CompTIA CySA+ CS0-003 (V3) Practice Question

A cybersecurity analyst assesses vulnerabilities in a legacy, mission-critical application that cannot be patched without major downtime. The flaws are rarely exploited in the wild, potential impact is low, and strong compensating controls with continuous monitoring are in place. Which risk treatment should the analyst recommend?

  • Recommend mitigating the risk immediately by taking the application offline for patching.

  • Recommend transferring the risk to a third-party vendor specializing in legacy application security.

  • Recommend accepting the risk and continue monitoring for any changes in threat exposure.

  • Recommend avoiding the risk by ceasing the use of the application and seeking an alternative solution.

CompTIA CySA+ CS0-003 (V3)
Vulnerability Management
Your Score:
Settings & Objectives
Random Mixed
Questions are selected randomly from all chosen topics, with a preference for those you haven’t seen before. You may see several questions from the same objective or domain in a row.
Rotate by Objective
Questions cycle through each objective or domain in turn, helping you avoid long streaks of questions from the same area. You may see some repeat questions, but the distribution will be more balanced across topics.

Check or uncheck an objective to set which questions you will receive.

SAVE $51
$425.00 $374.00
SAVE $57
CompTIA Cybersecurity Analyst Voucher with Retake
CySA+ / v3 / CS0-003
Includes Retake
$474.00 $417.00
Bash, the Crucial Exams Chat Bot
AI Bot