ISC2 CISSP Practice Question

A cybersecurity analyst presents the results of a recent penetration test to the organization's steering committee. The report details several critical vulnerabilities in a key revenue-generating application and provides recommended remediation actions. The committee must now decide on the next steps. What is the primary purpose of this management review and approval process regarding the test findings?

  • To document the technical details of the identified vulnerabilities for the development team's reference

  • To satisfy annual compliance requirements without committing to substantial changes in security posture

  • To transfer liability for potential security breaches from the technical staff to executive management

  • To ensure accountability, proper resource allocation, and strategic alignment of security initiatives

ISC2 CISSP
Security Assessment and Testing
Your Score:
Settings & Objectives
Random Mixed
Questions are selected randomly from all chosen topics, with a preference for those you haven’t seen before. You may see several questions from the same objective or domain in a row.
Rotate by Objective
Questions cycle through each objective or domain in turn, helping you avoid long streaks of questions from the same area. You may see some repeat questions, but the distribution will be more balanced across topics.

Check or uncheck an objective to set which questions you will receive.

Bash, the Crucial Exams Chat Bot
AI Bot