nerdexam
(ISC)2

CERTIFIED-IN-CYBERSECURITY · Question #566

What is the primary goal of Change Management in cybersecurity?

The correct answer is D. Release software without introducing new vulnerabilities. Change Management is a structured process for controlling modifications to systems, software, or infrastructure. Its primary security goal is to ensure that changes - patches, upgrades, configuration updates, new deployments - are reviewed, tested, and approved before going…

Security Operations

Question

What is the primary goal of Change Management in cybersecurity?

Options

  • AEnsure that all environments are free from vulnerabilities
  • BDetect new vulnerabilities in the system
  • CCreate patches to correct vulnerabilities
  • DRelease software without introducing new vulnerabilities

How the community answered

(20 responses)
  • A
    5% (1)
  • B
    5% (1)
  • D
    90% (18)

Explanation

Change Management is a structured process for controlling modifications to systems, software, or infrastructure. Its primary security goal is to ensure that changes - patches, upgrades, configuration updates, new deployments - are reviewed, tested, and approved before going live so they do not inadvertently introduce new vulnerabilities or break existing controls. It is not about detecting vulnerabilities (that is vulnerability management), creating patches (that is patch development), or guaranteeing a vulnerability-free environment (which is an unrealistic absolute). Change Management minimizes risk by preventing uncontrolled or untested changes.

Topics

#Change Management#Security Operations#Vulnerability Management#Risk Mitigation

Community Discussion

No community discussion yet for this question.

Full CERTIFIED-IN-CYBERSECURITY Practice