nerdexam
Isaca

CISA · Question #301

An organization has experienced frequent of malware exploiting vulnerabilities to its network. Which of the following would be an IS auditor's BEST recommendation to address this issue?

The correct answer is D. Intrusion prevention system (IPS). An Intrusion Prevention System (IPS) is the best recommendation to address malware exploiting vulnerabilities, as it actively monitors network traffic for malicious activity and prevents it in real- time. Unlike passive solutions, an IPS can block malicious payloads and prevent…

Submitted by anna_se· Apr 18, 2026Protection of Information Assets

Question

An organization has experienced frequent of malware exploiting vulnerabilities to its network. Which of the following would be an IS auditor’s BEST recommendation to address this issue?

Options

  • AStateful inspection firewall
  • BDemilitarized zone (DMZ)
  • CContinuous port scanning
  • DIntrusion prevention system (IPS)

How the community answered

(38 responses)
  • A
    18% (7)
  • B
    3% (1)
  • C
    8% (3)
  • D
    71% (27)

Explanation

An Intrusion Prevention System (IPS) is the best recommendation to address malware exploiting vulnerabilities, as it actively monitors network traffic for malicious activity and prevents it in real- time. Unlike passive solutions, an IPS can block malicious payloads and prevent vulnerabilities from being exploited, providing an effective defense against frequent malware attacks.

Topics

#Malware prevention#Vulnerability exploitation#Network security#Intrusion Prevention System (IPS)

Community Discussion

No community discussion yet for this question.

Full CISA Practice