Certified Information Systems Security Professional CISSP · Free Practice Question Medium
Question 121
You are the Chief Information Security Officer (CISO) of a major hospital. Recently, your hospital has seen an uptick in attempted ransomware attacks. These attacks threaten to lock crucial systems and patient data unless a sum of money is paid, potentially endangering lives and disrupting essential services. Payment is often demanded in Bitcoin, which can be challenging to trace. What is the most effective strategy to protect the hospital's critical systems and patient data from these types of ransomware attacks?
- A Invest in a strong cybersecurity infrastructure including firewalls, antivirus software, and intrusion detection systems.
- B Develop a comprehensive cybersecurity strategy that includes employee training, regular data backups, updating and patching systems, and a robust cybersecurity infrastructure.
- C Regularly update and patch all software, systems, and services to fix any potential vulnerabilities.
- D Regularly backup all critical data and systems, ensuring backups are stored offline or in a location inaccessible to the network.
Reveal correct answer
Correct answer: B
Explanation
The correct answer: Developing a comprehensive cybersecurity strategy that includes employee training, regular data backups, updating and patching systems, and a robust cybersecurity infrastructure is the most effective way to protect the hospital's critical systems and patient data from ransomware attacks. Ransomware primarily targets system vulnerabilities and exploits them to lock users out of their systems. It's critical to regularly update and patch all software, systems, and services to address these vulnerabilities. Employee training is also essential because ransomware often enters systems through phishing emails or malicious links, which can be avoided if employees can identify and avoid these threats. Regular backups of critical data and systems can help the organization recover quickly if a ransomware attack does occur. Finally, a strong cybersecurity infrastructure can detect and mitigate threats before they can cause damage. The incorrect answers: Regularly backing up all critical data and systems, ensuring backups are stored offline or in a location inaccessible to the network, is an essential practice. However, this approach only addresses the aftermath of a successful ransomware attack and doesn't provide preventive measures to stop an attack from occurring. Investing in a strong cybersecurity infrastructure, including firewalls, antivirus software, and intrusion detection systems, can help detect and mitigate threats, but this approach alone doesn't address the importance of employee training, regular updates and patches, or data backups. Regularly updating and patching all software, systems, and services to fix any potential vulnerabilities is important, but this approach doesn't address the importance of employee training in threat identification, data backups for recovery purposes, or a strong cybersecurity infrastructure for threat detection and mitigation.Discussion
Think the marked answer is wrong, or have a better explanation? Share it below — comments appear after review.
You must be logged in to post a comment.
