Which activities are associated with vulnerability management?
Which of the following activities are associated with vulnerability management? (Choose two.)
Community Votes
100% of anonymous learners picked answer AB. Votes are pick records left by other test-takers — they are not the verified answer.
Community Insight
Tests the ability to distinguish between proactive vulnerability management processes and reactive incident response actions, with the common trap being confusing containment or correlation with standard VM workflows.
This question assesses knowledge of core vulnerability management lifecycle activities, specifically reporting and prioritization. The community overwhelmingly agrees that these two functions are essential for tracking and effectively addressing security weaknesses.
Candidates frequently select Containment (E) because they associate it with limiting damage, but containment belongs to incident response rather than the ongoing vulnerability management cycle. Others might choose Correlation (D), mistaking SIEM log analysis features for direct VM tasks.
Community Discussion (9 comments)
Comments & Corrections
No comments yet — spotted an error or have a note? Share it below.
Expert Analysis
Core Concept: Vulnerability Management Lifecycle
Vulnerability management is a continuous, cyclical process designed to systematically identify, evaluate, treat, and mitigate security vulnerabilities in software and hardware. According to the CompTIA Security+ SY0-701 objectives, this process relies heavily on structured workflows to ensure resources are allocated efficiently.Why Reporting and Prioritization Are Correct
Prioritization (B) is a foundational step where identified vulnerabilities are ranked based on severity, exploitability, asset criticality, and business impact. As noted in community discussions, this ensures teams address the highest-risk issues first rather than attempting to fix everything simultaneously. Reporting (A) tracks the status of findings, remediation efforts, and compliance metrics, providing stakeholders with visibility into the organization's security posture. Multiple voters confirmed that both activities are explicitly called out in official study guides as mandatory components of the VM framework.Why Other Options Are Incorrect
Exploiting (C) is an offensive security activity performed during penetration testing or red team exercises, not a defensive vulnerability management function. Correlation (D) refers to combining data from multiple sources to detect patterns, which is primarily a SIEM (Security Information and Event Management) function rather than a direct VM task. Containment (E) is a reactive measure used to isolate compromised systems during an active breach. As highlighted by several candidates, containment falls squarely under the Incident Response lifecycle, making it a distractor for this specific question.Exam Takeaway
The vulnerability management workflow prioritizes proactive identification and risk-based triage over reactive containment, making Reporting and Prioritization the definitive answers.Official Reference
- NIST SP 800-40 Rev. 4 - Guide to Enterprise Patch Management Technologies
- https://csrc.nist.gov/pubs/sp/800-40/r4/final
- CompTIA Security+ SY0-701 Exam Objectives - Domain 4.1: Vulnerability Management
Exam Strategy
When encountering vulnerability management questions, focus on the proactive lifecycle stages: scan, assess, prioritize, remediate, and report. Actively filter out reactive incident response terms like containment, eradication, or lessons learned, as these belong to a different operational phase.
Related Analysis
Practice All SY0-701 Questions
Access 100 questions with complete answers and detailed explanations.
View Full SY0-701 Practice Test →