Q36 Single choice Mark for later How should patching be approached within an organization? A By ignoring downtime and costs B Only after a cyberattack has occurred C As part of the broader risk management strategy D As a purely technical task with no business implications Correct answer