Study. uk . com
  1. Home
  2. All questions
  3. Question 460

CISSP study material · question 460 of 500

A recovery plan relies entirely on redeploying golden images. Which two additional measures does CISA's ransomware guidance recommend? Choose two.

  1. Rebuild only from images, since installing software separately reintroduces the compromise.
  2. Keep source code or executables in the offline backups as well.
  3. Retain backup hardware, since some images will not install correctly on different hardware or platforms.
  4. Store the images on the same volume as the production data for faster restore.
Show the answer

Answer: B. Keep source code or executables in the offline backups as well.
C. Retain backup hardware, since some images will not install correctly on different hardware or platforms.

Source code or executables belong in offline backups and spare hardware should be retained, because rebuilding from images is efficient but images do not always install.

Source: CISA #StopRansomware Guide (CISA) — CISA #StopRansomware Guide > Preparing for Ransomware and Data Extortion Incidents

Challenge yourself on this topic → Study as cards