exam questions

Exam CISA All Questions

View all questions & answers for the CISA exam

Exam CISA topic 1 question 941 discussion

Actual exam question from Isaca's CISA
Question #: 941
Topic #: 1
[All CISA Questions]

An organization has developed processes to recover critical files in the event of a ransomware attack. Which type of control do these processes represent?

  • A. Corrective
  • B. Detective
  • C. Preventive
  • D. Compensating
Show Suggested Answer Hide Answer
Suggested Answer: A 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
SuperMax
3 months, 2 weeks ago
Selected Answer: B
The processes developed to recover critical files in the event of a ransomware attack represent a type of control known as: B. Detective Detective controls are designed to detect and respond to security incidents or events after they have occurred. In this case, the recovery processes are activated after a ransomware attack has already taken place to detect and mitigate the impact by recovering critical file
upvoted 1 times
3008
1 month, 1 week ago
nonsense.
upvoted 2 times
...
...
JONESKA
5 months, 3 weeks ago
Should be A as its the process to recover the files. Recovery is corrective control.
upvoted 2 times
...
Pakawat
7 months, 2 weeks ago
Selected Answer: A
A : Corrective
upvoted 2 times
...
Tsubasa1234
11 months, 1 week ago
answer is A
upvoted 1 times
...
TEC1
11 months, 1 week ago
Selected Answer: D
The processes developed by the organization to recover critical files in the event of a ransomware attack represent a compensating control. Compensating controls are alternative controls put in place to address a residual risk after the implementation of preventive or detective controls has not reduced the risk to an acceptable level. In this case, the organization has implemented processes to recover critical files in the event of a ransomware attack as a way of mitigating the risk of data loss in the event of a successful attack. While the ideal situation would be to prevent the attack from occurring in the first place through the implementation of preventive controls (e.g. anti-virus software, firewalls, etc.), the compensating control provides a backup plan to minimize the impact of the attack if it does occur. This type of control is often used when the cost or complexity of implementing preventive controls is high or when the likelihood of the risk event is low.
upvoted 3 times
...
m4s7er
11 months, 2 weeks ago
Selected Answer: A
answer is A
upvoted 3 times
...
peelu
1 year, 1 month ago
Selected Answer: A
A. Corrective
upvoted 1 times
...
ziutek_
1 year, 1 month ago
Selected Answer: A
This is a corrective control
upvoted 1 times
...
ziutek_
1 year, 1 month ago
Selected Answer: A
Tenis is corective control
upvoted 1 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago