Free CompTIA CySA+ CS0-003 Practice Question

When establishing a vulnerability management program in an environment handling customer payment information, which of the following best practices aligns with the industry standards for securing transaction data?

  • Conduct internal and external vulnerability scans every quarter and after each major alteration to the network infrastructure.

  • Implement vulnerability scans biannually, assuming no immediate threats are identified within the transaction processing systems.

  • Limit vulnerability assessments to external scans conducted biennially, relying primarily on other network defenses.

  • Complete a comprehensive penetration test on an annual basis as the sole measure for identifying system vulnerabilities.

This question's topic:
CompTIA CySA+ CS0-003 / 
Vulnerability Management
Your Score:

Check or uncheck an objective to set which questions you will receive.