
Ultimate access to all questions.
Your organization is planning to adopt a Zero Trust security model to enhance its cybersecurity posture. As part of this initiative, you are tasked with designing a modern authentication and authorization strategy. The strategy must ensure secure access to resources while adhering to principles of least privilege and minimizing attack surfaces. Considering the need for scalability, compliance with industry standards, and the ability to integrate with existing Azure services, which of the following combinations of components would BEST align with a Zero Trust approach? (Choose one)
A
Implementing single sign-on (SSO) with password-based authentication to simplify user access across all services.
B
Utilizing biometric authentication combined with attribute-based access control (ABAC) for dynamic access decisions based on user attributes.
C
Deploying certificate-based authentication alongside discretionary access control (DAC) to allow resource owners to manage access permissions.
D
Adopting multi-factor authentication (MFA) and role-based access control (RBAC) to enforce strict access controls and verify user identities through multiple factors.