A security manager must remain aware of the security posture of each system. Which of the following supports
this requirement?

A.
Training staff on security policies
B.
Establishing baseline reporting
C.
Installing anti-malware software
D.
Disabling unnecessary accounts/services
Explanation:
The IT baseline protection approach is a methodology to identify and implement computer security measures in
an organization. The aim is the achievement of an adequate and appropriate level of security for IT systems.
This is known as a baseline.
A baseline report compares the current status of network systems in terms of security updates, performance or
other metrics to a predefined set of standards (the baseline).