nerdexam
(ISC)2(ISC)2

CISSP · Question #1506

CISSP Question #1506: Real Exam Question with Answer & Explanation

Sign in or unlock CISSP to reveal the answer and full explanation for question #1506. The question stem and answer options stay visible for context.

Submitted by mateo_ar· Mar 5, 2026Software Development Security

Question

An organization purchased a commercial off-the-shelf (COTS) software several years ago. The information technology (IT) Director has decided to migrate the application into the cloud, but is concerned about the application security of the software in the organization's dedicated environment with a cloud service provider. What is the BEST way to prevent and correct the software's security weaknesses?

Options

  • AImplement a dedicated COTS sandbox environment
  • BFollow the software end-of-life schedule
  • CTransfer the risk to the cloud service provider
  • DExamine the software updating and patching process

Unlock CISSP to see the answer

You've previewed enough free CISSP questions. Unlock CISSP for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.

Topics

#COTS security#application security#patch management#vulnerability management
Full CISSP PracticeBrowse All CISSP Questions