nerdexam
Isaca

CISM · Question #876

Which of the following is the BEST reason for delaying the application of a critical security patch?

The correct answer is C. Technology interdependencies. The best reason to delay a critical patch is technology interdependencies, where applying the patch could break compatibility or availability of interconnected systems; this risk must be evaluated and managed (e.g., testing, staged rollout, compensating controls) before…

Submitted by lucia.co· Apr 18, 2026Information Security Risk Management

Question

Which of the following is the BEST reason for delaying the application of a critical security patch?

Options

  • ALack of vulnerability management
  • BResource limitations
  • CTechnology interdependencies
  • DConflicts with software development life cycle

How the community answered

(21 responses)
  • A
    24% (5)
  • B
    10% (2)
  • C
    62% (13)
  • D
    5% (1)

Explanation

The best reason to delay a critical patch is technology interdependencies, where applying the patch could break compatibility or availability of interconnected systems; this risk must be evaluated and managed (e.g., testing, staged rollout, compensating controls) before deployment.

Topics

#Patch Management#System Interdependencies#Risk Mitigation#Vulnerability Management

Community Discussion

No community discussion yet for this question.

Full CISM Practice