Implementing and Operating Cisco Security Core Technologies (SCOR) — Question 584
A company has 5000 Windows users on its campus. Which two precautions should IT take to prevent WannaCry ransomware from spreading to all clients? (Choose two.)
Answer options
- A. Put all company users in the trusted segment of NGFW and put all servers to the DMZ segment of the Cisco NGFW.
- B. Segment different departments to different IP blocks and enable Dynamic ARP Inspection on all VLANs.
- C. Ensure that noncompliant endpoints are segmented off to contain any potential damage.
- D. Ensure that a user cannot enter the network of another department.
- E. Perform a posture check to allow only network access to those Windows devices that are already patched.
Correct answer: C, E
Explanation
The correct answer includes option C, which focuses on isolating noncompliant endpoints to prevent further infection, and option E, which ensures that only patched devices can access the network, mitigating vulnerability. Options A, B, and D, while helpful for network security, do not directly address the immediate containment of ransomware spread.