Vulnerability Remediation - CompTIA Security+ SY0-701 - 4.3

0.0(0)
Studied by 0 people
call kaiCall Kai
learnLearn
examPractice Test
spaced repetitionSpaced Repetition
heart puzzleMatch
flashcardsFlashcards
GameKnowt Play
Card Sorting

1/7

encourage image

There's no tags or description

Looks like no tags are added yet.

Last updated 5:48 AM on 4/1/26
Name
Mastery
Learn
Test
Matching
Spaced
Call with Kai

No analytics yet

Send a link to your students to track their progress

8 Terms

1
New cards

Patching

• The most common mitigation technique

- We know the vulnerability exists

- We have a patch file to install

• Scheduled vulnerability/patch notices

- Monthly, quarterly

• Unscheduled patches

- Zero day, often urgent

• This is an ongoing process

- The patches keep coming

- An easy way to prevent most exploits

2
New cards

Insurance

Cybersecurity insurance coverage

- Lost revenue

- Data recovery costs

- Money lost to phishing

- Privacy lawsuit costs

Doesn't cover everything

- Intentional acts, funds transfers, etc

Ransomware has increased popularity of cybersecutiy liability insurance

- Applies to every organization

3
New cards

Segmentation

Limit the score of an exploit

- Separate devices into their own networks/VLANs

A breach would have limited scope

- It's not as bas as it could be

Can't patch?

- Disconnect from the world

- Air gaps may be required

Use internal NGFW's

- Block unwanted/unnecessary traffic between VLANs

4
New cards

Physical segmentation

• Separate devices

- Multiple units, separate infrastructure

<p>• Separate devices</p><p>- Multiple units, separate infrastructure</p>
5
New cards

Compensating Controls

• Optimal security methods may not be available

- Can't deploy a patch right now

- No internal firewalls

• Compensate in other ways

- Disable the problematic service

- Revoke access to the application

- Limit external access

- Modify internal security controls and software firewalls

• Provide coverage until a patch is deployed

- Or similar optimal security response

6
New cards

Exceptions and exemptions

• Removing the vulnerability is optimal

- But not everything can be patched

• A balancing act

- Provide the service, but also protect the data and

systems

• Not all vulnerabilities share the same severity

- May require local login, physical access, or other criteria

• An exception may be an option

- Usually a formal process to approve

7
New cards

Validation of remediation

• The vulnerability is now patched

- Does the patch really stop the exploit?

- Did you patch all vulnerable systems?

• Rescanning

- Perform an extensive vulnerability scan

• Audit

- Check remediated systems to ensure the patch

was successfully deployed

• Verification

- Manually confirm the security of the system

8
New cards

Reporting

Ongoing checks are required

- New vulnerabilites are continuously discovered

- Difficult (or impossible) to manage without automation

- Manual checks would be time consuming

Continuous reporting

- Number or identified vulnerabilities

- Systems patched vs unpatched

- New threat notifications

- Errors, exceptions and exemptions

Explore top notes

note
historical globalization figures
Updated 1082d ago
0.0(0)
note
~The Phagocytic System~
Updated 536d ago
0.0(0)
note
4.8-4.10 Presentation
Updated 113d ago
0.0(0)
note
States of matter
Updated 1246d ago
0.0(0)
note
Chapter 6: Learning
Updated 1090d ago
0.0(0)
note
GEC1-LESSON 3
Updated 569d ago
0.0(0)
note
historical globalization figures
Updated 1082d ago
0.0(0)
note
~The Phagocytic System~
Updated 536d ago
0.0(0)
note
4.8-4.10 Presentation
Updated 113d ago
0.0(0)
note
States of matter
Updated 1246d ago
0.0(0)
note
Chapter 6: Learning
Updated 1090d ago
0.0(0)
note
GEC1-LESSON 3
Updated 569d ago
0.0(0)

Explore top flashcards

flashcards
Wat een taal zeg
91
Updated 1221d ago
0.0(0)
flashcards
Sp4 Un1A (23-24) | El arte
30
Updated 952d ago
0.0(0)
flashcards
Linear Algebra Final Review
47
Updated 471d ago
0.0(0)
flashcards
Odyssey Terms
35
Updated 1240d ago
0.0(0)
flashcards
is 117 final quiz review
44
Updated 1204d ago
0.0(0)
flashcards
Passe Compose
54
Updated 1147d ago
0.0(0)
flashcards
Wat een taal zeg
91
Updated 1221d ago
0.0(0)
flashcards
Sp4 Un1A (23-24) | El arte
30
Updated 952d ago
0.0(0)
flashcards
Linear Algebra Final Review
47
Updated 471d ago
0.0(0)
flashcards
Odyssey Terms
35
Updated 1240d ago
0.0(0)
flashcards
is 117 final quiz review
44
Updated 1204d ago
0.0(0)
flashcards
Passe Compose
54
Updated 1147d ago
0.0(0)