nerdexam
CompTIA

SY0-701 · Question #707

Which of the following activities should be performed first to compile a list of vulnerabilities in an environment?

The correct answer is A. Automated scanning. Automated scanning is the first step in identifying vulnerabilities in an environment. Tools that perform automated vulnerability scanning scan systems and networks for known vulnerabilities, missing patches, misconfigurations, and other security weaknesses. This helps create…

Submitted by eva_at· Mar 6, 2026Threats, vulnerabilities, and mitigations

Question

Which of the following activities should be performed first to compile a list of vulnerabilities in an environment?

Options

  • AAutomated scanning
  • BPenetration testing
  • CThreat hunting
  • DLog aggregation
  • EAdversarial emulation

How the community answered

(53 responses)
  • A
    91% (48)
  • B
    4% (2)
  • C
    2% (1)
  • D
    4% (2)

Explanation

Automated scanning is the first step in identifying vulnerabilities in an environment. Tools that perform automated vulnerability scanning scan systems and networks for known vulnerabilities, missing patches, misconfigurations, and other security weaknesses. This helps create an initial list of vulnerabilities that can then be prioritized and addressed, often serving as the foundation for further in-depth activities like penetration testing or threat hunting.

Community Discussion

No community discussion yet for this question.

Full SY0-701 Practice