Certified Incident Handler (CIH) Practice Ecam

Disable ads (and more) with a membership for a one time $2.99 payment

Prepare for the Certified Incident Handler (CIH) Exam. Enhance your knowledge with interactive quizzes and detailed insights into cyber incident handling. Boost your exam readiness with our expert-designed questions!

Each practice test/flash card set has 50 randomly selected questions from a bank of over 500. You'll get a new set of questions each time!

Practice this question and more.


Which of the following is a common mistake that can worsen a malware incident?

  1. Disconnecting compromised systems

  2. Failing to back up important data

  3. Implementing strong access controls

  4. Documenting the incident response process

The correct answer is: Failing to back up important data

Failing to back up important data is indeed a common mistake that can significantly worsen a malware incident. In the event of a malware attack, especially one that involves data loss or corruption (such as ransomware), having up-to-date backups is crucial for recovery. Without backups, organizations may face permanent data loss, which can lead to severe operational disruptions, financial losses, and reputational damage. Moreover, not backing up data can force organizations to consider paying the ransom or losing critical information altogether, both of which can have harmful consequences. Backups provide a safety net, allowing organizations to restore data to a known good state without yielding to the attackers’ demands. In contrast, actions such as disconnecting compromised systems, implementing strong access controls, and documenting the incident response process are generally best practices in incident handling that can help mitigate the damage from a malware incident.