nerdexam
Isaca

CISA · Question #74

Which of the following threats is mitigated by a firewall?

The correct answer is B. Intrusion attack. A firewall primarily mitigates intrusion attacks by inspecting and filtering network traffic, blocking unauthorized access attempts based on predefined security rules.

Submitted by javi_es· Apr 18, 2026Protection of Information Assets

Question

Which of the following threats is mitigated by a firewall?

Options

  • AAsynchronous attack
  • BIntrusion attack
  • CTrojan horse
  • DPassive assault

How the community answered

(55 responses)
  • A
    2% (1)
  • B
    91% (50)
  • C
    2% (1)
  • D
    5% (3)

Why each option

A firewall primarily mitigates intrusion attacks by inspecting and filtering network traffic, blocking unauthorized access attempts based on predefined security rules.

AAsynchronous attack

Asynchronous attack is not a standard, recognized classification of a threat that firewalls are designed to specifically mitigate.

BIntrusion attackCorrect

Firewalls function as a barrier between trusted and untrusted networks, preventing unauthorized access by analyzing incoming and outgoing network traffic and blocking connections that violate established security policies, which directly mitigates intrusion attempts.

CTrojan horse

A Trojan horse is a type of malware; while a firewall can help prevent its initial network delivery, it does not directly detect or remove Trojan horses once they have penetrated the network or executed on an endpoint.

DPassive assault

A passive assault, such as eavesdropping, involves unauthorized monitoring of network traffic; while firewalls can prevent active unauthorized access, they do not inherently prevent passive listening unless combined with other security measures like encryption.

Concept tested: Firewall functions and network security

Source: https://docs.microsoft.com/en-us/windows/security/threat-protection/windows-defender-firewall/windows-defender-firewall-with-advanced-security

Topics

#Firewall#Network security#Threat mitigation#Intrusion prevention

Community Discussion

No community discussion yet for this question.

Full CISA Practice