nerdexam
CompTIA

CAS-003 · Question #388

As part of an organization's compliance program. administrators must complete a hardening checklist and note any potential improvements. The process of noting potential improvements in the checklist…

The correct answer is A. the collection of data as part of the continuous monitoring program. The objective of a continuous monitoring program is to determine if the complete set of planned, required, and deployed security controls within an information system or inherited by the system continue to be effective over time in light of the inevitable changes that occur.

Enterprise Security Operations

Question

As part of an organization's compliance program. administrators must complete a hardening checklist and note any potential improvements. The process of noting potential improvements in the checklist is MOST likely driven by:

Options

  • Athe collection of data as part of the continuous monitoring program
  • Badherence to policies associated with incident response
  • Cthe organization's software development life cycle
  • Dchanges in operating systems or industry trends

How the community answered

(37 responses)
  • A
    92% (34)
  • C
    3% (1)
  • D
    5% (2)

Explanation

The objective of a continuous monitoring program is to determine if the complete set of planned, required, and deployed security controls within an information system or inherited by the system continue to be effective over time in light of the inevitable changes that occur.

Topics

#continuous monitoring#hardening checklist#compliance#configuration management

Community Discussion

No community discussion yet for this question.

Full CAS-003 Practice