nerdexam
Cisco

300-220 · Question #93

Known gaps in detection can include: (Choose two)

The correct answer is A. Unpatched vulnerabilities C. Misconfigured firewalls. Unpatched vulnerabilities (A) and misconfigured firewalls (C) represent known gaps in detection because they are identified weaknesses that attackers can exploit while security tools may fail to catch the resulting activity - unpatched systems lack the fixes that would close…

Threat Hunting Fundamentals

Question

Known gaps in detection can include: (Choose two)

Options

  • AUnpatched vulnerabilities
  • BFully updated software
  • CMisconfigured firewalls
  • DStrong password policies

How the community answered

(21 responses)
  • A
    90% (19)
  • B
    5% (1)
  • D
    5% (1)

Explanation

Unpatched vulnerabilities (A) and misconfigured firewalls (C) represent known gaps in detection because they are identified weaknesses that attackers can exploit while security tools may fail to catch the resulting activity - unpatched systems lack the fixes that would close attack vectors, and misconfigured firewalls may allow malicious traffic through or fail to log it properly. Fully updated software (B) is wrong because it closes gaps rather than creating them - keeping software current is a defensive control. Strong password policies (D) are similarly a security strength, not a gap, as they reduce the risk of credential-based attacks. Memory tip: Think "GAP = something broken or neglected" - patches you skipped and firewalls you misconfigured are both forms of negligence, while "updated" and "strong" are positive descriptors that signal security, not weakness.

Topics

#detection gaps#vulnerability management#firewall misconfiguration#security blind spots

Community Discussion

No community discussion yet for this question.

Full 300-220 Practice