exam questions

Exam CISA All Questions

View all questions & answers for the CISA exam

Exam CISA topic 1 question 137 discussion

Actual exam question from Isaca's CISA
Question #: 137
Topic #: 1
[All CISA Questions]

An organization experienced a domain name system (DNS) attack caused by default user accounts not being removed from one of the servers. Which of the following would have been the BEST way to mitigate the risk of this DNS attack?

  • A. Require all employees to attend training for secure configuration management.
  • B. Have a third party configure the virtual servers.
  • C. Configure the servers from an approved standard configuration.
  • D. Configure the intrusion prevention system (IPS) to identify DNS attacks.
Show Suggested Answer Hide Answer
Suggested Answer: C 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
Tef_corp
8 months, 3 weeks ago
Selected Answer: C
Option C is the recommended approach according to the CISA (Cybersecurity and Infrastructure Security Agency) textbook. It emphasizes the importance of following established guidelines and configurations to enhance security posture.
upvoted 1 times
...
Bennyche
2 years ago
why not A? because it is about staff forget to remove the default account
upvoted 1 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...