Exec Questions Flashcards

Incident and Recovery Overview (6 cards)

1
Q

How do we ensure this never happens again, specifically the MFA gap?

A

Mandatory MFA across all systems, no exceptions. Zero-trust architecture implementation with just-in-time access controls and biometric authentication.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

What’s our legal exposure from the 100 million patient records compromised?

A

Ongoing litigation costs factored into $3B projection. Enhanced compliance documentation and regulatory adherence programs in place to minimize future exposure.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

How long did it take us to detect vs. contain the breach?

A

9-day window from initial compromise to full containment. New AI-driven monitoring will reduce detection time to minutes, not days.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

What was the business impact beyond the $1 billion cost?

A

Nationwide disruption to claims processing, pharmacy services. Some hospitals waited weeks for system restoration. Severe reputational damage requiring congressional testimony.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

Why did we pay the $22 million ransom?

A

Critical to restore essential healthcare services quickly. Decision made to minimize patient care disruption while working on system recovery.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

What systems are we rebuilding vs. restoring?

A

Complete rebuild of compromised infrastructure with enhanced security controls. Legacy systems being replaced with modern, secure alternatives.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly