ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 470 - SY0-601 discussion

Report
Export

Which of the following would help ensure a security analyst is able to accurately measure the overall risk to an organization when a new vulnerability is disclosed?

A.
A full inventory of all hardware and software
Answers
A.
A full inventory of all hardware and software
B.
Documentation of system classifications
Answers
B.
Documentation of system classifications
C.
A list of system owners and their departments
Answers
C.
A list of system owners and their departments
D.
Third-party risk assessment documentation
Answers
D.
Third-party risk assessment documentation
Suggested answer: A

Explanation:

A full inventory of all hardware and software would help ensure a security analyst is able to accurately measure the overall risk to an organization when a new vulnerability is disclosed, as it would allow the analyst to identify which systems and applications are affected by the vulnerability and prioritize the remediation efforts accordingly. A full inventory would also help the analyst to determine the impact and likelihood of a successful exploit, as well as the potential loss of confidentiality, integrity and availability of the data and services.

Reference:

https://resources.infosecinstitute.com/certification/security-plus-risk-management-processes-and-concepts/

https://www.comptia.org/landing/securityplus/index.html

https://www.comptia.org/blog/complete-guide-to-risk-management

asked 02/10/2024
Fakhruddin Abbas
32 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first