CISM Certified Information Security Manager – Question0660

Which of the following devices should be placed within a DMZ?

A.
Proxy server
B. Application server
C. Departmental server
D. Data warehouse server

Correct Answer: B

Explanation:

Explanation:
An application server should normally be placed within a demilitarized zone (DMZ) to shield the internal network. Data warehouse and departmental servers may contain confidential or valuable data and should always be placed on the internal network, never on a DMZ that is subject to compromise. A proxy server forms the inner boundary of the DMZ but is not placed within it.