D-ZT-DS-23 Sample Questions & Answers
Design considerations for rolling zero trust out get the heaviest focus, built on its tenets and pillars, then applying the model across data, networks, identity, the cloud, and hybrid setups, plus automation and monitoring for upkeep.
Launch the full D-ZT-DS-23 simulator →Showing 6 of 12 free samples.
- Question 1Intermediate
Zero Trust Tenets and Pillars · Zero Trust in Dell Cyber Recovery and Vault
When mapping Zero Trust pillars to the Dell PowerProtect Cyber Recovery solution, which capability directly addresses the 'Data' pillar by ensuring that backups cannot be altered or deleted by a compromised administrator account?
Show answer & explanation
Correct answer: D
Retention Lock Compliance enforces strict immutability, ensuring that data cannot be modified, deleted, or overwritten for a specified period, even by users with full administrative privileges. This directly maps to the Data pillar of Zero Trust by providing data-centric protection against insider threats and ransomware.
- Question 2IntermediateSelect 3
Zero Trust Tenets and Pillars · Tenets and pillars
According to the CISA Zero Trust Maturity Model, which of the following are recognized as foundational pillars of a Zero Trust Architecture? (Select THREE)
Show answer & explanation
Correct answers: B, D, E
Data is one of the five foundational pillars in the CISA Zero Trust Maturity Model, focusing on data protection, classification, and encryption.
Identity is one of the five foundational pillars in the CISA Zero Trust Maturity Model.
Network is one of the five foundational pillars in the CISA Zero Trust Maturity Model, focusing on segmentation and traffic inspection.
- Question 3Beginner
Zero Trust Tenets and Pillars · Tenets and pillars
A security architect is explaining the difference between the foundational rules of Zero Trust and the categorical areas where it is applied. Which of the following statements correctly distinguishes a 'tenet' from a 'pillar' in Zero Trust architecture?
Show answer & explanation
Correct answer: D
In Zero Trust frameworks, tenets are the foundational principles or philosophies that guide the security strategy (such as 'assume breach', 'verify explicitly', and 'least privilege'). Pillars are the specific functional domains or control surfaces (such as Identity, Device, Network, Application/Workload, and Data) where those tenets are operationalized.
- Question 4Advanced
Zero Trust Tenets and Pillars · Zero Trust in Dell Cyber Recovery and Vault
Within the context of Dell PowerProtect Cyber Recovery, the solution leverages CyberSense to analyze backup data. Which two cross-cutting Zero Trust pillars are primarily supported by integrating CyberSense into the isolated vault?
Show answer & explanation
Correct answer: B
CyberSense provides machine learning-based analytics to detect signs of data corruption or ransomware within the protected vault. This directly supports the 'Visibility and Analytics' cross-cutting pillar by providing deep insight into data integrity. When integrated with response workflows, it also supports 'Automation and Orchestration' by triggering alerts and remediation tasks upon detecting anomalies.
flowchart LR Vault[Cyber Recovery Vault] -->|Data Sync| CS[CyberSense] CS -->|ML Analytics| Detect{Anomaly Detected?} Detect -->|Yes| Alert[Automated Alert/Lockdown] Detect -->|No| Safe[Mark as Known Good] style CS fill:#f9f,stroke:#333,stroke-width:2px - Question 5Beginner
Zero Trust Tenets and Pillars · Tenets and pillars
True or False: In major Zero Trust maturity models (such as CISA and DoD), 'Visibility and Analytics' along with 'Automation and Orchestration' are considered cross-cutting capabilities rather than standalone functional pillars, because they span across Identity, Device, Network, Application, and Data.
Show answer & explanation
Correct answer: A
True. Frameworks like the CISA Zero Trust Maturity Model depict Visibility and Analytics, Automation and Orchestration, and Governance as cross-cutting foundational capabilities. They are not isolated pillars; rather, they interact with and enhance the security posture of all the main functional pillars (Identity, Device, Network, App/Workload, Data).
- Question 6Intermediate
Zero Trust Tenets and Pillars · Tenets and pillars
A cloud architect is designing a new application environment. To adhere to the Zero Trust tenet of 'Assume Breach', which of the following architectural decisions is most appropriate?
Show answer & explanation
Correct answer: A
The 'Assume Breach' tenet mandates that architects design systems as if the network is already compromised. By implementing microsegmentation and end-to-end encryption internally, the architect limits lateral movement and data exposure even if an attacker bypasses perimeter defenses.
Ready for the real thing?
The full D-ZT-DS-23 simulator has every exam-style question, timed mode, and instant scoring.