Certified Information Security Manager (CISM)Information Security ProgramMedium
A CISO is developing a comprehensive information security architecture for a large enterprise. The architecture must integrate security across all layers of the organization's technology stack, from physical hardware to applications and data. Which principle is MOST crucial for achieving this holistic integration?
- AImplementing a strong perimeter defense with firewalls and intrusion detection systems.
- BAdopting a defense-in-depth strategy.
- COutsourcing all security operations to a Managed Security Service Provider (MSSP).
- DFocusing solely on advanced encryption for all data at rest and in transit.
Show answer & explanationAnswer & explanation
Correct answer: B. Adopting a defense-in-depth strategy.
Defense-in-depth is an architectural strategy that employs multiple layers of security controls throughout the entire infrastructure. This multi-layered approach is essential for holistic integration, as it ensures that if one control fails, others are in place to provide protection across all technology stack levels.
Why the other options are wrong
- A. Perimeter defense is a single layer and insufficient for holistic protection across all layers of the stack.
- C. Outsourcing operations doesn't define the architecture itself; the architecture still needs to be designed with holistic integration in mind.
- D. Encryption is a critical control for data, but it's only one aspect of a holistic security architecture and doesn't cover all layers.
Defense-in-Depth
A security strategy that uses multiple, overlapping security controls to protect assets, so that if one control fails, another control can prevent or detect an attack.
- Multi-layered approach.
- Protects across technology stack.
- Increases resilience against attacks.
Memory trick: Deep Defenses Deliver Durable Design.