QuestionQ6

Vulnerability Management

A security analyst is implementing a vulnerability-management process for an OT environment:

  • Systems must stay on an isolated network.
  • The process should concentrate on external threats.
  • No extra software may be deployed on the systems.
  • Packets in transit must not be modified or dropped.
  • Additional processing latency is unacceptable.

Which of the following is the best way to securely satisfy these requirements?

Explanation

Passive, agentless sensors at the network edge provide visibility into external network threats without installing endpoint software or sitting inline with traffic. Because they observe rather than control packet forwarding, they do not modify or drop packets and do not add processing delay to transmitted traffic.

Community Discussion

No comments yet. Be the first to start the discussion!