100-160 Question 135
Select 3You are a cybersecurity technician tasked with ensuring all endpoint systems in your organization comply with security policies and standards. During a compliance audit, you discover that several endpoints are missing critical updates, have unauthorized software installed, and are not running the required antivirus solution. What actions should you take to verify and enforce compliance with the security policies?
- A
Run a vulnerability scan to identify missing updates and patches on all endpoints.
- B
Manually check each endpoint for compliance with the organization's security policies.
- C
Deploy a centralized endpoint management solution to enforce security standards.
- D
Review and update the organization's security policies to match the current state of the endpoints.
- E
Remove unauthorized software from the endpoints and install the required antivirus software.
Show answer and explanation
Correct answers: A, C, E
Explanation
To verify and enforce endpoint compliance, a combination of automated tools (vulnerability scanning and endpoint management) and direct remediation actions (removing unauthorized software and installing required defenses) is necessary. These steps ensure that endpoints meet the organization's security policies and standards effectively.
- A. Correct.
Running a vulnerability scan helps identify missing updates, patches, and other compliance issues on endpoints efficiently.
- B. Incorrect.
Manually checking each endpoint is not scalable or efficient in an enterprise environment, making it an impractical solution.
- C. Correct.
A centralized endpoint management solution allows you to enforce security policies, monitor compliance, and automate updates across all endpoints.
- D. Incorrect.
While reviewing and updating security policies is a good practice, it does not immediately address the current compliance issues with the endpoints.
- E. Correct.
Removing unauthorized software and installing necessary antivirus software are essential steps to bring endpoints into compliance with security policies.