CompTIA CySA+ CS0-003 Practice Question
Your organization has detected a critical vulnerability in a legacy database system. A patch is available but applying it could significantly degrade query performance, potentially impacting business operations. What should be your primary consideration when advising on whether to apply the patch?
Applying the patch to address the security risk while evaluating performance impact
Assessing the business impact and considering compensating controls
Disregarding the patch because of the system performance impact
Relying on compensating controls to mitigate the vulnerability without applying the patch