IT チームは、自己署名証明書を使用することでコストを節約できると提案していますが、セキュリティ チームは、デジタル署名されたサードパーティの証明書を使用する必要があると指摘しています。セキュリティ チームの推奨事項に従う正当な理由は、次のうちどれですか。
正解:B
Digitally signed third-party certificates provide greater security assurance because they are verified by trusted Certificate Authorities (CAs) and offer protection against on-path (man-in-the-middle) interception. Private- key Certificate Signing Request (CSR) signage helps ensure that communication cannot be intercepted or modified by malicious actors. Self-signed certificates, on the other hand, are not trusted outside the local environment and do not provide the same level of protection against on-path attacks. CASP+ emphasizes the security benefits of using third-party-signed certificates for securing communications over public networks. References: CASP+ CAS-004 Exam Objectives: Domain 3.0 - Enterprise Security Architecture (PKI, SSL/TLS Certificates) CompTIA CASP+ Study Guide: The Role of Certificate Authorities in Secure Communication