Section 20.192 Updates and Patches Flashcards

Objectives 2.5 Explain the purpose of mitigation techniques used to secure the enterprise. Objectives 4.1 Given a scenario, you must be able to apply common security techniques to computing resources. Objectives 4.5 Given a scenario, you must be able to modify enterprise capabilities to enhance security.

1
Q

Patch management can be

Manual

A

Rare for fully manual patch management these days

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Patch management can be

Automated

A

More reliable and most often used

○ Hackers can reverse engineer patches to find the underlying vulnerability

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Hotfix

A

A software patch that solves a security issue and should be applied immediately after being tested in a lab environment

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Update

A

■ Provides a system with additional functionality, but it doesn’t usually provide any

patching of security related issues
■ Often introduce new vulnerabilities

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

Service Pack

A

Includes all the hotfixes and updates since the release of the operating system

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

Effective Patch Management involves

A

■ Assigning a dedicated team to track vendor security patches

■ Establishing automated system-wide patching for OS and applications

■ Including cloud resources in patch management

■ Categorising patches as urgent, important, or non-critical for prioritisation

■ Create a test environment to verify critical patches before production deployment

■ Maintaining comprehensive patching logs for program evaluation and monitoring

■ Establishing a process for evaluating, testing, and deploying firmware updates

■ Developing a technical process for deploying approved urgent patches to
production

■ Periodically assessing non-critical patches for combined rollout

How well did you know this?
1
Not at all
2
3
4
5
Perfectly