CompTIA Security+ SY0-601 – Question272

A company's security team received notice of a critical vulnerability affecting a high-profile device within the web
infrastructure. The vendor patch was just made available online but has not yet been regression tested in
development environments. In the interim, firewall rules were implemented to reduce the access to the interface
affected by the vulnerability. Which of the following controls does this scenario describe?


A.
Deterrent
B. Compensating
C. Detective
D. Preventive

Correct Answer: D