A government contractor must specify Zero Trust components up front for a multi-agent casework system handling controlled unclassified information. Which set of components belongs in the logical architecture?
Select an answer to reveal the explanation.
Short Explanation
The correct answer is D. Zero Trust multi-agent architecture means per-agent identities, stop lateral movement between agents and tools, and map controls to compliance needs for regulated data. Shared admin passwords, open management ports, and implicit same-RG trust are classic Zero Trust failures.
Full Explanation
Option D is correct. Specifying technology components for Zero Trust multi-agent solutions includes per-agent identity scoping, lateral movement prevention, and compliance control mapping for regulated deployments—exactly the set a government contractor must design in from the start.
Option A is incorrect because shared passwords violate identity isolation and auditability.
Option B is incorrect because exposing management ports to the internet expands attack surface.
Option C is incorrect because co-location in a resource group must not imply unconstrained trust between agents and tools.