Palo Alto Networks Certified Cybersecurity Entry-level Technician (PCCET)Network SecurityMedium

A cybersecurity analyst is investigating a compromised server within the internal network. The attacker appears to have gained initial access through a brute-force attack on a weakly secured service and then installed a backdoor. To prevent similar future attacks, the analyst recommends a practice that involves regularly applying updates and patches, removing unnecessary services, and configuring strong passwords. Which security hardening principle does this recommendation align with?

  1. AVulnerability Management
  2. BIntrusion Detection
  3. CSystem Hardening
  4. DConfiguration Management
Show answer & explanation

Correct answer: C. System Hardening

System hardening involves securing a system by reducing its attack surface and improving its overall security posture through various configurations and practices, such as patching, disabling unneeded services, and strong authentication.

Why the other options are wrong

  • A. Vulnerability Management is the broader process of identifying, assessing, and remediating vulnerabilities, where hardening is a key remediation step.
  • B. Intrusion Detection focuses on monitoring and alerting to attacks, not preventing them through system configuration.
  • D. Configuration Management ensures systems are configured consistently, but doesn't specifically detail security improvements.

System Hardening

The process of securing a system by reducing its attack surface and improving its overall security posture.

  • Involves removing unnecessary software, services, and accounts.
  • Includes applying security patches and updates regularly.
  • Focuses on configuring secure settings like strong passwords and access controls.

Memory trick: Hardening builds strong walls against attackers.

More Network Security questions