Exam CAS-004 All QuestionsBrowse all questions from this exam
Question 467

An organization's load balancers have reached end of life and have a vulnerability that will require them to be replaced. The load balancers are scheduled to be decommissioned within the next month. The management team has decided not to resolve this risk and instead allow the load balancers to remain in place until their decommission date. Which of the following risk handling techniques is the management team using?

    Correct Answer: C

    An organization's management team is opting to acknowledge the risk posed by the end-of-life load balancers but decide not to take any immediate action to mitigate or transfer it. The decision to let the load balancers remain in place until their scheduled decommissioning, despite their known vulnerability, falls under the risk handling technique of 'Accept.' This involves recognizing the risk but choosing to tolerate it, possibly because it is deemed manageable or within acceptable risk tolerance levels.

Discussion
isaphiltrickOption: C

The management team is choosing to accept the risk associated with the end-of-life load balancers that have a known vulnerability. Accepting the risk means acknowledging that the vulnerability exists but deciding not to take any further action to mitigate or transfer it. In this case, the organization has made the decision to continue using the load balancers until their scheduled decommission date, despite the known vulnerability. This approach may be taken if the risk is deemed acceptable within the organization's risk tolerance levels, and if other risk handling techniques like mitigation or transfer are not feasible or practical in the given timeframe.