Free 512-50 Exam Braindumps (page: 52)

Page 51 of 102

The company decides to release the application without remediating the high-risk vulnerabilities.

Which of the following is the MOST likely reason for the company to release the application?

  1. The company lacks a risk management process
  2. The company does not believe the security vulnerabilities to be real
  3. The company has a high risk tolerance
  4. The company lacks the tools to perform a vulnerability assessment

Answer(s): C



The organization does not have the time to remediate the vulnerability; however it is critical to release the application.
Which of the following needs to be further evaluated to help mitigate the risks?

  1. Provide developer security training
  2. Deploy Intrusion Detection Systems
  3. Provide security testing tools
  4. Implement Compensating Controls

Answer(s): D



Which of the following can the company implement in order to avoid this type of security issue in the future?

  1. Network based intrusion detection systems
  2. A security training program for developers
  3. A risk management process
  4. A audit management process

Answer(s): B



Which of the following is considered a project versus a managed process?

  1. monitoring external and internal environment during incident response
  2. ongoing risk assessments of routine operations
  3. continuous vulnerability assessment and vulnerability repair
  4. installation of a new firewall system

Answer(s): D






Post your Comments and Discuss EC-Council 512-50 exam with other Community members:

512-50 Discussions & Posts