Section 22.215 Vulnerability Response and Remediation Flashcards

Objective 4.3 Explain various activities associated with vulnerability management

1
Q

Vulnerability Response and Remediation

A

Involves strategies and actions for identifying, assessing, and addressing vulnerabilities

■ Aims to mitigate risks associated with known vulnerabilities

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Vulnerability Response and Remediation

Patching

A

Process of applying updates to fix software, system, or application vulnerabilities

■ Patches released by software vendors

■ End users must update their software to apply security patches

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Vulnerability Response and Remediation

Insurance Policy

A

Procuring a cybersecurity insurance policy as a risk management strategy

■ Mitigates financial losses resulting from cyber incidents (data breach, network outage, business interruption)

■ Covers mitigation, remediation, recovery costs, legal fees, public relations, and customer notification

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Vulnerability Response and Remediation

Network Segmentation

A

Dividing a network into smaller segments to improve performance and security

■ Isolates segments from each other to prevent threat propagation

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

Vulnerability Response and Remediation

Compensating Controls

A

Alternative security measures when standard controls cannot be effectively
implemented

■ Tailored to provide equivalent protection

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

Vulnerability Response and Remediation

Exception and Exemption

A

■ Exception: Temporarily relaxing or bypassing security controls or policies for operational business needs, with an understanding of associated risks

■ Exemption: A permanent waiver of security controls or policies due to specific reasons, often for legacy systems

How well did you know this?
1
Not at all
2
3
4
5
Perfectly