CompTIA Security+ SY0-701 Practice Question
Which of the following best describes the potential security risk associated with vendors within the supply chain?
Vendors regularly issue incorrect patches that can be ignored without risk to an organization.
Vendors may introduce vulnerabilities into systems through unauthorized code in updates.
Vendors are primarily responsible for securing their own network, so they pose little risk to an organization's supply chain.
Vendors are typically immune to social engineering, reducing the risk to supply chain security.