Answered step by step
Verified Expert Solution
Question
1 Approved Answer
You're the security administrator for a small consulting firm whose network has been the victim of a ransomware attack. The firm decided to pay the
You're the security administrator for a small consulting firm whose network has been the victim of a ransomware attack. The firm decided to pay the ransom to regain their data, but you've been tasked with investigating the attack so that the vulnerabilities can be patched to hopefully prevent scenarios like this one in the future.
During your investigation, you discover that the hacker gained initial access to the network through a user account. From there, they were able to gain access to a domain service account. From this account, the hacker ran some custom scripts that exploited vulnerabilities in the network, which gave them access to a domain administrator account. With this privileged account, the attacker was able to execute their ransomware attack.
You've decided to implement a zerotrust policy to help prevent this type of attack from occurring in the future.
Which of the following security measures should you implement for the identities across the network?
answer
Device health enforcement
Multifactor authentication
Abnormal behavior monitoring
Endtoend encryption
Step by Step Solution
There are 3 Steps involved in it
Step: 1
Get Instant Access to Expert-Tailored Solutions
See step-by-step solutions with expert insights and AI powered tools for academic success
Step: 2
Step: 3
Ace Your Homework with AI
Get the answers you need in no time with our AI-driven, step-by-step assistance
Get Started