Lecture 2-2 Flashcards

1
Q

What is the formula for calculating ROI in vulnerability management?

A

ROI = (Gain from Investment – Cost of Investment) * 100 / Cost of Investment

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

VM governance: what is it’s role in an organization?

A
  1. Helps in justifying the cost of security controls
  2. Helps calculate ROI
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

What is the significance of having a robust vulnerability management program?

A

It shows the security posture and lowers the risk [Probability*impact]

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

What is the impact of failing to comply with regulatory standards?

A

Heavy fines/bans

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What is the purpose of security testing?

A

To check the effectiveness of your security controls regularly

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

Who performs a security assessment?

A

a technical assessor

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

Security Audits are performed by who

A

independent auditors

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

What is the goal of implementing a vulnerability management program?

A

To effectively mitigate all the risks

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

What does the term ‘security posture’ refer to?

A

The security strength of the organization

(Overall security status, ability to respond to threats)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

True or False: Vulnerability management only focuses on eliminating vulnerabilities.

A

False

How well did you know this?
1
Not at all
2
3
4
5
Perfectly