Microsoft セキュリティのベスト プラクティスに従ったランサムウェア対応計画を設計しています。 ロックアウトされることなく、ランサムウェア攻撃の被害範囲を制限するソリューションを推奨する必要があります。 推薦書には何を含めるべきでしょうか?
正解:A
https://learn.microsoft.com/en-us/security/privileged-access-workstations/privileged-access- devices#device-roles-and-profiles Privileged Access Workstation (PAW) - This is the highest security configuration designed for extremely sensitive roles that would have a significant or material impact on the organization if their account was compromised. The PAW configuration includes security controls and policies that restrict local administrative access and productivity tools to minimize the attack surface to only what is absolutely required for performing sensitive job tasks. This makes the PAW device difficult for attackers to compromise because it blocks the most common vector for phishing attacks: email and web browsing. To provide productivity to these users, separate accounts and workstations must be provided for productivity applications and web browsing. While inconvenient, this is a necessary control to protect users whose account could inflict damage to most or all resources in the organization.