- Home
- All questions
- Question 600
CompTIA Security+ study material · question 600 of 611
What does the reporting step of the vulnerability management cycle achieve?
Show the answer
Answer: A. It tells owners and management the current exposure, which sustains funding for the work
Validation confirms the fix; reporting is what keeps the programme visible to the people who resource it.
Source: NIST SP 800-40 Rev. 4 (NIST) — SP 800-40 Rev. 4 § 3.6 Choose Actionable Enterprise-Level Patching Metrics