Valid CAS-005 Dumps shared by ExamDiscuss.com for Helping Passing CAS-005 Exam! ExamDiscuss.com now offer the newest CAS-005 exam dumps, the ExamDiscuss.com CAS-005 exam questions have been updated and answers have been corrected get the newest ExamDiscuss.com CAS-005 dumps with Test Engine here:
A company recently experienced aransomware attack. Although the company performssystems and data backupon a schedule that aligns with itsRPO (Recovery Point Objective) requirements, thebackup administratorcould not recovercritical systems and datafrom its offline backups to meet the RPO. Eventually, the systems and data were restored with information that wassix months outside of RPO requirements. Which of the following actions should the company take to reduce the risk of a similar attack?
Correct Answer: C
Comprehensive and Detailed Explanation: * Understanding the Ransomware Issue: * The key issue here is thatbackups were not recoverable within the required RPO timeframe. * This means the organizationdid not properly testitsbackup and disaster recovery (DR) processes. * To prevent this from happening again, regular disaster recovery testing is essential. * Why Option C is Correct: * Disaster recovery testing ensures that backups are functionaland can meetbusiness continuity needs. * Frequent DR testingallows organizations to identify and fixgaps in recovery strategies. * Regular testing ensuresthat recoverymeets the RPO & RTO (Recovery Time Objective) requirements. * Why Other Options Are Incorrect: * A (Encrypt & label backup tapes):While encryption is important, it does not address thefailure to meet RPO requirements. * B (Reverting to manual business processes):While amanual continuity planis good for resilience, it doesnot resolve the backup and recovery failure. * D (Tabletop exercise & RACI matrix):Atabletop exerciseis a planning activity, butit does not involve actual recovery testing.