Palo Alto Networks Certified Cybersecurity Entry-level Technician (PCCET)Cybersecurity FundamentalsMedium
A security professional is explaining the concept of 'defense in depth' to a new team member. Which statement best describes this security model?
- AImplementing a single, strong security control at the network perimeter.
- BRelying solely on advanced threat detection systems to identify attacks.
- CDeploying multiple layers of security controls to protect assets.
- DPrioritizing physical security over logical security measures.
Show answer & explanationAnswer & explanation
Correct answer: C. Deploying multiple layers of security controls to protect assets.
Defense in depth is a strategy that employs multiple, overlapping security controls to protect assets, so if one control fails, others are still in place to provide protection.
Why the other options are wrong
- A. This describes a perimeter-focused strategy, which is insufficient for defense in depth.
- B. Relying on a single type of control (detection systems) is not defense in depth.
- D. Defense in depth considers all types of security (physical, logical, administrative) and does not prioritize one over the other globally.
Defense in Depth
Defense in depth is a cybersecurity strategy that employs a layered approach to security, using multiple, overlapping security controls to protect information and systems.
- Inspired by military strategy of layered defenses.
- Aims to slow down attackers, not just block them.
- Combines administrative, physical, and technical controls.
Memory trick: Defense in Depth is like an onion, layers protect the core.