ISC2 Certified in Cybersecurity (CC)Security OperationsEasy
A small business is reviewing its security posture and wants to proactively identify weaknesses in its applications and network infrastructure before malicious actors can exploit them. They are looking for an automated, non-invasive method to achieve this. Which of the following security operations activities would best meet their requirements?
- APenetration testing
- BSecurity monitoring
- CLog management
- DVulnerability scanning
Show answer & explanationAnswer & explanation
Correct answer: D. Vulnerability scanning
Vulnerability scanning is an automated process that identifies known weaknesses in systems, applications, and networks in a non-invasive manner, aligning with the business's goal of proactive identification without exploitation.
Why the other options are wrong
- A. Penetration testing involves actively exploiting vulnerabilities, which is invasive and goes beyond merely identifying them.
- B. Security monitoring focuses on detecting ongoing threats and incidents, not proactively identifying weaknesses.
- C. Log management involves collecting and analyzing event logs, primarily for incident response and auditing, not proactive vulnerability identification.
Vulnerability Scanning
An automated process of identifying security weaknesses (vulnerabilities) in a network, system, or application.
- Non-invasive and automated.
- Identifies known vulnerabilities.
- Provides a report of discovered weaknesses.
Memory trick: Scan for cracks before the wall falls.