312-50V11 · Question #966
Given below are different steps involved in the vulnerability-management life cycle. 1) Remediation 2) Identify assets and create a baseline 3) Verification 4) Monitor 5) Vulnerability scan 6) Risk…
The correct answer is A. 2-->5-->6-->1-->3-->4. The vulnerability management life cycle follows a strict logical order: baseline creation, scanning, risk assessment, remediation, verification, and then ongoing monitoring.
Question
Options
- A2-->5-->6-->1-->3-->4
- B2-->1-->5-->6-->4-->3
- C2-->4-->5-->3-->6--> 1
- D1-->2-->3-->4-->5-->6
How the community answered
(56 responses)- A84% (47)
- B4% (2)
- C11% (6)
- D2% (1)
Why each option
The vulnerability management life cycle follows a strict logical order: baseline creation, scanning, risk assessment, remediation, verification, and then ongoing monitoring.
The process must start with identifying assets and creating a baseline (2) to know what needs protecting, followed by a vulnerability scan (5) to discover weaknesses, then risk assessment (6) to prioritize them by severity. Remediation (1) addresses the prioritized vulnerabilities, verification (3) confirms the fixes are effective, and monitoring (4) provides continuous oversight. Each phase depends on the output of the previous one, making this the only logically valid sequence.
This sequence places remediation before scanning and risk assessment, which is impossible because vulnerabilities cannot be fixed before they are discovered and prioritized.
This sequence inserts monitoring before scanning and misplaces verification before risk assessment, breaking the dependency chain between phases.
This sequence begins with remediation as the first step, which cannot occur before assets are identified or any vulnerabilities are found.
Concept tested: Vulnerability management life cycle phase ordering
Source: https://learn.microsoft.com/en-us/compliance/assurance/assurance-vulnerability-management
Topics
Community Discussion
No community discussion yet for this question.