nerdexam
Palo_Alto_Networks

CLOUDSEC-PRO · Question #98

In vulnerability management, the process of ranking vulnerabilities based on severity and asset criticality is called:

The correct answer is A. Risk-based prioritization. Risk-based prioritization combines vulnerability severity scores (e.g., CVSS) with the business impact of the affected asset, ensuring the most dangerous issues are addressed first.

Vulnerability Management

Question

In vulnerability management, the process of ranking vulnerabilities based on severity and asset criticality is called:

Options

  • ARisk-based prioritization
  • BThreat modeling
  • CPatch sequencing
  • DResource tagging

How the community answered

(19 responses)
  • A
    74% (14)
  • B
    5% (1)
  • C
    16% (3)
  • D
    5% (1)

Explanation

Risk-based prioritization combines vulnerability severity scores (e.g., CVSS) with the business impact of the affected asset, ensuring the most dangerous issues are addressed first.

Topics

#vulnerability prioritization#risk-based prioritization#asset criticality#severity ranking

Community Discussion

No community discussion yet for this question.

Full CLOUDSEC-PRO Practice