nerdexam
EC-Council

312-50V9 · Question #346

Which of the following tools would MOST LIKELY be used to perform security audit on various of forms of network systems?

The correct answer is B. Vulnerability scanner. A vulnerability scanner actively probes network systems for known weaknesses and misconfigurations, making it the standard tool for comprehensive security audits across diverse network environments.

Vulnerability Analysis

Question

Which of the following tools would MOST LIKELY be used to perform security audit on various of forms of network systems?

Options

  • AIntrusion Detection System
  • BVulnerability scanner
  • CPort scanner
  • DProtocol analyzer

How the community answered

(35 responses)
  • A
    6% (2)
  • B
    89% (31)
  • C
    3% (1)
  • D
    3% (1)

Why each option

A vulnerability scanner actively probes network systems for known weaknesses and misconfigurations, making it the standard tool for comprehensive security audits across diverse network environments.

AIntrusion Detection System

An Intrusion Detection System passively monitors traffic for known attack signatures in real time and does not actively probe systems to enumerate vulnerabilities for an audit.

BVulnerability scannerCorrect

A vulnerability scanner such as Nessus or OpenVAS actively interrogates hosts, services, and configurations across a network to identify known CVEs, missing patches, weak credentials, and misconfigurations. It produces structured audit reports covering multiple attack surfaces simultaneously, which is exactly what a broad security audit of various network systems requires. Its automated, policy-driven scanning approach is the accepted standard in technical security audit workflows.

CPort scanner

A port scanner identifies open ports and running services but does not assess whether those services are vulnerable or misconfigured, providing only a fraction of the data required for a full security audit.

DProtocol analyzer

A protocol analyzer captures and decodes network traffic for troubleshooting or forensic purposes but does not scan for vulnerabilities or misconfigurations across network systems.

Concept tested: Vulnerability scanner role in network security audits

Source: https://csrc.nist.gov/publications/detail/sp/800-115/final

Topics

#vulnerability scanner#security audit#network assessment#penetration testing tools

Community Discussion

No community discussion yet for this question.

Full 312-50V9 Practice