Question

Difficulty: EasyPatch and Configuration Management

A security administrator is establishing a baseline security workflow to ensure that all newly deployed workstations meet organizational security standards and remain protected against known software flaws. Which of the following operational practices should the administrator implement to maintain system integrity and compliance? (Select TWO.)

  1. Establishing standardized configuration baselines across all workstation images prior to deploymentAnswer
  2. B
    Configuring network edge firewall rules to automatically patch host-level software vulnerabilities
  3. Implementing an automated patch management process to deploy verified vendor updates regularlyAnswer
  4. D
    Deploying deception honeypots onto local workstation build images to serve as preventive patching controls

Answer

The administrator should establish standardized configuration baselines across workstation images and implement an automated patch management process.
Establishing secure configuration baselines ensures consistent secure state defaults upon deployment, while implementing automated patch management maintains system security by applying vendor updates to resolve software flaws continuous across the lifecycle.

Step-by-Step Solution

1
Identify baseline configuration needs
Creating initial configuration baselines ensures all workstations start in a secure, uniform state.
Prevents configuration drift and default misconfigurations across newly deployed systems.
2
Implement centralized automated patching
Ongoing automated patching updates operating systems and applications with the latest security fixes.
Reduces security risks associated with known unpatched vulnerabilities over time.

Key Concept

Patch and Configuration Management
Estimated Time:1m 0s
Rate this question