nerdexam
CompTIACompTIA

CAS-005 · Question #272

CAS-005 Question #272: Real Exam Question with Answer & Explanation

Sign in or unlock CAS-005 to reveal the answer and full explanation for question #272. The question stem and answer options stay visible for context.

Submitted by priya_blr· Mar 6, 2026Governance, Risk, and Compliance

Question

A company recently experienced a ransomware attack. Although the company performs systems and data backup on a schedule that aligns with its RPO (Recovery Point Objective) requirements, the backup administrator could not recover critical systems and data from its offline backups to meet the RPO. Eventually, the systems and data were restored with information that was six months outside of RPO requirements. Which of the following actions should the company take to reduce the risk of a similar attack?

Options

  • AEncrypt and label the backup tapes with the appropriate retention schedule before they are sent to
  • BImplement a business continuity process that includes reverting manual business processes.
  • CPerform regular disaster recovery testing of IT and non-IT systems and processes.
  • DCarry out a tabletop exercise to update and verify the RACI matrix with IT and critical business

Unlock CAS-005 to see the answer

You've previewed enough free CAS-005 questions. Unlock CAS-005 for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.

Full CAS-005 PracticeBrowse All CAS-005 Questions