exam questions

Exam SY0-601 All Questions

View all questions & answers for the SY0-601 exam

Exam SY0-601 topic 1 question 605 discussion

Actual exam question from CompTIA's SY0-601
Question #: 605
Topic #: 1
[All SY0-601 Questions]

An organization would like to store customer data on a separate part of the network that is not accessible to users on the mam corporate network. Which of the following should the administrator use to accomplish this goal?

  • A. Segmentation
  • B. Isolation
  • C. Patching
  • D. Encryption
Show Suggested Answer Hide Answer
Suggested Answer: A 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
ApplebeesWaiter1122
Highly Voted 1 year, 9 months ago
Selected Answer: A
Segmentation involves dividing a network into separate subnetworks or segments, each with its own security controls and access permissions. By segmenting the network, the administrator can isolate sensitive customer data from the main corporate network, reducing the risk of unauthorized access to the data.
upvoted 18 times
andresalcedo
1 year, 9 months ago
Isolation is more appropriate for achieving the goal of storing customer data on a separate part of the network that is not accessible to users on the corporate network. While segmentation (Option A) can be a part of the isolation solution, the most direct and specific answer is network isolation, as it ensures complete separation and inaccessibility between the isolated parts of the network.
upvoted 4 times
Alcpt
6 months, 4 weeks ago
It's not isolation. With isolation, think total air gap with no connectivity. To any vnets.
upvoted 1 times
...
CS3000
1 year, 8 months ago
Thanks GPT!
upvoted 5 times
BD69
1 year ago
ChatGPT4 suggested Segmentation. Isolation is a completely separate network, if you take the definition of it to heart. Question mentions separate part of the network, not an isolated one. In reality, completely isolating the customer data (the info you work with every day), would make running the company a lot more difficult.
upvoted 3 times
...
...
Peshokp
1 year, 5 months ago
I think also Isolation is more appropriate. It’s extra security after segmentation. Network segmentation involves partitioning a network into smaller networks, while network isolation involves developing and enforcing a ruleset for controlling the communications between specific hosts and services with group policy ACL
upvoted 2 times
...
...
...
ApplebeesWaiter1122
Highly Voted 1 year, 8 months ago
*On Exam, Taken On July 31, 2023*
upvoted 15 times
...
AbdullahMohammad251
Most Recent 10 months ago
Selected Answer: A
Isolation ensures that sensitive systems or data are physically or logically disconnected from other networks or systems. -Physical isolation involves segregating an entire network from others or a system from external interference. Faraday cages and air-gapped networks exemplify physical isolation. -Logical isolation is achieved through segmentation, dividing a large network into smaller isolated segments. The scenario specifies that customer data remains within our network but in an isolated section apart from the main corporate network.
upvoted 1 times
...
JBSPLAT
11 months, 1 week ago
Selected Answer: A
Questions specifies it should not be accessible to "users", not admins. Segmentation is the way to go. Isolation, by most applications, would also prevent administrators from accessing it through the network.
upvoted 2 times
...
jerseydude
11 months, 3 weeks ago
IMO, Answer is A because of the wording "separate part of the network." It doesn't say, "Separate network" which would imply isolation.
upvoted 1 times
...
mikzer
11 months, 3 weeks ago
Selected Answer: B
Isolation is what, segmentation is how.
upvoted 1 times
...
spearous
11 months, 3 weeks ago
Selected Answer: B
B is right. some chose A, but segmentation still accessible from main network, it is possible. however, isolation, say air gap or something like that, is fully not accessible.
upvoted 2 times
...
Nemish71
11 months, 3 weeks ago
Selected Answer: B
Segmentation divides a network into smaller, controlled segments for security purposes, while isolation completely separates a network or system to protect sensitive assets or mitigate risks.
upvoted 1 times
...
toffer96
11 months, 3 weeks ago
"mam" corporate network?
upvoted 1 times
...
Geronemo
12 months ago
Answer is B. Isolation It asks for the most APPROPIATE choice. Isolation involves physically or logically separating different parts of the network to prevent unauthorized access. By isolating the network segment containing customer data from the main corporate network, the administrator ensures that only authorized personnel can access this sensitive information. This approach enhances security by reducing the risk of unauthorized access or data breaches.
upvoted 1 times
...
_deleteme_
1 year ago
Going with B, based on the additional information from 701 Study Guide from Dion Training. Now that there is a 701 exam, it makes sense why some material tested is not found on 601. Isolation seems to fit ■ Isolation - Isolate vulnerable systems from the enterprise network ■ Segmentation - Divide the network into segments to limit the impact of breaches Professor Messer 601 With an isolation policy we can disable the connection between this laptop and the rest of the network. And we might also put this device on its own isolated VLAN, which means that it would be able to communicate to other devices on the isolated VLAN, but no one else inside of the organization. https://www.professormesser.com/security-plus/sy0-601/sy0-601-video/security-configurations/
upvoted 4 times
...
xihjr
1 year ago
an example of network segmentation is where a corp network is divided into IT, marketing, management, retail, warehouse, database, etc. logically each network segment should have the ability to talk to each other; otherwise the corp network wouldn't be functional. the context of the question appears to imply the customer data requires air gap which I believe network segmentation wouldn't provide
upvoted 2 times
...
Paula77
1 year, 1 month ago
Selected Answer: B
This approach provides a strong level of security and confidentiality for sensitive data.
upvoted 1 times
...
memodrums
1 year, 2 months ago
Selected Answer: A
Isolation isn't part of exam objectives, going with A.
upvoted 2 times
Snug
1 year, 2 months ago
Not true...Isolation is listed in section 4.4 of CompTIA Sec + Objectives
upvoted 3 times
memodrums
1 year, 1 month ago
You're correct but isolation is treated as isolating a device if infected with malware.
upvoted 4 times
...
...
...
johnabayot
1 year, 2 months ago
Selected Answer: B
B. Isolation Network Isolation is the process of creating a standalone network with no connectivity to other parts of the network. This is a stringent form of segregation that can protect sensitive data from unauthorize access or tampering. Network segmentation, on the other hand, involves dividing a network into subnets to control access and traffic flow. This can improve network performance and security, but it does not completely isolate the network from other segments.
upvoted 3 times
...
david124
1 year, 3 months ago
Selected Answer: B
Isolation is more appropriate for achieving the goal of storing customer data on a separate part of the network that is not accessible to users on the corporate network. While segmentation (Option A) can be a part of the isolation solution, the most direct and specific answer is network isolation, as it ensures complete separation and inaccessibility between the isolated parts of the network.
upvoted 2 times
...
MortG7
1 year, 3 months ago
Isolating a vpc/subnet is a form of segmentation. Answer is A.
upvoted 1 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago