CISSP Practice Question (Domain 3: Security Architecture and Engineering)
Your organization is migrating legacy on-premises applications to a multi-cloud environment. The security team discovers that several applications use hardcoded service account credentials that cannot be easily refactored before the migration deadline. Business leadership refuses to delay the timeline. What is the BEST approach?
A. Migrate as planned and prioritize credential refactoring in the next sprint
B. Implement secrets management and network segmentation around the vulnerable applications
C. Present the risk formally to leadership with compensating control options and timeline impacts
D. Reject the migration for applications with hardcoded credentials until remediation is complete
Come back for the answer tomorrow, or study more now!
1
16 comments
Vincent Primiani
7
CISSP Practice Question (Domain 3: Security Architecture and Engineering)
CISSP Study Group
skool.com/cybersecurity-study-group
Share resources, get advice, and connect with peers studying cybersecurity. Join our CISSP study group and connect with fellow professionals today!
Leaderboard (30-day)
Powered by