A web services company is planning a one-time high-profile event to be hosted on the corporate website. An outage, due to an attack, would be publicly
embarrassing, so Joe, the Chief Executive Officer (CEO), has requested that his security engineers put temporary preventive controls in place. Which of the
following would MOST appropriately address Joe’s concerns?
A.
Ensure web services hosting the event use TCP cookies and deny_hosts.
B.
Configure an intrusion prevention system that blocks IPs after detecting too many incomplete sessions.
C.
Contract and configure scrubbing services with third-party DDoS mitigation providers.
D.
Purchase additional bandwidth from the company’s Internet service provider.