IIA-CIA-Part1 Exam QuestionsBrowse all questions from this exam

IIA-CIA-Part1 Exam - Question 183


What type of risk management strategy is being employed when an organization installs two firewalls to provide protection from unauthorized access to the network?

Show Answer
Correct Answer: A,C

The organization is avoiding the risk of having a direct network connection to un-trusted networks by installing two firewalls. This serves to create multiple layers of security, reducing the chances of unauthorized access. This approach is commonly referred to as defense-in-depth, which is a primary strategy for avoiding risk by preventing potential threats from reaching critical network resources.

Discussion

3 comments
Sign in to comment
NanachangOption: C
Dec 7, 2020

The answer should be C. I do not understand why A.

hustinOption: A
Dec 10, 2020

I think one firewall is for restriction but two firewalls are just for diversifying the risk

ElvooOption: C
Jun 9, 2024

I think C should be correct.