A vulnerability scan of the city network shows several unused services reachable from the Internet through overly broad firewall rules. What enterprise-capability change best reduces that unnecessary exposure?
Select an answer to reveal the explanation.
Short Explanation
If the scan shows doors that nobody uses still standing open to the Internet, close them—tighten the firewall rules and ACLs to least exposure. Spreadsheets without change control and opening more ports just make it worse.
Full Explanation
Modifying enterprise capabilities after discovery often includes hardening perimeter and segment firewalls: removing unused allow rules, closing unnecessary ports, and refining ACLs to least privilege. That directly reduces attack surface flagged by scans. Expanding exposure, bypassing change control, or hiding logs does not remediate the finding.