Pre-Summer Special Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: validbest

Exam CTPRP All Questions
Exam CTPRP All Questions

View all questions & answers for the CTPRP exam

Shared Assessments Third Party Risk Management CTPRP Question # 26 Topic 3 Discussion

CTPRP Exam Topic 3 Question 26 Discussion:
Question #: 26
Topic #: 3

When defining due diligence requirements for the set of vendors that host web applications which of the following is typically NOT part of evaluating the vendor's patch

management controls?


A.

The capability of the vendor to apply priority patching of high-risk systems


B.

Established procedures for testing of patches, service packs, and hot fixes prior to installation


C.

A documented process to gain approvals for use of open source applications


D.

The existence of a formal process for evaluation and prioritization of known vulnerabilities


Get Premium CTPRP Questions

Contribute your Thoughts:


Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.