CISA Exam QuestionsBrowse all questions from this exam

CISA Exam - Question 9


Which of the following should be the FIRST step in managing the impact of a recently discovered zero-day attack?

Show Answer
Correct Answer: B

In managing the impact of a recently discovered zero-day attack, the first step is to identify the vulnerable assets. This is because knowing which assets are vulnerable allows you to prioritize and protect those assets immediately, thus mitigating potential damage efficiently. Without knowing the specific assets that are at risk, subsequent actions like estimating potential damage or evaluating the impact are less effective.

Discussion

5 comments
Sign in to comment
DeeplaxmiOption: B
Sep 25, 2022

yes, Knowing the vulnerable asset is imp, then only one can find out which assets might have faced the damage and thence the potential impact/ loss.

TTH1019Option: C
Jun 3, 2023

While identifying vulnerable assets is an important step, it typically comes after evaluating the likelihood of attack. Once the likelihood is determined, organizations can focus on identifying the assets or systems that are potentially affected by the zero-day vulnerability. Ans: C

PC2323Option: A
Sep 12, 2023

Post zero day estimating vulnerabilities or probability of attack is lower priority than estimating the potential damage

5b56aaeOption: B
Apr 14, 2024

When you know there could be an attack, the first thing is to protect the assets from it

scriptkiddieOption: C
Jul 18, 2024

Identifying vulnerable assets is the first crucial step in managing the impact of a zero-day attack​​.

scriptkiddie
Jul 18, 2024

sorry, I want to mark B