CISM Certified Information Security Manager – Question0639

Which of the following devices should be placed within a demilitarized zone (DMZ)?

A.
Network switch
B. Web server
C. Database server
D. File/print server

Correct Answer: B

Explanation:

Explanation:
A web server should normally be placed within a demilitarized zone (DMZ) to shield the internal network. Database and file/print servers may contain confidential or valuable data and should always be placed on the internal network, never on a DMZ that is subject to compromise. Switches may bridge a DMZ to another network but do not technically reside within the DMZ network segment.