Vulnerability Response
Exam with complete
solution
Denning [Date] [Course title]
,The Vulnerability Response tasks provides which roles by default? - Correct Answers: a) sn_vul.admin
b) sn_vul.vulnerability_read
c) sn_vul.vulnerability_write
d) sn_vul.vr_import_admin
Common Vulnerability and Exposure — a dictionary of publicly known information-security
vulnerabilities and exposures. - Correct Answers: CVE
Common Vulnerability Scoring System — an open framework for communicating the characteristics and
severity of software vulnerabilities. - Correct Answers: CVSS
Common Weakness Enumeration — a list of software vulnerabilities - Correct Answers: CWE
Calculators used to prioritize and categorize vulnerabilities based on user-defined criteria. - Correct
Answers: Vulnerability calculators and calculator groups
Vulnerability groups and group rules - Correct Answers: Used to group vulnerable items based on
vulnerability, vulnerable item conditions, or filter group.
Configure Vulnerability integrations - Correct Answers: A process that pulls report data from a thirdparty
system, generally to retrieve vulnerability data.
Vulnerabilities - Correct Answers: Records of potentially vulnerable software downloaded from the
National Institute of Standards and Technology (NIST) NVD or third party integrations.
Vulnerable items - Correct Answers: Pairings of vulnerable entries, downloaded from the NIST NVD or
third-party integrations, and potentially vulnerable configuration items and software in your company
network.
When the Qualys Cloud Platform integration is installed, which the following rules are available - Correct
Answers: sn_vul_qualys.admin — can read, write, and delete records
sn_vul_qualys.user — can read and write records
, sn_vul_qualys.read — can read records
What role is required to define a VR email template? - Correct Answers: sn_vul.vulnerability_admin
How can you manually create vulnerability groups? - Correct Answers: Manually, using one of three
options, to add vulnerable items to the group.
1) Add vulnerable items to the group by hand.
2) Use a Condition filter that automatically adds vulnerable items to the vulnerability group.
3) Use a Filter group that automatically adds vulnerable items to the vulnerability group.
Note: Manually added vulnerable items are not automatically removed from vulnerability groups by
vulnerability group rules or group conditions.
T/F - vulnerable item refresh automation applies only to groups created using the Condition filter, Filter
group, or vulnerability group rules. If the VIs are added manually, automation does not apply. - Correct
Answers: True
T/F - If you want vulnerable items to continue being added to the group, regardless of state, disable the
Set auto refresh vulnerable items business rule. - Correct Answers: True
T/F - Manually created Vulnerability Groups using Condition or Filter Group filter types are refreshed
once an hour. - Correct Answers: True
T/F - Manually created Vulnerability Groups using Condition or Filter Group filter types are refreshed
once an hour. - Correct Answers: True
Add users to the Vulnerability Response group - Correct Answers: When the Request Review feature is
used to ignore or close a vulnerable item without requiring a scan, the Vulnerability Response group is
notified to approve or reject the request. You can assign the appropriate users.
The benefits of buying summaries with Stuvia:
Guaranteed quality through customer reviews
Stuvia customers have reviewed more than 700,000 summaries. This how you know that you are buying the best documents.
Quick and easy check-out
You can quickly pay through credit card or Stuvia-credit for the summaries. There is no membership needed.
Focus on what matters
Your fellow students write the study notes themselves, which is why the documents are always reliable and up-to-date. This ensures you quickly get to the core!
Frequently asked questions
What do I get when I buy this document?
You get a PDF, available immediately after your purchase. The purchased document is accessible anytime, anywhere and indefinitely through your profile.
Satisfaction guarantee: how does it work?
Our satisfaction guarantee ensures that you always find a study document that suits you well. You fill out a form, and our customer service team takes care of the rest.
Who am I buying these notes from?
Stuvia is a marketplace, so you are not buying this document from us, but from seller NETEXPERT. Stuvia facilitates payment to the seller.
Will I be stuck with a subscription?
No, you only buy these notes for $11.49. You're not tied to anything after your purchase.