Isaca Certified in Risk and Information Systems Control CRISC Question # 46 Topic 5 Discussion

Isaca Certified in Risk and Information Systems Control CRISC Question # 46 Topic 5 Discussion

CRISC Exam Topic 5 Question 46 Discussion:
Question #: 46
Topic #: 5

A vulnerability assessment of a vendor-supplied solution has revealed that the software is susceptible to cross-site scripting and SQL injection attacks. Which of the following will BEST mitigate this issue?


A.

Monitor the databases for abnormal activity


B.

Approve exception to allow the software to continue operating


C.

Require the software vendor to remediate the vulnerabilities


D.

Accept the risk and let the vendor run the software as is


Get Premium CRISC Questions

Contribute your Thoughts:


Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.