ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 213 - PT0-002 discussion

Report
Export

A tester who is performing a penetration test discovers an older firewall that is known to have serious vulnerabilities to remote attacks but is not part of the original list of IP addresses for the engagement. Which of the following is the BEST option for the tester to take?

A.
Segment the firewall from the cloud.
Answers
A.
Segment the firewall from the cloud.
B.
Scan the firewall for vulnerabilities.
Answers
B.
Scan the firewall for vulnerabilities.
C.
Notify the client about the firewall.
Answers
C.
Notify the client about the firewall.
D.
Apply patches to the firewall.
Answers
D.
Apply patches to the firewall.
Suggested answer: C

Explanation:

The best option for the tester to take is to notify the client about the firewall. The firewall is not part of the original list of IP addresses for the engagement, which means it is out of scope and should not be tested without permission. The tester should inform the client about the existence and potential risks of the firewall, and ask if they want to include it in the scope or not.

asked 02/10/2024
Venish Arumugam
35 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first