Citizens use a city permitting portal on the public internet. Which control set is most appropriate to operate for that exposure?
Select an answer to reveal the explanation.
Short Explanation
A public permitting site sits on the sidewalk of the internet — you want layered doors, not an open lobby. Run NGFW, IDS/IPS, and a WAF-class control for the app. Badge printers and naked database ports do not stop HTTP exploits.
Full Explanation
Operating detection and preventative network and application controls—such as next-generation firewalls, IDS/IPS, and web application firewalls—is essential for internet-facing municipal portals. Removing inspection or exposing backend listeners directly increases compromise risk. Physical access controls alone do not address application-layer threats on public web services.