QuestionQ48

Securing Assets

Which process below is MOST effective at reducing application risk?

  • A Regular vulnerability scans after deployment
  • B Regular code reviews throughout development
  • C Regular third-party risk assessments
  • D Regular monitoring of application use
Explanation

Regular code reviews throughout development are a preventive control that finds security defects and other implementation weaknesses before deployment, when they can be corrected most effectively and at lower cost.

Community Discussion

No comments yet. Be the first to start the discussion!