Exam CISA All QuestionsBrowse all questions from this exam
Question 9

Which of the following should be the FIRST step in managing the impact of a recently discovered zero-day attack?

    Correct Answer: B

    In managing the impact of a recently discovered zero-day attack, the first step is to identify the vulnerable assets. This is because knowing which assets are vulnerable allows you to prioritize and protect those assets immediately, thus mitigating potential damage efficiently. Without knowing the specific assets that are at risk, subsequent actions like estimating potential damage or evaluating the impact are less effective.

Discussion
DeeplaxmiOption: B

yes, Knowing the vulnerable asset is imp, then only one can find out which assets might have faced the damage and thence the potential impact/ loss.

scriptkiddieOption: C

Identifying vulnerable assets is the first crucial step in managing the impact of a zero-day attack​​.

scriptkiddie

sorry, I want to mark B

5b56aaeOption: B

When you know there could be an attack, the first thing is to protect the assets from it

PC2323Option: A

Post zero day estimating vulnerabilities or probability of attack is lower priority than estimating the potential damage

TTH1019Option: C

While identifying vulnerable assets is an important step, it typically comes after evaluating the likelihood of attack. Once the likelihood is determined, organizations can focus on identifying the assets or systems that are potentially affected by the zero-day vulnerability. Ans: C