Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
F5 logo

F5Certified Solution Expert, Security

Domain 2Objective 3

2.03 Determine the Appropriate Security Framework for an Application 401 Practice Questions (Page 5)

Part of the ARCHITECT SOLUTIONS domain, which makes up ~28% of our current practice bank. F5 does not publish an official question count, but from its 105-minute exam (~40–70 total, ~11–20 in this domain), expect 2–4 from this objective — we provide 29 practice questions to prepare you well beyond it. (estimate)

29questions here
6free pages
7concepts

Questions 21–25

  1. 21expert · hard

    A company is planning to migrate its on-premises applications to the cloud. The current security architecture includes an F5 BIG-IP with ASM for WAF protection and a hardware security module (HSM) for key management. The cloud provider offers a managed WAF service and a cloud HSM. The security team wants to minimize operational overhead while maintaining the same level of security. What is the best approach?

    Select an answer first
  2. 22foundation · easy

    A company is deploying an application that will process personal data of EU citizens. Which regulatory consideration is most likely to impact the security framework selection?

    Select an answer first
  3. 23application · medium

    A company is designing a security architecture for a new microservices-based application. The application consists of several internal services that communicate with each other and a public-facing API gateway. The security team wants to ensure that internal service-to-service communication is encrypted and authenticated, while the public API is protected from web attacks. Which architecture should be implemented?

    Select an answer first
  4. 24foundation · easy

    An application transmits sensitive data between its web server and users' browsers. Which security framework component is most directly responsible for ensuring the confidentiality of this data in transit?

    Select an answer first
  5. 25expert · hard

    A large enterprise is deploying a new customer portal that will be accessed by millions of users globally. The portal will handle sensitive financial data and must be protected against DDoS attacks and web application attacks. The security team is evaluating two options: (1) an on-premises F5 BIG-IP with ASM and DDoS protection, or (2) a cloud-based CDN with integrated WAF and DDoS protection. The company has a strict budget and wants to minimize capital expenditure. Which option is more appropriate?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by F5. “401” is a trademark of its owner, used for identification only.