ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 209 - PT0-002 discussion

Report
Export

A penetration-testing team needs to test the security of electronic records in a company's office. Per the terms of engagement, the penetration test is to be conducted after hours and should not include circumventing the alarm or performing destructive entry. During outside reconnaissance, the team sees an open door from an adjoining building. Which of the following would be allowed under the terms of the engagement?

A.
Prying the lock open on the records room
Answers
A.
Prying the lock open on the records room
B.
Climbing in an open window of the adjoining building
Answers
B.
Climbing in an open window of the adjoining building
C.
Presenting a false employee ID to the night guard
Answers
C.
Presenting a false employee ID to the night guard
D.
Obstructing the motion sensors in the hallway of the records room
Answers
D.
Obstructing the motion sensors in the hallway of the records room
Suggested answer: B

Explanation:

The terms of engagement state that the penetration test should not include circumventing the alarm or performing destructive entry, which rules out options A and D. Option C is also not allowed, as it involves social engineering, which is not part of the scope. Option B is the only one that does not violate the terms of engagement, as it uses an open door from an adjoining building to gain access to the records room. This can help the penetration tester to test the physical security of the electronic records without breaking any rules.

asked 02/10/2024
Kwame Kankam-Boadu
34 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first