Correct Answer: Clearly defined and periodically updated posture requirements, differentiated policy based on device management status, self-service remediation paths, and continuous (not just initial) posture re-evaluation during active sessions
Explanation: Clearly defined, periodically updated requirements, differentiated policy, self-service remediation, and continuous re-evaluation together provide strong, adaptable access control, unlike static one-size-fits-all requirements with no re-evaluation, no remediation path, annual-only checks, identical treatment of managed/unmanaged devices, or disabling policy after one prior pass.
Correct Answer: Clearly defined and periodically updated posture requirements, differentiated policy based on device management status, self-service remediation paths, and continuous (not just initial) posture re-evaluation during active sessions
Explanation: Clearly defined, periodically updated requirements, differentiated policy, self-service remediation, and continuous re-evaluation together provide strong, adaptable access control, unlike static one-size-fits-all requirements with no re-evaluation, no remediation path, annual-only checks, identical treatment of managed/unmanaged devices, or disabling policy after one prior pass.