Which of the following best describes the recommended approach to restoring systems during the recovery phase of incident management after an incident has been contained?
Reactivate systems without applying patches, then rely on monitoring to detect any reinfection.
Restore systems from verified clean backups, validate security controls, and monitor them before returning to production.
Keep affected systems permanently offline and migrate all workloads to brand-new infrastructure.
Immediately return all systems to full production status to minimize downtime.
The correct approach is to restore affected systems from verified clean backups, validate that security controls are functioning, and monitor the systems for signs of residual compromise before putting them back into full production. Rushing to bring systems online without these steps risks re-introducing malware or vulnerabilities and can lead to repeat incidents. Guidance such as NIST's incident-response life-cycle and industry best practices stress careful, validated restoration and post-recovery monitoring.
Ask Bash
Bash is our AI bot, trained to help you pass your exam. AI Generated Content may display inaccurate information, always double-check anything important.
What does 'verified clean backups' mean?
Open an interactive chat with Bash
Why is monitoring crucial after restoring systems?
Open an interactive chat with Bash
What is the NIST incident-response life-cycle?
Open an interactive chat with Bash
ISC2 CISSP
Security Operations
Your Score:
Report Issue
Bash, the Crucial Exams Chat Bot
AI Bot
Loading...
Loading...
Loading...
Pass with Confidence.
IT & Cybersecurity Package
You have hit the limits of our free tier, become a Premium Member today for unlimited access.
Military, Healthcare worker, Gov. employee or Teacher? See if you qualify for a Community Discount.
Monthly
$19.99
$19.99/mo
Billed monthly, Cancel any time.
3 Month Pass
$44.99
$14.99/mo
One time purchase of $44.99, Does not auto-renew.
MOST POPULAR
Annual Pass
$119.99
$9.99/mo
One time purchase of $119.99, Does not auto-renew.
BEST DEAL
Lifetime Pass
$189.99
One time purchase, Good for life.
What You Get
All IT & Cybersecurity Package plans include the following perks and exams .