A cloud design approach that creates micro-perimeters around workloads to limit lateral movement.

Study for the CompTIA SecurityX Test. Equip yourself with comprehensive flashcards and multiple choice questions that include hints and explanations. Gear up for your certification exam!

Multiple Choice

A cloud design approach that creates micro-perimeters around workloads to limit lateral movement.

Micro-segmentation is a security approach that creates tiny perimeters around individual workloads in a cloud environment, and then enforces strict traffic policies between them. By applying rules at the workload level—often with software-defined networking and identity-based controls—you limit which services can communicate, which drastically reduces the potential for lateral movement if a single workload is compromised. Region-based segmentation groups resources by geographic area, not by workload and traffic flows, so it doesn’t address per-workload boundaries. An Availability Zone is a fault-isolation construct, not a security boundary between workloads. A jump box is a secure gateway used to access systems, not a mechanism for ongoing per-workload traffic restriction. So the approach that best fits the description is micro-segmentation.

Subscribe

Get the latest from Examzify

You can unsubscribe at any time. Read our privacy policy