ISC2 Certified in Cybersecurity (CC)Security OperationsMedium
A global technology company is expanding its operations and introducing new cloud services and IoT devices into its network. The security team needs to ensure that these new components are integrated without introducing new vulnerabilities. Which security operations activity focuses on applying security updates and fixes to software and systems to mitigate known weaknesses?
- AConfiguration management
- BSecurity monitoring
- CPatch management
- DVulnerability scanning
Show answer & explanationAnswer & explanation
Correct answer: C. Patch management
Patch management is the process of acquiring, testing, and applying software updates (patches) to mitigate vulnerabilities and improve system stability. This is crucial when integrating new systems to ensure they are up-to-date with the latest security fixes.
Why the other options are wrong
- A. Configuration management ensures systems are configured to a baseline, but doesn't specifically handle ongoing security updates for discovered vulnerabilities.
- B. Security monitoring involves observing systems for suspicious activity, not applying fixes.
- D. Vulnerability scanning identifies weaknesses, but doesn't apply the fixes.
Patch Management
The systematic process of identifying, acquiring, testing, and installing software patches and updates.
- Mitigates known vulnerabilities
- Improves system stability and performance
- Often automated for efficiency
Memory trick: Patches are like band-aids for software, covering up known wounds (vulnerabilities).