Drag steps to the numbered slots on the right, or tap a step then tap a slot.
N10-009 Network Security Practice Question
Drag and drop the steps for a disaster recovery procedure after a server failure into the correct order.
Answer choices
Why each option matters
Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.
Correct answer & explanation
Assess damage, then rebuild server, then restore from backup, then apply patches, then test functionality
The correct disaster recovery order begins with assessing the damage to understand the scope of the failure. Next, rebuild the server (hardware/OS), then restore data from backup. After restoration, apply any necessary patches to bring the system up to date, and finally test functionality to confirm successful recovery. This sequence ensures data integrity and minimizes downtime.
Answer analysis
Option-by-option breakdown
For each option: why learners choose it and why it is or isn't the right answer here.
- ✗
Assess damage, then restore from backup, then rebuild server, then apply patches, then test functionality
Why it's wrong here
This sequence is flawed because attempting to restore data from backup before the server hardware and operating system are rebuilt creates a significant risk. If the server rebuild process, such as operating system installation or partitioning, occurs after data restoration, it could inadvertently overwrite or corrupt the previously restored data. This necessitates a complete redo of the restoration, wasting valuable recovery time. A stable, rebuilt platform is essential before data restoration can commence reliably.
- ✗
Restore from backup, then rebuild server, then test functionality, then apply patches, then assess damage
Why it's wrong here
This order is highly illogical and inefficient for a disaster recovery procedure. Initiating a data restoration before the server hardware and operating system are rebuilt means there is no stable, functional platform to restore data onto, rendering the step ineffective. Furthermore, placing "assess damage" as the final step is fundamentally incorrect; initial damage assessment is crucial for understanding the scope of the disaster and planning the entire recovery efforts effectively.
- ✓
Assess damage, then rebuild server, then restore from backup, then apply patches, then test functionality
Why this is correct
This sequence represents the most logical and effective disaster recovery procedure, minimizing downtime and ensuring data integrity. It begins with a critical damage assessment to understand the scope of the incident, followed by rebuilding the server's foundational hardware and operating system. Only once the server is stable and operational is data then restored from the most recent verified backup. Applying patches after restoration ensures security and stability, with final testing confirming full functionality and data integrity before returning to production.
- ✗
Test functionality, then assess damage, then restore from backup, then apply patches, then rebuild server
Why it's wrong here
Starting a disaster recovery process by attempting to "test functionality" is premature and nonsensical. There is no functional system to test immediately after a disaster, as the server likely needs rebuilding and data restoration from scratch. This order completely disregards the foundational steps required to bring a system back online, making any testing attempt futile and misleading without a stable, rebuilt, and restored environment.
Go deeper
Related to this question
Learn chapter
Rogue DHCP Server Attacks
Key term
Integrity
Integrity is the assurance that data has not been altered or tampered with in an unauthorized way, preserving its accuracy and consistency from source to destination.
Key term
Backup
A backup is a copy of computer data taken and stored separately so that the original data can be restored if it is lost, damaged, or corrupted.
About these practice questions
One of 464 original N10-009 practice questions on Courseiva, each with a full explanation and wrong-answer analysis — not exam dumps or protected exam content. Learn why practice questions differ from exam dumps →
Written by Johnson Ajibi, MSc IT Security
Senior Network & Security Engineer · founder of Courseiva
This N10-009 practice question is part of Courseiva's free CompTIA certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the N10-009 exam.