(ISC)2 Certified in Cybersecurity Practice Exam

Disable ads (and more) with a membership for a one time $2.99 payment

Prepare for the (ISC)2 Certified in Cybersecurity Exam with comprehensive quizzes and extensive question banks. Enhance your skills with detailed explanations and practice tests designed to improve your expertise for the certification exam. Get exam-ready now!

Each practice test/flash card set has 50 randomly selected questions from a bank of over 500. You'll get a new set of questions each time!

Practice this question and more.


Which type of control focuses on remediating security issues that have already occurred?

  1. Preventive Control

  2. Deterrent Control

  3. Recovery Control

  4. Corrective Control

The correct answer is: Recovery Control

The focus of recovery controls is specifically on addressing and managing security incidents that have already occurred. These controls are designed to restore systems and processes to their normal operations after a security breach or failure has taken place. Recovery controls typically encompass actions such as data backups, system restorations, and disaster recovery plans, ensuring that the organization can regain functionality and mitigate the impact of the incident. While preventive controls aim to deter and prevent security issues from occurring in the first place, and deterrent controls serve to discourage potential security violations, corrective controls are also aimed at fixing vulnerabilities or weaknesses after an incident rather than focusing on broader recovery efforts. Therefore, recovery controls uniquely emphasize the restoration aspect and are critical for an organization's resilience in the face of security challenges.