exam questions

Exam CISM All Questions

View all questions & answers for the CISM exam

Exam CISM topic 1 question 303 discussion

Actual exam question from Isaca's CISM
Question #: 303
Topic #: 1
[All CISM Questions]

To prevent ransomware attacks, it is MOST important to ensure:

  • A. adequate backup and restoration processes are in place.
  • B. regular security awareness training is conducted.
  • C. the latest security appliances are installed.
  • D. updated firewall software is installed.
Show Suggested Answer Hide Answer
Suggested Answer: B 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
Ziggybooboo
Highly Voted 2 years, 1 month ago
Backups don't prevent attacks, I would go with security awareness
upvoted 18 times
[Removed]
1 year, 5 months ago
neither does security awareness prevent ransomware
upvoted 1 times
...
...
Funshykay
Highly Voted 2 years ago
Selected Answer: B
I will go with B. the question does not state to recover from ransomware attack but to prevent. I can't figure out how data backup and restoration process helps stop a ransomware attack from happening
upvoted 10 times
...
Nasimus2024
Most Recent 5 days, 7 hours ago
Selected Answer: B
All of the choices are vague however, training might prevent giving in to attackers so B is the relatively correct answer
upvoted 1 times
...
Jess20
2 months, 1 week ago
Selected Answer: B
Prevent! A.
upvoted 1 times
Jess20
2 months, 1 week ago
B. ****
upvoted 1 times
...
...
david124
2 months, 2 weeks ago
Selected Answer: B
HOW, HOW does having backups prevent a ransomware? IT great to have backups sure, no down time. BUT training your users so they dont F around helps reduce ransomware
upvoted 1 times
...
Y0GA
7 months, 3 weeks ago
GPT first gave me A. however, if you reiterate the input and tell it that the question is asking about 'prevention', GPT will go with B. it really depends on what ISACA is referring to with the words 'prevent' and 'ransomware attack'. a successful ransomware would already require mitigation via backups. but prior to that, we are talking about preventive measures for potential attacks. they are being tricky with the wording but i think we have to read it as literally as possible.
upvoted 1 times
...
helg420
7 months, 3 weeks ago
Selected Answer: B
B: To effectively prevent ransomware attacks from occurring in the first place, the focus should indeed be on preventative measures i.e. Security Awareness. Backup and restoration processes are primarily corrective controls rather than preventative and will help with mitigating the impact.
upvoted 1 times
...
03allen
8 months ago
Selected Answer: A
Backup is a prevention as well. It says most importantly, what if staff had training but still failed on a phishing attack. If you don't have a backup, you have to pay the ransom.
upvoted 1 times
99670d9
7 months, 3 weeks ago
Backup and restoration are both corrective controls and are not preventive. B in this case is the only preventive measure
upvoted 1 times
...
...
Thavee
9 months ago
Selected Answer: B
To prevent! Among four choices, awareness is the only answer even if it will help just only 10%. Backup/Restore do not prevent any. This is English language common sense.
upvoted 1 times
...
yottabyte
9 months, 3 weeks ago
Selected Answer: A
Having backups in isolated VLAN and also offsite backups is the way to go for Ransomware attacks.
upvoted 1 times
...
oluchecpoint
11 months ago
Selected Answer: A
A. Adequate backup and restoration processes are in place. While all the options listed (A, B, C, and D) are important for a comprehensive cybersecurity strategy, having a robust backup and restoration process is crucial because it allows you to recover your data and systems in the event of a ransomware attack. Ransomware attackers often encrypt your data and demand a ransom for its release. If you have up-to-date backups that are isolated from your network, you can restore your data without paying the ransom, reducing the impact of the attack significantly.
upvoted 1 times
...
blehbleh
12 months ago
Selected Answer: B
Its B. You are preventing the attacks by training. That is preventative. Backups are a corrective as they are used after a ransomware attack.
upvoted 1 times
...
secdoc
1 year, 3 months ago
Backup and restore is corrective, not preventative
upvoted 2 times
...
oluchecpoint
1 year, 3 months ago
A. Adequate backup and restoration processes are in place. While all the options listed (A, B, C, and D) are important for a comprehensive cybersecurity strategy, having a robust backup and restoration process is crucial because it allows you to recover your data and systems in the event of a ransomware attack. Ransomware attackers often encrypt your data and demand a ransom for its release. If you have up-to-date backups that are isolated from your network, you can restore your data without paying the ransom, reducing the impact of the attack significantly.
upvoted 1 times
...
Agamennore
1 year, 4 months ago
Selected Answer: B
The magical word is PREVENT. In order to prevent the most significant is awareness
upvoted 3 times
...
AaronS1990
1 year, 4 months ago
A is the BEST mitigation but the question doesn't ask that. B is more likely to prevent them though...
upvoted 1 times
AaronS1990
1 year, 4 months ago
A- Prevents B- Does not prevent it mitigates. However B is the MOST useful...
upvoted 1 times
Marcelus1714
9 months, 2 weeks ago
A mitigates the consequences of ransomware, but never prevent...
upvoted 1 times
...
...
...
Akam
1 year, 4 months ago
Selected Answer: A
It's A. You can't rely on users, therefore, you need to have a backup in place because at some point users will do some actions and get affected by ransomware.
upvoted 1 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago