Question 1
Q1A financial services organization is migrating its legacy monolithic application to a microservices architecture with weekly CI/CD deployments. The security team needs to implement a BIG-IP ASM policy that provides baseline security immediately while adapting to frequent application updates without causing false positives. Which deployment method and configuration is MOST appropriate for this scenario?
Show answer & explanation
Correct answer: B
For an application with a high rate of change (weekly CI/CD deployments), a Comprehensive manual policy would require constant administrative overhead and likely cause false positives. The Rapid Deployment template provides immediate baseline protection against common web attacks, while the Automatic Policy Builder can dynamically adjust to the frequent changes. A shorter enforcement readiness period allows the policy to adapt quickly to the weekly release cycle.