Skip to Content

CompTIA SY0-701: What Is the Best Way to Secure End-of-Life System Processing Critical Transactions?

If a critical system is running an end-of-life OS, learn the most secure technique to protect the enterprise according to CompTIA SY0-701 certification exam standards. Discover if HIDS, VLAN isolation, decommissioning, or drive encryption is the optimal solution.

Table of Contents

Question

A systems administrator notices that one of the systems critical for processing customer transactions is running an end-of-life operating system. Which of the following techniques would increase enterprise security?

A. Installing HIDS on the system
B. Placing the system in an isolated VLAN
C. Decommissioning the system
D. Encrypting the system’s hard drive

Answer

C. Decommissioning the system

Explanation

The most secure way to handle a system running an end-of-life operating system is to decommission it. An end-of-life OS no longer receives security updates and patches from the vendor, leaving it vulnerable to newly discovered exploits. While techniques like installing a host-based intrusion detection system (HIDS), placing the system on an isolated VLAN, or encrypting the hard drive can provide some security benefits, they do not address the fundamental issue that the OS itself is no longer supported and cannot be adequately secured.

The best practice for enterprise security is to upgrade critical systems to a supported OS version or replace them before the OS reaches end-of-life. Continuing to use an unsupported OS, especially for customer transactions, poses an unacceptable risk. Therefore, the systems administrator should work with management to decommission this system and migrate its workload to an adequately secured and supported system as soon as possible. Compensating controls are not sufficient when dealing with end-of-life software.

CompTIA SY0-701 certification exam assessment practice question and answer (Q&A) dump including multiple choice questions (MCQ) and objective type questions, with detail explanation and reference available free, helpful to pass the CompTIA SY0-701 exam and earn CompTIA SY0-701 certification.