ExamGecko
Home Home / ISC / CISSP
Question list
Search
Search

Question 1092 - CISSP discussion

Report
Export

A retail company is looking to start a development project that will utilize open source components in its code for the first time. The development team has already acquired several 'open source components and utilized them in proof of concept (POC) code. The team recognizes that the legal and operational risks are outweighed by the benefits of open-source software use. What MUST the organization do next?

A.
Mandate that all open-source components be approved by the Information Security Manager (ISM).
Answers
A.
Mandate that all open-source components be approved by the Information Security Manager (ISM).
B.
Scan all open-source components for security vulnerabilities.
Answers
B.
Scan all open-source components for security vulnerabilities.
C.
Establish an open-source compliance policy.
Answers
C.
Establish an open-source compliance policy.
D.
Require commercial support for all open-source components.
Answers
D.
Require commercial support for all open-source components.
Suggested answer: C
asked 18/09/2024
SERGIO FREITAS
38 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first