A network security administrator is planning a major upgrade to an organization's centralized intrusion prevention system (IPS) appliance. The administrator has documented the purpose of the change, completed a risk analysis, outlined the step-by-step implementation procedure, and developed a verified rollback plan. Which of the following should the administrator prepare NEXT before submitting the request to the Change Advisory Board (CAB) for authorization?
- Draft an end-user and stakeholder notification plan detailing expected maintenance windows and service impacts.Answer
- BPerform post-implementation testing on the production IPS appliance to verify active traffic filtering.
- CBypass formal approval and apply the firmware update during off-peak hours to prevent operational delay.
- DExecute the rollback plan in the production environment to validate recovery procedures.
Answer
Drafting an end-user and stakeholder notification plan detailing expected maintenance windows and service impacts.
Establishing a stakeholder notification plan is a mandatory element of a standard change request. Before the Change Advisory Board (CAB) grants approval, administrators must specify how end users and business units will be notified about scheduled downtime or performance impacts.
Step-by-Step Solution
Key Concept
Standard Change Request Components & Workflow Sequence