Cisco Certified Support Technician (CCST) CybersecuritySecurity PrinciplesHard
A security analyst is investigating a suspected data breach. They discover that an attacker gained unauthorized access to a database by exploiting a known vulnerability in the database software that had not been patched, despite a patch being available for months. Which security principle was most directly undermined in this scenario?
- APrinciple of Least Privilege
- BDefense in Depth
- CSecurity by Design
- DPatch Management
Show answer & explanationAnswer & explanation
Correct answer: D. Patch Management
The scenario explicitly states that a known vulnerability existed and a patch was available but not applied. This points directly to a failure in Patch Management, which is the process of acquiring, testing, and applying software updates to maintain system security.
Why the other options are wrong
- A. Least Privilege concerns users having minimal access, not unpatched software.
- B. Defense in Depth is a strategy of multiple security layers; while a patch is a layer, the failure to apply it highlights a specific process failure, not the absence of the strategy itself.
- C. Security by Design focuses on building security into software from the start, not addressing post-release vulnerabilities.
Patch Management
The process of systematically acquiring, testing, and applying software updates (patches) to computer systems and applications. It is crucial for fixing security vulnerabilities, improving system stability, and adding new features.
- Crucial for addressing known vulnerabilities.
- Involves testing patches before deployment to avoid conflicts.
- A continuous process, not a one-time task.
Memory trick: Good cyber hygiene: patch fixes holes, backups save data, awareness trains people.