4851
Zero-trust request ZT-051 in an authorized home-lab assessment evaluates a finance analyst requesting SIEM console: managed device=yes, MFA=yes, risk score=65. Policy requires an approved technical role, managed device, MFA, and risk below 60. What is the correct decision?
View answer choices
- Route around the policy through the default gateway.
- Deny or step up verification because the policy conditions are not all satisfied.
- Always allow because the request originates internally.
- Always allow read-write access after one successful login.