QuestionQ1007

Risk Response and Reporting

Which of the following would BEST mitigate the ongoing risk associated with operating system (OS) vulnerabilities?

  • A Document and implement a patching process
  • B Identify the vulnerabilities and applicable OS patches
  • C Temporarily mitigate the OS vulnerabilities
  • D Evaluate permanent fixes such as patches and upgrades
Explanation

A documented and implemented patching process provides an ongoing, repeatable method to remediate operating-system vulnerabilities by applying and managing security updates. Identification, temporary mitigation, or evaluation alone does not ensure lasting remediation.

Community Discussion

No comments yet. Be the first to start the discussion!