ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 186 - CS0-003 discussion

Report
Export

A vulnerability management team found four major vulnerabilities during an assessment and needs to provide a report for the proper prioritization for further mitigation. Which of the following vulnerabilities should have the highest priority for the mitigation process?

A.
A vulnerability that has related threats and loCs, targeting a different industry
Answers
A.
A vulnerability that has related threats and loCs, targeting a different industry
B.
A vulnerability that is related to a specific adversary campaign, with loCs found in the SIEM
Answers
B.
A vulnerability that is related to a specific adversary campaign, with loCs found in the SIEM
C.
A vulnerability that has no adversaries using it or associated loCs
Answers
C.
A vulnerability that has no adversaries using it or associated loCs
D.
A vulnerability that is related to an isolated system, with no loCs
Answers
D.
A vulnerability that is related to an isolated system, with no loCs
Suggested answer: B

Explanation:

A vulnerability that is related to a specific adversary campaign, with IoCs found in the SIEM, should have the highest priority for the mitigation process. This is because it indicates that the vulnerability is actively being exploited by a known threat actor, and that the organization's security monitoring system has detected signs of compromise. This poses a high risk of data breach, service disruption, or other adverse impacts.

Reference: How to Prioritize Vulnerabilities Effectively: Vulnerability Prioritization Explained, Section: How to prioritize vulnerabilities step by step to avoid drowning in sea of problems; CompTIA CySA+ Study Guide: Exam CS0-003, 3rd Edition, Chapter 4: Security Operations and Monitoring, page 156.

asked 02/10/2024
Viswanadha Sastry Kattamuri
44 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first