


Get Premium ZDTA Questions

Contribute your Thoughts:


Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.