A security operations team is refining its enterprise assessment strategy for a network containing sensitive database servers and production workstations. The team wants to achieve accurate discovery of missing operating system patches and local software vulnerabilities while minimizing service disruption and network bandwidth strain. Which of the following scan configuration strategies should the team implement? (Select TWO.)
- Execute credentialed network scans during scheduled maintenance windows to accurately identify missing host-level updates.Cevap
- Deploy host-based vulnerability agents to perform local vulnerability checks without generating high volumes of network assessment traffic.Cevap
- CConfigure an inline Web Application Firewall (WAF) to conduct passive network vulnerability scanning on SQL database streams.
- DRun aggressive non-credentialed port scans across all production subnets during peak operational hours to infer internal kernel patch levels.
Cevap
The security team should execute credentialed scans during scheduled maintenance windows and deploy host-based vulnerability agents for continuous local monitoring.
Executing credentialed scans during maintenance windows provides deep visibility into local patch levels while avoiding disruption to active production services. Deploying host-based agents allows continuous assessment of endpoint vulnerabilities without generating massive network traffic from network-based probes.
Adım Adım Çözüm
Anahtar Kavram
Vulnerability Scan Configurations and Agent Deployment