CISSP Exam QuestionsBrowse all questions from this exam

CISSP Exam - Question 325


To minimize the vulnerabilities of a web-based application, which of the following FIRST actions will lock down the system and minimize the risk of an attack?

Show Answer
Correct Answer: A

Applying the latest vendor patches and updates is the first action to minimize the risk of attack and address known vulnerabilities in a web-based application. Patches typically fix security flaws that could be exploited by attackers. This proactive step ensures the application is running on the most secure version, reducing immediate risks related to known vulnerabilities.

Discussion

10 comments
Sign in to comment
Herc1234
Jan 10, 2024

Someone explain to me how option A locks down the system? That is the word that is throwing me off.

eboehm
Apr 10, 2024

locking down a system is just another weird cissp way of say hardening. One of the steps to hardening your system is having the latest security updates

SangSang
Jan 22, 2025

And where did you find the hardening in the question?

SangSang
Jan 22, 2025

And where did you find the hardening in the question?

WiDeBarulhoOption: C
Oct 25, 2022

Option "A" does not "lock down the system". It only ensures some publicly known vulnerabilities and exploits are addressed. Reviewing access controls is the only way to lock down the system.

WiDeBarulho
Oct 25, 2022

Never mind. The question specifically asks to minimize the impact of vulnerabilities so option "A" is correct.

Jayelv
Dec 28, 2024

when you mentioned this it all makes sense

liledag
Mar 28, 2023

The way this question is asked, it can be both A or C. ill go with A

Jayelv
Dec 28, 2024

when you mentioned this it all makes sense

DJOEKOption: A
Jan 12, 2023

Patches and updates are the 1st step. Reviewing access controls is useless when they can make use of a known vulnerability and bypass it.

luciusinfOption: A
Feb 22, 2023

It's A

jackdryan
May 14, 2023

A is correct

Soleandheel
Dec 15, 2023

A. Apply the latest vendor patches and updates. Regularly applying patches and updates from the vendor is a fundamental security practice to address known vulnerabilities and security issues in software. It helps ensure that your web-based application is running the latest, most secure version of the software.

franbarpro
Oct 26, 2022

Our home computers are now more secure then work computers for this one simple reason. We get automatic updates...... unless you turned that off. Work computers can't say the samething! So, A

JamatiOption: A
Nov 13, 2022

Patches and updates are the 1st step.

omarin25
Dec 5, 2022

A is the first action

79cc092
Jul 30, 2024

Use CrowdStrike Falcon

1460168
Aug 2, 2024

Sure, we do. ;)

BigITGuyOption: A
Mar 31, 2025

Unpatched vulnerabilities are the #1 cause of successful attacks on web-based applications.