Which practice is recommended to prevent malware infections in a network environment?

Prepare for the Coach CFE Exam. Study using flashcards and multiple-choice questions, each with hints and explanations. Get ready for your assessment!

Multiple Choice

Which practice is recommended to prevent malware infections in a network environment?

Explanation:
Controlling what runs on servers to prevent malware infections is essential. When software hasn’t been tested in your environment, it may contain hidden malware, introduce unknown vulnerabilities, or conflict with existing security controls. Running only approved, tested, and staged software creates a known baseline, reduces the attack surface, and makes it easier to detect and patch issues. This approach, supported by proper change management and application whitelisting, helps ensure that deployments don’t bring in harmful code and that security policies are upheld. Placing untested programs on a server, disabling the firewall, or installing software from untrusted sources all undermine these protections: untested or untrusted software can carry malware, while turning off defenses leaves the network exposed.

Controlling what runs on servers to prevent malware infections is essential. When software hasn’t been tested in your environment, it may contain hidden malware, introduce unknown vulnerabilities, or conflict with existing security controls. Running only approved, tested, and staged software creates a known baseline, reduces the attack surface, and makes it easier to detect and patch issues. This approach, supported by proper change management and application whitelisting, helps ensure that deployments don’t bring in harmful code and that security policies are upheld.

Placing untested programs on a server, disabling the firewall, or installing software from untrusted sources all undermine these protections: untested or untrusted software can carry malware, while turning off defenses leaves the network exposed.

Subscribe

Get the latest from Passetra

You can unsubscribe at any time. Read our privacy policy