List of questions
Related questions
Question 225 - CISA discussion
During a follow-up audit, it was found that a complex security vulnerability of low risk was not resolved within the agreed-upon timeframe. IT has stated that the system with the identified vulnerability is being replaced and is expected to be fully functional in two months Which of the following is the BEST course of action?
A.
Require documentation that the finding will be addressed within the new system
B.
Schedule a meeting to discuss the issue with senior management
C.
Perform an ad hoc audit to determine if the vulnerability has been exploited
D.
Recommend the finding be resolved prior to implementing the new system
Your answer:
0 comments
Sorted by
Leave a comment first