Soru

Zorluk: OrtaVulnerability Assessment and Security Testing Methods

A security analyst is establishing a vulnerability management process for an enterprise network containing multiple isolated cloud VPCs and container worker nodes. The primary requirement is to continuously audit host operating system patch levels and missing security updates without generating network probe traffic or managing remote SSH/WinRM authentication credentials across network boundaries. Which of the following vulnerability assessment techniques best fulfills these requirements?

  1. Agent-based vulnerability scanningCevap
  2. B
    Network-based uncredentialed active scanning
  3. C
    Deploying deception honeypot nodes
  4. D
    Web application firewall log inspection

Cevap

Agent-based vulnerability scanning is the correct choice as it evaluates host configurations locally without network probing or remote network authentication management.
Agent-based vulnerability scanning places a small software agent directly on the host machine. The agent performs local assessment of missing patches, system configurations, and installed software, reporting findings directly back to a management console. This eliminates the need for active network probing and avoids managing remote access credentials across network boundaries.

Adım Adım Çözüm

1
Analyze the scenario constraints: zero network scanning traffic, automated OS patch auditing, and no remote administrative network credential management across isolated networks.
Identified that network-centric probing and remote credentialed network logins are eliminated by the constraints.
Vulnerability scanning techniques vary in how they collect asset data—either over the network or locally on the endpoint.
2
Evaluate agent-based vulnerability scanning against the requirements.
Agent-based scanners reside on the host, execute inventory checks locally, and report results to a central console without needing network scan probes or remote network login credentials.
Agent-based architectures eliminate network probe overhead and cross-segment network authentication dependencies.

Anahtar Kavram

Agent-based vs. Network-based Vulnerability Assessment
Bu soruyu puanla