- Home
- All questions
- Question 174
CompTIA Security+ study material · question 174 of 611
Which step confirms that a deployed patch actually removed the vulnerability?
Show the answer
Answer: B. Rescanning the affected host
A patch recorded as deployed but never verified is an assumption rather than a closed finding.
Source: NIST SP 800-40 Rev. 4 (NIST) — SP 800-40 Rev. 4 § 2.3 Risk Response Execution