正解:C
When faced with increasing cyberattacks, the best response is to revalidate and mitigate risks to an acceptable level. This involves conducting a risk assessment to identify the organization's most critical assets, the threats to those assets, and the likelihood of those threats occurring. Based on the results of the risk assessment, the organization can prioritize and implement mitigation measures to reduce the risk to an acceptable level.
While increasing budget and staffing levels for the incident response team and implementing an intrusion detection system (IDS) may also be important steps in reducing risk, they should be done in conjunction with a risk assessment and risk mitigation plan. Testing the business continuity plan (BCP) is also important for ensuring the organization's readiness for a potential security incident, but it does not directly reduce the risk of a cyberattack. By revalidating and mitigating risks to an acceptable level, the organization can proactively reduce its risk of a successful cyberattack.