nerdexam
(ISC)2

CGRC · Question #21

Which of the following techniques are used after a security breach and are intended to limit the extent of any damage caused by the incident? Response:

The correct answer is D. Corrective controls. Corrective controls are security measures implemented after an incident has occurred to mitigate damage and restore systems to a secure state. They focus on minimizing the impact and recovering from a security breach.

Implementation of Security and Privacy Controls

Question

Which of the following techniques are used after a security breach and are intended to limit the extent of any damage caused by the incident? Response:

Options

  • ASafeguards
  • BPreventive controls
  • CDetective controls
  • DCorrective controls

How the community answered

(70 responses)
  • A
    1% (1)
  • B
    4% (3)
  • C
    1% (1)
  • D
    93% (65)

Why each option

Corrective controls are security measures implemented after an incident has occurred to mitigate damage and restore systems to a secure state. They focus on minimizing the impact and recovering from a security breach.

ASafeguards

Safeguards are general measures taken to protect assets, often encompassing all types of controls, not specifically post-breach actions.

BPreventive controls

Preventive controls aim to stop incidents from happening in the first place, acting before any breach occurs.

CDetective controls

Detective controls are designed to identify and alert about ongoing or past incidents, but they do not actively limit damage or correct the situation.

DCorrective controlsCorrect

Corrective controls are explicitly designed to be applied after a security incident or breach to limit damage and facilitate recovery. Examples include incident response procedures, disaster recovery plans, and system restoration processes which address issues post-event.

Concept tested: Types of security controls - Corrective

Source: https://csrc.nist.gov/glossary/term/corrective_controls

Topics

#Security Controls#Corrective Controls#Incident Response#Damage Limitation

Community Discussion

No community discussion yet for this question.

Full CGRC Practice