QuestionQ20

Cybersecurity Principles and Risks

When identifying vulnerabilities, what should a cybersecurity analyst determine first?

  • A The number of vulnerabilities identifiable by the scanning tool
  • B The number of tested asset types included in the assessment
  • C The vulnerability categories possible for the tested asset types
  • D The vulnerability categories identifiable by the scanning tool
Explanation

Vulnerability categories that may affect the tested asset types define the assessment scope and the types of weaknesses that must be evaluated. Scanner capabilities and vulnerability counts can be assessed only after those relevant categories are established.

Community Discussion

No comments yet. Be the first to start the discussion!