Deal of The Day! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

EC-Council 712-50 Exam - Topic 2 Question 126 Discussion

Many times a CISO may have to speak to the Board of Directors (BOD) about their cyber security posture. What would be the BEST choice of security metrics to present to the BOD?
C) Only critical and high vulnerabilities that impact important production servers
A) All vulnerabilities found on servers and desktops
B) Only critical and high vulnerabilities on servers and desktops
D) All vulnerabilities that impact important production servers

EC-Council 712-50 Exam - Topic 2 Question 126 Discussion

Actual exam question for EC-Council's 712-50 exam
Question #: 126
Topic #: 2
[All 712-50 Questions]

Many times a CISO may have to speak to the Board of Directors (BOD) about their cyber security posture. What would be the BEST choice of security metrics to present to the BOD?

Show Suggested Answer Hide Answer
Suggested Answer: C

* Focus on Relevant Metrics:

The Board of Directors (BOD) requires concise, impactful information that demonstrates the organization's security posture. Metrics should highlight risks that directly affect critical business operations.

* Presentation Strategy:

Highlighting only critical and high vulnerabilities on production servers ensures the BOD understands the urgency and importance of these vulnerabilities without overwhelming them with irrelevant details.

* Supporting Reference:

CCISO materials emphasize presenting risk-based metrics that align with organizational priorities to effectively communicate with executive leadership.


Contribute your Thoughts:

0/2000 characters
Annmarie
3 days ago
B is too narrow; we need to know all critical risks.
upvoted 0 times
...
Tayna
8 days ago
Surprised that D is even an option. Why include all vulnerabilities?
upvoted 0 times
...
Lashaunda
14 days ago
A seems too overwhelming for the BOD.
upvoted 0 times
...
Howard
19 days ago
Totally agree with C! Prioritize critical impacts.
upvoted 0 times
...
Laquita
24 days ago
I think C is the best choice. Focus on what really matters.
upvoted 0 times
...
Hyun
29 days ago
I’m torn between B and C; I know the BOD wants to see what really matters, but I worry about missing some vulnerabilities if we narrow it down too much.
upvoted 0 times
...
Leah
1 month ago
I feel like option D could be relevant too, but it might overwhelm the Board with too much information.
upvoted 0 times
...
Billy
1 month ago
I think we practiced a similar question, and I leaned towards option C because it emphasizes the impact on production servers, which seems crucial for the BOD.
upvoted 0 times
...
Sarah
1 month ago
I remember discussing the importance of focusing on critical vulnerabilities, but I'm not sure if just highlighting those is enough for the BOD.
upvoted 0 times
...

Save Cancel