Question 1 of 30
The risk matrix shows a list of identified vulnerabilities with their corresponding Common Vulnerability Scoring System (CVSS) scores. As a cybersecurity analyst, you need to recommend a prioritization strategy for remediation. Which of the following approaches would be the most effective in ensuring that critical organizational risks are addressed first?
Correlate CVSS scores with the criticality of the affected asset and the likelihood of exploitation within the organization's specific threat landscape.
Prioritize vulnerabilities solely based on their raw CVSS base scores, addressing the highest scores first.
Focus remediation efforts on vulnerabilities for which publicly available exploit code is readily found, regardless of asset importance.
Assign remediation priority based exclusively on the CVSS temporal score, assuming higher temporal scores indicate the most immediate threats.

Preparing for CompTIA CySA+ Exam? Now land the interview.

73% of qualified candidates get rejected because of weak resumes. Build an ATS-optimized, recruiter-ready resume in under 5 minutes - free to start.

Build My Resume Free