You are asked to explain procedures for evaluating system hardening as a typical example of a protective technology. What procedure might you follow to ensure the hardening mechanisms put in place are working as expected?
Select ONE option.
A.
Closely monitor various security performance reports and metrics to determine if the correct level of access and authentication is achieved, i.e. it is not too restrictive and not too broad
B.
Frequently audit strong authentication to ensure a high level of intrusion protection is maintained at all times
C.
Evaluate the hardware components that have been hardened and compare these to other hardened software components to ensure equilibrium is being achieved
D.
Enlist a known hacker to conduct an independent assessment of the hardening effectiveness