脆弱性管理チームは評価中に 4 つの主要な脆弱性を発見したため、さらなる緩和のために適切な優先順位を付けるためのレポートを提供する必要があります。次の脆弱性のうち、軽減プロセスで最も優先すべきものはどれですか?
正解:B
A vulnerability that is related to a specific adversary campaign, with IoCs found in the SIEM, should have the highest priority for the mitigation process. This is because it indicates that the vulnerability is actively being exploited by a known threat actor, and that the organization's security monitoring system has detected signs of compromise. This poses a high risk of data breach, service disruption, or other adverse impacts. References:
How to Prioritize Vulnerabilities Effectively: Vulnerability Prioritization Explained, Section: How to prioritize vulnerabilities step by step to avoid drowning in sea of problems; CompTIA CySA+ Study Guide: Exam CS0-003, 3rd Edition, Chapter 4: Security Operations and Monitoring, page 156.