3651
During an authorized retail-company assessment (RET-LAB-M14-3651), which risk is most directly associated with "web application firewall"?
View answer choices
- Unplanned actions can destroy evidence, prolong compromise, or disrupt recovery.
- Reliance on a single control creates a direct path when that control fails or is bypassed.
- A WAF can be bypassed and cannot correct insecure application code.
- Controls chosen without risk context may protect low-value assets while critical risks remain.