exam questions

Exam 200-201 All Questions

View all questions & answers for the 200-201 exam

Exam 200-201 topic 1 question 174 discussion

Actual exam question from Cisco's 200-201
Question #: 174
Topic #: 1
[All 200-201 Questions]

In a SOC environment, what is a vulnerability management metric?

  • A. code signing enforcement
  • B. full assets scan
  • C. internet exposed devices
  • D. single factor authentication
Show Suggested Answer Hide Answer
Suggested Answer: C 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
qz999
Highly Voted 2 years, 4 months ago
I agree with C as this is a 'metric', so we're looking for some sort of count rather than a specific vulnerability.
upvoted 8 times
...
mgo28404
Most Recent 22 hours, 44 minutes ago
Selected Answer: B
The correct answer is B Full Assets Scan Explanation A vulnerability management metric is a measurable indicator used to evaluate and track the effectiveness of a vulnerability management program. It provides insights into how well an organization identifies, assesses, and mitigates vulnerabilities across its systems. Why B. Full Assets Scan is Correct: Conducting a full assets scan is a critical component of vulnerability management. It helps ensure that all assets in the organization are checked for known vulnerabilities, misconfigurations, and compliance issues. Metrics derived from these scans, such as the number of detected vulnerabilities or the time to remediate them, are key for assessing the state of the organization's security posture.
upvoted 1 times
...
SecurityGuy
5 months ago
Selected Answer: C
https://purplesec.us/learn/vulnerability-management-metrics/ 6. Internal Vs External Exposure Your external internet facing applications inherently are at highest exposure to outside threats compared to internal. An organization should have separate scanners for each environment. Although an external scan has high priority, internal scans should be prioritized as well due to the potential of a threat actor entering your network and exploiting a threat is always probable.
upvoted 3 times
...
drdecker100
10 months, 4 weeks ago
Selected Answer: B
A vulnerability management metric is a measure of the effectiveness of an organization's vulnerability management program. Full asset scan is a metric used to evaluate the coverage and accuracy of a vulnerability management program. It measures the percentage of an organization's assets that have been scanned for vulnerabilities.
upvoted 1 times
...
archbbo
1 year, 10 months ago
from reading the book i would say B because it talks about scanning all your devices for vulnerabilities not just internet pointing devices. then running a report analysis.
upvoted 2 times
...
halamah
2 years, 2 months ago
b is correct
upvoted 2 times
...
sakjifs
2 years, 10 months ago
It's D
upvoted 2 times
Dion_Weby
2 years, 2 months ago
Well you must study more
upvoted 3 times
...
sakjifs
2 years, 10 months ago
Sorry, C seems to be the best answer
upvoted 2 times
Sun2sun
1 year, 7 months ago
You really need to think before posting
upvoted 4 times
...
...
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago