Security ArchitectureQuestion 27 of 100
Dividing a network into isolated zones to limit the spread of an attack is known as:
a.Load balancing
b.Port forwarding
c.Segmentation
d.Tunneling
Explanation
Network segmentation separates systems into zones so a compromise in one cannot freely reach others. It limits lateral movement and contains breaches. VLANs, firewalls, and microsegmentation implement this principle.
Practice all 100 questions free — no signup required.
Related questions on this topic
- Which security model assumes no user or device is trusted by default, even inside the network perimeter?
- Layering multiple independent security controls so that one failure does not cause a breach is called:
- Which network area sits between the internet and the internal network to host public-facing services?
- Which cloud model gives the customer the most control over the operating system and applications while the provider manages the physical hardware?
- In cloud computing, which concept defines who is responsible for securing which layers of the stack?
- Which technology allows multiple isolated operating systems to run on a single physical host?
Last reviewed: · editorial process
PrepPass Editorial Team · Verified against CompTIA Security+ (SY0-701) · How we review