GCIH · Question #104
Mark works as a Network Administrator for NetTech Inc. The network has 150 Windows 2000 Professional client computers and four Windows 2000 servers. All the client computers are able to connect to…
The correct answer is A. Educate users of the client computers to avoid malware. B. Educate users of the client computers about the problems arising due to malware. User education - both on avoiding malware and understanding its risks - is the most practical and effective defense because humans are the primary attack vector for malware infections. Restricting all program execution or disk writes would make the computers unusable for normal…
Question
Mark works as a Network Administrator for NetTech Inc. The network has 150 Windows 2000 Professional client computers and four Windows 2000 servers. All the client computers are able to connect to the Internet. Mark is concerned about malware infecting the client computers through the Internet. What will Mark do to protect the client computers from malware? Each correct answer represents a complete solution. Choose two.
Options
- AEducate users of the client computers to avoid malware.
- BEducate users of the client computers about the problems arising due to malware.
- CPrevent users of the client computers from executing any programs.
- DAssign Read-Only permission to the users for accessing the hard disk drives of the client
How the community answered
(39 responses)- A90% (35)
- C3% (1)
- D8% (3)
Why each option
User education - both on avoiding malware and understanding its risks - is the most practical and effective defense because humans are the primary attack vector for malware infections. Restricting all program execution or disk writes would make the computers unusable for normal business tasks.
Training users to recognize and avoid malware threats such as phishing emails, suspicious downloads, and untrusted websites directly reduces the human-factor attack surface, which is the leading cause of malware infections in organizational environments.
Educating users about the consequences of malware infections increases security awareness and motivates safe computing behavior, making users active participants in the organization's defense rather than passive vulnerabilities.
Preventing users from executing any programs would block all legitimate business applications, rendering the 150 client computers completely non-functional and creating an unacceptable operational impact.
Assigning read-only permissions to hard disk drives would prevent users from saving documents, creating files, or running applications that write to disk, making normal business operations impossible on those workstations.
Concept tested: User security awareness training for malware prevention
Source: https://www.cisa.gov/topics/cybersecurity-best-practices
Topics
Community Discussion
No community discussion yet for this question.