QuestionQ17
Cloud Posture SecurityA company receives a critical vulnerability finding with a CVSS score of 10 on a workload that has been virtually patched using a WAF. The security team must track the issue appropriately based on the risk to the company environment and in alignment with its risk-management approach.
Which action can the security team take in Cortex Cloud?
- A Fail builds containing the vulnerability in CI/CD pipelines.
- B Recast the CVSS score and vulnerability severity.
- C Tag the vulnerability as “Ignored”.
- D Ensure the issue is sent to the SOC for analysis.
Community Discussion