CompTIA Security + (SY0-701) > Section 2.15 Gap Analysis > Flashcards
Gap Analysis
Process of evaluating the differences between an organisations current peformance and its desired peformance
Why is conducting Gap Analysis important?
Strengthen the overall security posture of an organisation
how to conduct one (4 brief steps)
Gap Analysis steps
2 Basic types of Gap Analysis
1.Technical Gap Analysis - Assesing the technical infrastructure
Plan of Action and Milestones (POA&M)
Outlines the specific measures to address each vulnerability with timelines and resources