What is the role of threat intelligence in a PCI DSS-aligned vulnerability management program?
-
A
It replaces the need for vulnerability scanning
-
B
It provides context about active exploits to help prioritize remediation
-
C
It is only relevant for Level 1 merchants
-
D
It is used exclusively for penetration testing