Certified Information Systems Security Professional – CISSP – Question362

Which action is MOST effective for controlling risk and minimizing maintenance costs in the software supply chain?

A.
Selecting redundant suppliers
B. Selecting suppliers based on business requirements
C. Selecting fewer, more reliable suppliers
D. Selecting software suppliers with the fewest known vulnerabilities

Correct Answer: D