- Home
- All questions
- Question 355
CompTIA Security+ study material · question 355 of 611
A user's device falls out of compliance halfway through an authenticated session. Under zero trust, what should happen?
Show the answer
Answer: D. The authorisation decision should be re-evaluated
Zero trust policy is dynamic, so a material change in observable state should change the verdict mid-session.
Source: NIST SP 800-207 (NIST) — SP 800-207 § 2.1 Tenets