By Guest on Wednesday, 25 February 2026
Replies 1
Likes 0
Views 4
Votes 0

How should a team validate Defense in depth in practice?

SecurityTalent knowledge answer. Members may add responsible, source-based context; do not post secrets, personal data, exam dumps or recalled live exam questions.

Define the expected outcome—layers independent preventive, detective, and corrective safeguards—and test it with realistic scenarios. Record the owner, scope, evidence, exceptions and review date. Combine technical testing with operational confirmation so a configured control is not mistaken for an effective control.

CIS Critical Security Controls v8: https://www.cisecurity.org/controls/v8

·
5 months ago
·
0 Likes
·
0 Votes
·
0 Comments
·
View Full Post