Study. uk . com
  1. Home
  2. All questions
  3. Question 461

CISSP study material · question 461 of 500

An incident response plan is stored on the corporate file share and in the ticketing system. What does CISA's ransomware guidance ask for in addition?

  1. A copy encrypted with a key held by an executive.
  2. A copy held by the organisation's insurer.
  3. A hard copy of the plan and an offline version.
  4. A copy replicated to a second region of the same cloud provider.
Show the answer

Answer: C. A hard copy of the plan and an offline version.

CISA asks that organisations create, maintain and exercise an incident response plan and associated communications plan, and ensure a hard copy and an offline version are available.

Source: CISA #StopRansomware Guide (CISA) — CISA #StopRansomware Guide > Preparing for Ransomware and Data Extortion Incidents

Challenge yourself on this topic → Study as cards