A security administrator has configured network firewall rules to block traffic from known malicious IP addresses. What type of security control does this action represent?
The correct answer is Preventive. A firewall is a preventive control because its primary function is to proactively stop an incident-in this case, unauthorized network traffic-from occurring. Corrective controls, such as restoring from a backup, are used to remediate a system after an incident has occurred. Detective controls, like an Intrusion Detection System (IDS), are used to identify incidents as they happen. Compensating controls are alternate measures used when a primary control is not feasible.
Ask Bash
Bash is our AI bot, trained to help you pass your exam. AI Generated Content may display inaccurate information, always double-check anything important.
What is a preventive control in cybersecurity?
Open an interactive chat with Bash
How does a firewall act as a preventive control?
Open an interactive chat with Bash
What is the difference between preventive and corrective controls?