Even though the internal policy of a company states they mus…

Even though the internal policy of a company states they must install all patches, the security team decides to bypass one of the patches because they believe the risk of applying it is greater than not applying it. Instead, they will wait for the next version of the patch. In the meantime, what strategy has the company adopted? Select two.

A company wants to implement a security awareness training p…

A company wants to implement a security awareness training program that includes sending certain types of emails to help keep track of the extent to which employees are behaving like human firewalls. They also want to rotate the different types of messages based on job description and include links to online games in some of the messages. What type of training should they include?