An organization wants to reduce implicit trust while preserving user access to both internet and private applications.
Which configuration approach best aligns with a least-privilege design that also reduces the attack surface?
A security lead reviews an executive summary: data-loss risk is driven by high-volume uploads to risky SaaS applications and unmanaged generative AI use; MTTR for BU-West remains high because of ticket-routing delays; and the board wants a 15% reduction in the data-loss risk score within 60 days. Peer benchmarks are similar but show identity risk as the primary driver elsewhere.
Which action should be taken next?
Which type of malware is specifically used to deliver other malware?
Fundamental capabilities needed by other services within the Zscaler Zero Trust Exchange are provided by which of these?
What does Zscaler Advanced Firewall support that Zscaler Standard Firewall does not?
Which API architectural style is used by Zscaler for Zero Trust Automation?
A microsegmentation policy set contains a broad “allow employees to internal applications” rule before more specific controls. An incident review found SMB access from non-finance hosts to a finance file share.
Which refinement best addresses the unintended access while improving the internal security posture?
Which filtering policy blocked access to the Network Application?
A threat-hunting team is attempting to reduce redundant investigations across identity, endpoint, and cloud logs.
How can platform integrations be leveraged to support efficient triage and governance while preserving detection quality?
A device connects to the Zero Trust Exchange with missing antivirus telemetry and an unverified client certificate in its posture profile.
Assuming Leading Practice for posture-driven enforcement are implemented, what is the outcome for the session?