脆弱性管理チームは評価中に 4 つの主要な脆弱性を発見し、さらなる緩和のために適切な優先順位付けを行うためのレポートを提供する必要があります。緩和プロセスで最も優先度の高い脆弱性は次のどれですか。
正解:B
A vulnerability that is related to a specific adversary campaign, with IoCs found in the SIEM, should have the highest priority for the mitigation process. This is because it indicates that the vulnerability is actively being exploited by a known threat actor, and that the organization's security monitoring system has detected signs of compromise. This poses a high risk of data breach, service disruption, or other adverse impacts.
References: How to Prioritize Vulnerabilities Effectively: Vulnerability Prioritization Explained, Section:
How to prioritize vulnerabilities step by step to avoid drowning in sea of problems; CompTIA CySA+ Study Guide: Exam CS0-003, 3rd Edition, Chapter 4: Security Operations and Monitoring, page 156.