Which control reduces impact after an undesirable event or attack?

Study for the CompTIA SecurityX Test. Equip yourself with comprehensive flashcards and multiple choice questions that include hints and explanations. Gear up for your certification exam!

Multiple Choice

Which control reduces impact after an undesirable event or attack?

After an unwanted event or attack, the goal is to restore operations and minimize damage. Corrective controls are designed for this phase: they activate after an incident to repair systems, recover data, reconfigure or reinstall software, and bring the environment back to normal as quickly as possible. This includes actions like restoring from backups, reimaging systems, applying fixes or patches identified during the incident, and using failover to a redundant system to reduce downtime. Preventive controls aim to stop incidents before they occur, deterrent controls discourage threats, and compensating controls provide alternative measures when primary controls aren’t feasible, focusing on risk reduction rather than post-incident recovery.

Subscribe

Get the latest from Examzify

You can unsubscribe at any time. Read our privacy policy