Cisco Certified Support Technician (CCST) CybersecurityVulnerability ManagementMedium
A cybersecurity analyst is investigating a recent data breach. The preliminary findings indicate that the breach occurred through an unpatched vulnerability in an outdated content management system (CMS). The organization had a vulnerability management program in place, but this particular system was overlooked. Which aspect of the vulnerability management program MOST likely failed?
- AAsset inventory management.
- BVulnerability prioritization.
- CVulnerability remediation.
- DSecurity awareness training.
Show answer & explanationAnswer & explanation
Correct answer: A. Asset inventory management.
If a system was 'overlooked' by the vulnerability management program, it indicates a failure in maintaining an accurate and complete asset inventory. You cannot manage vulnerabilities on assets you don't know exist or are not tracking.
Why the other options are wrong
- B. Prioritization happens after a vulnerability is identified on a known asset. If the system was overlooked, it wasn't even prioritized.
- C. Remediation happens after identification and prioritization. If the system was overlooked, it never reached the remediation stage.
- D. Security awareness training focuses on human behavior, not the discovery and tracking of IT systems and their vulnerabilities.
Asset Inventory Management (Vulnerability Management)
The process of identifying, cataloging, and maintaining an accurate and up-to-date list of all hardware, software, and data assets within an organization's scope.
- Foundation of any security program.
- Crucial for knowing what needs protection and assessment.
- Prevents 'shadow IT' and overlooked systems.
Memory trick: Know Your Assets, Then Protect.