Lecture 2-2 Flashcards
What is the formula for calculating ROI in vulnerability management?
ROI = (Gain from Investment – Cost of Investment) * 100 / Cost of Investment
VM governance: what is it’s role in an organization?
- Helps in justifying the cost of security controls
- Helps calculate ROI
What is the significance of having a robust vulnerability management program?
It shows the security posture and lowers the risk [Probability*impact]
What is the impact of failing to comply with regulatory standards?
Heavy fines/bans
What is the purpose of security testing?
To check the effectiveness of your security controls regularly
Who performs a security assessment?
a technical assessor
Security Audits are performed by who
independent auditors
What is the goal of implementing a vulnerability management program?
To effectively mitigate all the risks
What does the term ‘security posture’ refer to?
The security strength of the organization
(Overall security status, ability to respond to threats)
True or False: Vulnerability management only focuses on eliminating vulnerabilities.
False