A penetration tester has performed a security assessment for a startup firm. The report lists a total of ten vulnerabilities, with five identified as critical. The client does not have the resources to immediately remediate all vulnerabilities. Under such circumstances, which of the following would be the BEST suggestion for the client?
A) Apply easy compensating controls for critical vulnerabilities to minimize the risk, and then reprioritize remediation.
B) Identify the issues that can be remediated most quickly and address them first.
C) Implement the least impactful of the critical vulnerabilities' remediations first, and then address other critical vulnerabilities
D) Fix the most critical vulnerability first, even if it means fixing the other vulnerabilities may take a very long lime.
Correct Answer:
Verified
Q11: A penetration tester has compromised a Windows
Q12: Which of the following commands starts the
Q13: A malicious user wants to perform an
Q14: A penetration tester wants to target NETBIOS
Q15: A penetration tester executes the following commands:
Q17: Consumer-based IoT devices are often less secure
Q18: A healthcare organization must abide by local
Q19: A penetration tester is performing ARP spoofing
Q20: A company requested a penetration tester review
Q21: A penetration tester is testing a banking
Unlock this Answer For Free Now!
View this answer and more for free by performing one of the following actions
Scan the QR code to install the App and get 2 free unlocks
Unlock quizzes for free by uploading documents