nerdexam
Cisco

300-220 · Question #81

Security countermeasures for identified risks might include:

The correct answer is B. Implementing strict access controls. Implementing strict access controls (B) is a core security countermeasure because it limits who can access sensitive systems and data, directly reducing the attack surface for identified risks like unauthorized access or data breaches. Why the distractors are wrong: A…

Threat Modeling Techniques

Question

Security countermeasures for identified risks might include:

Options

  • ADecreasing the complexity of passwords
  • BImplementing strict access controls
  • CReducing the frequency of backups
  • DLimiting the use of encryption

How the community answered

(18 responses)
  • A
    6% (1)
  • B
    72% (13)
  • C
    6% (1)
  • D
    17% (3)

Explanation

Implementing strict access controls (B) is a core security countermeasure because it limits who can access sensitive systems and data, directly reducing the attack surface for identified risks like unauthorized access or data breaches.

Why the distractors are wrong:

  • A - Decreasing password complexity weakens security, making accounts easier to compromise.
  • C - Reducing backup frequency increases risk of data loss, especially after ransomware or hardware failure.
  • D - Limiting encryption exposes data in transit and at rest, the opposite of a protective measure.

Memory tip: Think "countermeasures = barriers going UP." All three wrong answers involve reducing something that should stay strong (complexity, backups, encryption). Only B strengthens a control.

Topics

#Security countermeasures#Access controls#Risk mitigation#Security controls

Community Discussion

No community discussion yet for this question.

Full 300-220 Practice