nerdexam
EC-Council

312-50V10 · Question #279

Which of the following business challenges could be solved by using a vulnerability scanner?

The correct answer is D. There is a monthly requirement to test corporate compliance with host application usage and. Vulnerability scanners can audit systems for compliance with security policies, including checking installed applications against approved usage standards.

Vulnerability Analysis

Question

Which of the following business challenges could be solved by using a vulnerability scanner?

Options

  • AAuditors want to discover if all systems are following a standard naming convention.
  • BA web server was compromised and management needs to know if any further systems were
  • CThere is an emergency need to remove administrator access from multiple machines for an
  • DThere is a monthly requirement to test corporate compliance with host application usage and

How the community answered

(48 responses)
  • A
    6% (3)
  • B
    4% (2)
  • C
    19% (9)
  • D
    71% (34)

Why each option

Vulnerability scanners can audit systems for compliance with security policies, including checking installed applications against approved usage standards.

AAuditors want to discover if all systems are following a standard naming convention.

Auditing naming conventions is an asset management or configuration management task, not a function of vulnerability scanners.

BA web server was compromised and management needs to know if any further systems were

Determining lateral movement after a compromise requires forensic investigation tools, a SIEM, or endpoint detection and response (EDR) solutions, not a vulnerability scanner.

CThere is an emergency need to remove administrator access from multiple machines for an

Bulk removal of administrator access is an identity and access management (IAM) or Group Policy operation, not a vulnerability scanning function.

DThere is a monthly requirement to test corporate compliance with host application usage andCorrect

Vulnerability scanners are designed to probe hosts for known weaknesses, misconfigurations, and policy violations - including unauthorized or non-compliant software installations. A monthly compliance check against approved host application usage policies is a direct use case, as the scanner can enumerate installed applications and compare them against a baseline or policy definition.

Concept tested: Vulnerability scanner use cases and compliance auditing

Source: https://www.techtarget.com/searchsecurity/definition/vulnerability-scanner

Topics

#vulnerability scanner#compliance testing#security assessment#business use case

Community Discussion

No community discussion yet for this question.

Full 312-50V10 Practice