· Pros/cons of implementing particular security capabilities
· Why an organisation would deploy a particular tool
· What risks are associated with particular cyber security tools
· Talking through a WAF, including the threats it would mitigate and how you would propose it be deployed in a large organisation
· Describing the attributes of a good IDS service and how an IDS would help mitigate risk