List of questions
Related questions
Question 1092 - CISSP discussion
A retail company is looking to start a development project that will utilize open source components in its code for the first time. The development team has already acquired several 'open source components and utilized them in proof of concept (POC) code. The team recognizes that the legal and operational risks are outweighed by the benefits of open-source software use. What MUST the organization do next?
A.
Mandate that all open-source components be approved by the Information Security Manager (ISM).
B.
Scan all open-source components for security vulnerabilities.
C.
Establish an open-source compliance policy.
D.
Require commercial support for all open-source components.
Your answer:
0 comments
Sorted by
Leave a comment first