200-301 exam dumps

200-301 practice question 403 of 506

Cisco Certified Network Associate. Free level, Cisco. Free question with the correct answer and a full explanation.

200-301 Question 403

Select 3

A company has recently experienced a data breach due to a phishing attack. Upon investigation, it was discovered that an employee clicked on a malicious link in an email, which allowed the attacker to install malware and exfiltrate sensitive data. Which of the following measures would best mitigate this type of security threat in the future?

  1. A

    Conduct regular employee cybersecurity awareness training.

  2. B

    Implement email filtering to detect and block phishing emails.

  3. C

    Disable all external email communications for employees.

  4. D

    Deploy endpoint protection software to detect and block malware.

  5. E

    Require employees to use multi-factor authentication (MFA) when accessing company resources.

Show answer and explanation

Correct answers: A, B, D

Explanation

Phishing attacks exploit human vulnerabilities and often deliver malware. Mitigating this threat requires a combination of employee training to recognize phishing tactics, email filtering to block phishing emails, and endpoint protection to detect and block malware. These measures address the attack at various levels, reducing the risk of such incidents in the future.

  • A. Correct.

    Regular cybersecurity awareness training helps employees recognize and avoid phishing attempts, reducing the likelihood of them clicking on malicious links.

  • B. Correct.

    Email filtering can identify and block phishing emails before they reach employees, reducing exposure to such threats.

  • C. Incorrect.

    Disabling all external email communications is impractical for most businesses and does not address the root cause of phishing attacks.

  • D. Correct.

    Endpoint protection software can detect and block malware that may be delivered via phishing attacks, limiting the potential damage.

  • E. Incorrect.

    While MFA adds an additional layer of security to prevent unauthorized access, it does not directly mitigate phishing attacks or malware installation.

Timed practice exam

Take a 200-301 practice test under exam conditions

75 questions in 120 minutes, drawn from this bank, with a score report and a per-question review when you finish.

Start timed exam