List of questions
Related questions
Question 48 - PT0-003 discussion
A penetration tester presents the following findings to stakeholders:
Control | Number of findings | Risk | Notes
Encryption | 1 | Low | Weak algorithm noted
Patching | 8 | Medium | Unsupported systems
System hardening | 2 | Low | Baseline drift observed
Secure SDLC | 10 | High | Libraries have vulnerabilities
Password policy | 0 | Low | No exceptions noted
Based on the findings, which of the following recommendations should the tester make? (Select two).
A.
Develop a secure encryption algorithm.
B.
Deploy an asset management system.
C.
Write an SDLC policy.
D.
Implement an SCA tool.
E.
Obtain the latest library version.
F.
Patch the libraries.
Your answer:
0 comments
Sorted by
Leave a comment first