CompTIA Security+ SY0-701 Practice Question
Vulnerability management policies should never allow for exceptions or exemptions since this would weaken the organization's security posture.
True
False
Vulnerability management policies should never allow for exceptions or exemptions since this would weaken the organization's security posture.
True
False
The statement is incorrect. While ideally, all vulnerabilities would be patched or remediated as soon as they are discovered, there are scenarios where this is not feasible due to operational requirements, compatibility issues, or the risk being acceptable compared to the business impact of immediate remediation. In such cases, exceptions (a temporary non-compliance with a security policy) or exemptions (a permanent release from the compliance requirement) can be granted with proper risk assessment and management approval. Additional security controls may be put in place to mitigate the risks associated with the vulnerability until it can be addressed.
Bash is our AI bot, trained to help you pass your exam. AI Generated Content may display inaccurate information, always double-check anything important.
All Information Technology Package plans include the following perks and exams.
Our pricing is simple. Full access to all certifications and exams in each package, for one price.
As many practice tests for as many topics as you want.
Use study mode non-stop, no limits.
Access to our AI assistant, Bash, trained to help you pass your exam.
Track your scores over time in study mode and report cards.
See how you improve over time, and where you need to focus.
Access our store with even bigger discounts than before.
Unlimited access to all performance questions and be prepared for the real thing.
All Information Technology Package plans include unlimited access to the following study materials.
Create an account or sign in to access our study materials.