exam questions

Exam SY0-601 All Questions

View all questions & answers for the SY0-601 exam

Exam SY0-601 topic 1 question 260 discussion

Actual exam question from CompTIA's SY0-601
Question #: 260
Topic #: 1
[All SY0-601 Questions]

An organization is repairing the damage after an incident. Which of the following controls is being implemented?

  • A. Detective
  • B. Preventive
  • C. Corrective
  • D. Compensating
Show Suggested Answer Hide Answer
Suggested Answer: C 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
alayeluwa
Highly Voted 2 years, 7 months ago
Selected Answer: C
Correcting their mistake lol
upvoted 17 times
...
Alizadeh
Most Recent 2 years, 4 months ago
Selected Answer: C
C. Corrective controls are being implemented. Corrective controls are measures that are put in place to fix problems or weaknesses that have been identified. They are typically implemented after an incident has occurred in order to repair the damage and prevent similar incidents from happening in the future. In this scenario, the organization is repairing the damage after an incident, which suggests that corrective controls are being implemented. Detective controls are measures that are put in place to detect when a problem or weakness has occurred. Preventive controls are measures that are put in place to prevent problems or weaknesses from occurring in the first place. Compensating controls are measures that are put in place to compensate for weakness or deficiency in another control.
upvoted 2 times
...
FMMIR
2 years, 5 months ago
Selected Answer: C
When an organization is repairing the damage after an incident, they are implementing corrective controls. Corrective controls are measures that are put in place to fix problems or address vulnerabilities that have already been identified. This is in contrast to preventive controls, which are measures that are put in place to prevent problems from occurring in the first place, and detective controls, which are measures that are put in place to detect problems or vulnerabilities before they can cause harm. Compensating controls are additional controls that are put in place to provide additional protection or to compensate for the shortcomings of other controls. In this case, the organization is taking corrective action to repair the damage caused by the incident.
upvoted 3 times
...
[Removed]
2 years, 6 months ago
A compensating control, also called an alternative control, is a mechanism that is put in place to satisfy the requirement for a security measure that is deemed too difficult or impractical to implement at the present time. So it has to be corrective.
upvoted 3 times
...
NXPERT
2 years, 6 months ago
D: Compensating, the question didn't say, patched the intrusion, it clearly says "recovering from damage".
upvoted 1 times
ostralo
2 years, 6 months ago
I disagree, Compensating controls are alternative controls used when a primary control is not feasible. Corrective controls attempt to reverse the impact of an incident. https://purplesec.us/security-controls/
upvoted 4 times
...
...
abrilo
2 years, 6 months ago
Selected Answer: D
A compensating control attempts to recover from an intrusion by compensating for the issues that were left behind. For example, if someone Stole a laptop with all of our data, we could compensate for that by purchasing a new laptop and restoring that data from backup. A corrective control is designed to mitigate any damage that was occurred because of a security event. For example in IPS, intrusion prevention system can identify an attack on the network and block that traffic from entering the rest of the network.
upvoted 1 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago