100-160 exam dumps

100-160 practice question 180 of 265

Cisco Certified Support Technician (CCST) Cybersecurity. Associate level, Cisco. Free question with the correct answer and a full explanation.

100-160 Question 180

Single answer

Your organization has recently deployed a vulnerability management tool to identify and address security weaknesses in its systems. During the first scan, the tool detects several critical vulnerabilities in a production server. What should be the next step in the vulnerability management process?

  1. A

    Patch all detected vulnerabilities immediately to ensure the server is secure.

  2. B

    Prioritize the vulnerabilities based on severity and potential impact before addressing them.

  3. C

    Ignore the vulnerabilities since the server is in production and cannot be taken offline.

  4. D

    Disable the vulnerability management tool to prevent further alerts until the issues are resolved.

Show answer and explanation

Correct answer: B

Explanation

Vulnerability management involves identifying, assessing, and remediating security weaknesses in a structured manner. After vulnerabilities are identified, they must be prioritized based on their severity, exploitability, and potential impact on the organization. This ensures resources are allocated effectively and critical systems remain secure without unnecessary disruption.

  • A. Incorrect.

    Patching all vulnerabilities immediately without proper planning can disrupt critical services, especially on a production server. Proper prioritization is necessary.

  • B. Correct.

    Prioritizing vulnerabilities based on their severity and potential impact is a key step in the vulnerability management process. This ensures that the most critical issues are addressed first while minimizing disruptions.

  • C. Incorrect.

    Ignoring vulnerabilities is a poor cybersecurity practice and leaves the server exposed to potential attacks, even if it's in production.

  • D. Incorrect.

    Disabling the vulnerability management tool would prevent the organization from detecting and addressing future vulnerabilities, undermining its security posture.

Timed practice exam

Take a 100-160 practice test under exam conditions

75 questions in 120 minutes, drawn from this bank, with a score report and a per-question review when you finish.

Start timed exam