Certified Information Systems Security Professional – CISSP – Question360

A security practitioner has just been assigned to address an ongoing Denial of Service (DoS) attack against the company’s network, which includes an e-commerce web site. The strategy has to include defenses for any size of attack without rendering the company network unusable. Which of the following should be a PRIMARY concern when addressing this issue?

A.
Deal with end user education and training.
B. Pay more for a dedicated path to the Internet.
C. Allow legitimate connections while blocking malicious connections.
D. Ensure the web sites are properly backed up on a daily basis.

Correct Answer: C