4.3 Explain various activities
associated with vulnerability
management Exam Questions And
Answers
Vulnerability Scan -
correct answer ✅This is a process of using automated tools to
search for known vulnerabilities in software and systems.
Static Analysis -
correct answer ✅This involves examining the code of an
application without executing it, looking for vulnerabilities like
coding errors or insecure configurations.
Dynamic Analysis -
correct answer ✅Unlike static analysis, this method involves
testing an application while it's running to identify vulnerabilities
that may only appear during runtime
Package Monitoring -
correct answer ✅This activity focuses on keeping track of software
packages and libraries used in an application to ensure they are
updated and free from known vulnerabilities.
, 4.3 Explain various activities
associated with vulnerability
management Exam Questions And
Answers
Threat Feed -
correct answer ✅This refers to a stream of information about
current cybersecurity threats.
Open-source Intelligence (OSINT) -
correct answer ✅Gathering information from publicly available
sources to assess potential vulnerabilities.
Proprietary/Third-party -
correct answer ✅Using information from private or external
sources to understand vulnerabilities.
Information-sharing Organization -
correct answer ✅A group or platform where cybersecurity
information is exchanged among members to enhance collective
defense.
Dark Web -
correct answer ✅A part of the internet where illegal activities
often occur, including the sale of hacking tools and stolen data.
associated with vulnerability
management Exam Questions And
Answers
Vulnerability Scan -
correct answer ✅This is a process of using automated tools to
search for known vulnerabilities in software and systems.
Static Analysis -
correct answer ✅This involves examining the code of an
application without executing it, looking for vulnerabilities like
coding errors or insecure configurations.
Dynamic Analysis -
correct answer ✅Unlike static analysis, this method involves
testing an application while it's running to identify vulnerabilities
that may only appear during runtime
Package Monitoring -
correct answer ✅This activity focuses on keeping track of software
packages and libraries used in an application to ensure they are
updated and free from known vulnerabilities.
, 4.3 Explain various activities
associated with vulnerability
management Exam Questions And
Answers
Threat Feed -
correct answer ✅This refers to a stream of information about
current cybersecurity threats.
Open-source Intelligence (OSINT) -
correct answer ✅Gathering information from publicly available
sources to assess potential vulnerabilities.
Proprietary/Third-party -
correct answer ✅Using information from private or external
sources to understand vulnerabilities.
Information-sharing Organization -
correct answer ✅A group or platform where cybersecurity
information is exchanged among members to enhance collective
defense.
Dark Web -
correct answer ✅A part of the internet where illegal activities
often occur, including the sale of hacking tools and stolen data.