🔥 3-day streak
ISACA CRISC — Certified in Risk and Information Systems Control149 / 150
Question 149 of 150
A quarterly automated vulnerability scan of a retail company's e-commerce platform returns 480 findings, including 62 rated 'Critical.' Before these are entered into the risk register and escalated, the risk analyst notices the scan was run against a staging environment that uses default credentials and unpatched libraries not present in production. What should the risk analyst do FIRST to ensure the accuracy of the vulnerability analysis?
Reviewed for accuracy · Report an issueNext question