100-160 exam dumps

100-160 practice question 213 of 265

Cisco Certified Support Technician (CCST) Cybersecurity. Associate level, Cisco. Free question with the correct answer and a full explanation.

100-160 Question 213

Select 3

Your organization recently experienced a ransomware attack that caused extended downtime for critical systems. During a post-incident review, it was discovered that there were no recent backups and the organization lacked a clear disaster recovery and business continuity plan. Which of the following actions should be prioritized to prevent similar issues in the future?

  1. A

    Develop and regularly test a disaster recovery plan to ensure rapid restoration of critical systems.

  2. B

    Implement regular data backups and verify their integrity to protect against data loss.

  3. C

    Rely solely on endpoint detection and response (EDR) tools to prevent future incidents.

  4. D

    Conduct business impact analyses to identify critical systems and prioritize their recovery.

  5. E

    Focus only on preventing cyberattacks rather than planning for recovery scenarios.

Show answer and explanation

Correct answers: A, B, D

Explanation

Disaster recovery and business continuity planning are essential components of a robust cybersecurity strategy. They ensure that an organization can quickly recover from incidents like ransomware attacks, minimizing downtime and data loss. This includes actions such as creating and testing disaster recovery plans, implementing regular and verified backups, and conducting business impact analyses to identify critical systems and prioritize their recovery. Solely focusing on prevention without planning for recovery leaves organizations vulnerable to extended disruptions.

  • A. Correct.

    Correct. Developing and regularly testing a disaster recovery plan is critical for ensuring that systems can be restored quickly after an incident.

  • B. Correct.

    Correct. Regular backups, along with verification of their integrity, are essential for minimizing data loss in case of a ransomware attack or other incidents.

  • C. Incorrect.

    Incorrect. While EDR tools are important for prevention and detection, they cannot replace the need for disaster recovery and business continuity planning.

  • D. Correct.

    Correct. Conducting business impact analyses helps identify critical systems and ensures that recovery efforts are focused where they are most needed.

  • E. Incorrect.

    Incorrect. While prevention is important, organizations must also plan for recovery to ensure continuity in case of an incident.

Timed practice exam

Take a 100-160 practice test under exam conditions

75 questions in 120 minutes, drawn from this bank, with a score report and a per-question review when you finish.

Start timed exam