Study. uk . com
  1. Home
  2. All questions
  3. Question 441

CompTIA Security+ study material · question 441 of 611

Which control does CISA recommend for remote desktop services that must remain available?

  1. Disable session recording to reduce load
  2. Change the listening port
  3. Restrict them to a single administrative account
  4. Place them behind a VPN with multi-factor authentication
Show the answer

Answer: D. Place them behind a VPN with multi-factor authentication

Removing direct internet exposure and requiring a second factor addresses the way these services are actually abused.

Source: CISA #StopRansomware Guide (CISA) — CISA #StopRansomware Guide › Preparing for Ransomware

Challenge yourself on this topic → Study as cards