Which of the following is a compensating control for providing user access to a high-risk website?
Choose an answer
Tap an option to check your answer.
Correct answer: Enabling threat prevention features on the firewall.
Why this is the answer
Enabling threat prevention features on the firewall is a compensating control because it introduces additional security measures to mitigate the risks associated with allowing access to a high-risk website. While direct blocking might be ideal, a compensating control allows necessary access while reducing the potential harm. Threat prevention features, such as intrusion prevention systems (IPS) or advanced malware protection, actively inspect traffic for malicious content or attack patterns, thus compensating for the inherent risk of the website. Configuring a SIEM tool to capture all web traffic is a detective control, not a preventative or compensating one, as it focuses on logging and analysis after an event. Setting firewall rules to allow traffic from any port to that destination increases the attack surface and risk, making it a poor security practice, not a compensating control. Blocking the website on endpoint protection software is a direct preventative control, not a compensating one, as it prevents access entirely rather than mitigating risk while allowing access.
Pass your exam — without the endless answer hunt
Get every verified question and explanation for this exam in one place, and save hours of prep. 1,000+ certifications · 20+ languages · free to start.
Pass your exam faster → No card needed