Q: 20
A large e-commerce organization is planning to implement a vulnerability assessment solution to
enhance its security posture. They require a solution that imitates the outside view of attackers,
performs well-organized inference-based testing, scans automatically against continuously updated
databases, and supports multiple networks. Given these requirements, which type of vulnerability
assessment solution would be most appropriate?
Options
Discussion
It’s D, saw something like this on a practice set where private network solutions got picked for multi-network scanning and custom control.
B , since only a service-based solution clearly provides that true external attacker perspective plus the always-updated scanning for multiple networks. If product-based was cloud and handled everything externally, maybe it'd be different.
B , seen this type in official guide and practice questions.
B or maybe D but B fits better. Service-based providers usually handle updated scans across networks and simulate outside attacks. Not totally sure though, since product-based can also scan, but doesn't always cover all the points here.
Be respectful. No spam.
Question 20 of 35