ExamGecko
Question list
Search
Search

Question 114 - D-ISM-FN-23 discussion

Report
Export

What is a function of the application hardening process'?

A.
Perform penetration testing and validate OS patch management
Answers
A.
Perform penetration testing and validate OS patch management
B.
Disable unnecessary application features or services
Answers
B.
Disable unnecessary application features or services
C.
Isolate VM network to ensure the default VM configurations are unchanged
Answers
C.
Isolate VM network to ensure the default VM configurations are unchanged
D.
Validate unused application files and programs to ensure consistency
Answers
D.
Validate unused application files and programs to ensure consistency
Suggested answer: B

Explanation:

Application hardening is the process of configuring an application to reduce its attack surface and make it more secure. The process involves several steps, including removing unnecessary features or services, enabling security features, configuring access controls, and implementing secure coding practices. By disabling unnecessary features or services, the application becomes less vulnerable to attacks that exploit these features or services. For example, an application that does not need to run as a privileged user should be configured to run with limited privileges. Additionally, disabling or removing unused or unnecessary application files and programs can help reduce the attack surface. This makes it harder for attackers to exploit vulnerabilities in the application. Penetration testing and patch management are also important components of application hardening, but they are not the primary function of the process.

Reference: Section 4.2 Security Hardening and Monitoring, page 228.

asked 16/09/2024
G.C. Helweg
38 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first