AdvancedStaffSecurity, Privacy & Multi-Tenancy55 minutesPro answer

SDV-044

Build zero-trust boundaries around a legacy trusted network

Introduce identity, authorization, segmentation, and policy telemetry incrementally when legacy services assume network location equals trust.

SecurityChange ManagementBlast RadiusAuditability

Interview prompt

Problem context

A decade-old platform has flat network access, shared credentials, and IP allowlists. A single compromised service can reach production databases and internal admin endpoints. Rewriting hundreds of services is impossible, but leadership requires a measurable zero-trust migration.

Skills being evaluated

security migrationtrust-boundary designlegacy containmentpolicy rollout

The full reasoning guide is part of Pro

The scenario and evaluation focus above remain public. Pro unlocks the structured answer, trade-off analysis, follow-up probes, common weak answers, rubric, related reasoning, and any architecture diagram.

Sign in to continue

What the full guide covers

Clarify the decision
Establish scale assumptions
Functional and non-functional requirements
High-level architecture
Data model and flow
Consistency and transaction boundaries
Failure modes and recovery
Security and privacy
Observability and SLOs
Capacity and cost
Alternatives and trade-offs
Evolution and migration
What Staff and Principal candidates should emphasize