An organization is concerned with the potential for exploitation of vulnerabilities in its server systems. Which of the following is the BEST control to mitigate the associated risk?
A.
Enforcing standard system configurations based on secure configuration benchmarks
B.
Implementing network and system-based anomaly monitoring software for server systems
C.
Enforcing configurations for secure logging and audit trails on server systems
D.
Implementing host-based intrusion detection systems (IDS) on server systems
Enforcing standard system configurations based on secure configuration benchmarks ensures that servers are configured in a secure and consistent manner. This reduces the likelihood of vulnerabilities resulting from misconfigurations that could be exploited by attackers. Secure configuration benchmarks provide guidelines and best practices for configuring systems to minimize security risks.
While implementing network and system-based anomaly monitoring software (option B), enforcing configurations for secure logging and audit trails (option C), and implementing host-based intrusion detection systems (IDS) (option D) are valuable security measures, enforcing secure configurations is a foundational control that addresses the root cause of many vulnerabilities.
A. Many systems, such as Windows OS, come out of box with many vulnerabilities so a secure benchmark is key. Benchmark may do things like require longer PW, disable unused services and accounts that could be exploited.
A. Enforcing standard system configurations based on secure configuration benchmarks is the BEST control to mitigate the associated risk. This is because standardizing configurations can help to ensure that systems are configured securely and consistently, making it harder for attackers to exploit vulnerabilities. Additionally, using secure configuration benchmarks can help to ensure that systems are configured in line with industry best practices.
Yes, you are correct. However, the question is not asking how to detect but mitigating.
upvoted 2 times
...
...
Log in to ExamTopics
Sign in:
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.
Upvoting a comment with a selected answer will also increase the vote count towards that answer by one.
So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.
Viperhunter
12 months agoAzurefox79
1 year, 3 months agorichck102
1 year, 6 months agoAntonivs
1 year, 9 months agoProspect57
1 year, 10 months agoBroesweelies
1 year, 10 months agoSSP_Secure
1 year, 10 months agograndMa
1 month agoAlexJacobson
11 months, 3 weeks agoCharlesL
1 year, 10 months agoaokisan
1 year, 10 months agoCharlesL
1 year, 10 months ago