CompTIA Security+ (SY0-701)Security OperationsHard

A company is redesigning its network architecture with a focus on zero trust principles. They want to ensure that every device, user, and application is continuously verified, regardless of its location (inside or outside the traditional network perimeter). Which core concept is central to achieving this goal?

  1. AMutual TLS (mTLS)
  2. BNetwork Segmentation
  3. CPerimeter Security
  4. DContinuous Verification
Show answer & explanation

Correct answer: D. Continuous Verification

Continuous verification is a core tenet of zero trust. It means that access decisions are not made once but are constantly re-evaluated based on factors like user identity, device health, location, and behavior, ensuring that trust is never implicit but always earned and continuously validated.

Why the other options are wrong

  • A. mTLS is a mechanism for mutual authentication, which contributes to zero trust, but 'continuous verification' describes the broader principle of ongoing trust evaluation.
  • B. Network segmentation is a component of zero trust but not the overarching central concept of continuous trust evaluation.
  • C. Perimeter security is the antithesis of zero trust, which assumes no inherent trust inside or outside the network.

Zero Trust (Continuous Verification)

A security model that requires strict identity verification for every person and device attempting to access resources on a private network, regardless of whether they are inside or outside the network perimeter. Continuous verification is a core principle.

  • Never trust, always verify
  • Microsegmentation is key
  • Dynamic, context-aware access decisions

Memory trick: Zero trust: Verify everything, always, everywhere.

More Security Operations questions