hard · Project Management Professional hybrid
Grayling Software is delivering a hybrid cloud-migration. A critical-path security audit in the predictive workstream finds that the adaptive team's latest release uses an encryption key that was accidentally committed to a public GitHub repository.
What should the project manager do first?
- Escalate to the Product Owner to determine if the breach is significant enough to pause the project.
- Direct the adaptive team to remove the key from the GitHub history and continue the sprint.
- Submit a change request to the CCB to extend the security audit duration for future releases.
- Immediately rotate all affected keys and initiate a security impact assessment on the migrated data.
Sign up free to see the explanation and track your rank →
More Project Management Professional hybrid practice
- What should the project manager do?
- What is the Scrum Master's primary focus here as a servant leader?
- What should the project manager investigate first?
- What should the project manager do first?
- Which SECI mode is most active?
- What does 'Consulted' mean for the local Community Group in this context?
- Which Mindset Rule is the highest priority?
- Who is traditionally 'Accountable' for the effectiveness of this adaptive ceremony?