Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
Dell Technologies logo

Dell NIST Cybersecurity Framework v2.0

Domain 7Objective 1

Explain the Categories and Subcategories of the RECOVER Function. NIST-CYBERSECURITY-FRAMEWORK-2 Practice Questions (Page 1)

Part of the NIST Framework: RECOVER Function domain, which accounts for 7% of the NIST-CYBERSECURITY-FRAMEWORK-2 exam.

23questions here
5free pages
4concepts
7%of the exam

Questions 1–5

  1. 1application · medium

    A retail company's e-commerce website was taken offline by a ransomware attack. The recovery team has restored the website from a backup and is now testing the payment processing functionality. The company's marketing team wants to announce the website is back online. What should the recovery team do before the announcement?

    Select an answer first
  2. 2application · medium

    A financial services firm completed a recovery from a data breach that involved a compromised backup administrator account. During the post-incident review, the team discovered that the backup software did not support multi-factor authentication (MFA) at the time of the incident. The vendor has since released a version that supports MFA. According to the NIST CSF 2.0 RECOVER function, what should the organization do to address this finding?

    Select an answer first
  3. 3application · medium

    A healthcare organization is recovering from a distributed denial-of-service (DDoS) attack that targeted its patient portal. The portal is now back online, and the IT team is verifying that patient data is intact. The organization's public relations team wants to issue a statement to patients. What should the recovery team do to support the PR team?

    Select an answer first
  4. 4foundation · easy

    What is the primary focus of the Recovery Planning category in the NIST Cybersecurity Framework 2.0?

    Select an answer first
  5. 5expert · hard

    A cloud-based SaaS provider experienced a service outage due to a misconfigured database migration. The recovery team restored the database from a snapshot taken 6 hours before the incident. However, the restored database is missing transactions that occurred during the 6-hour window. The company's recovery point objective (RPO) is 15 minutes. The CEO wants to know when the service can be fully restored. What is the MOST appropriate course of action?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by Dell Technologies. “NIST-CYBERSECURITY-FRAMEWORK-2” is a trademark of its owner, used for identification only.