ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 234 - PT0-002 discussion

Report
Export

A penetration tester joins the assessment team in the middle of the assessment. The client has asked the team, both verbally and in the scoping document, not to test the production networks. However, the new tester is not aware of this request and proceeds to perform exploits in the production environment. Which of the following would have MOST effectively prevented this misunderstanding?

A.
Prohibiting exploitation in the production environment
Answers
A.
Prohibiting exploitation in the production environment
B.
Requiring all testers to review the scoping document carefully
Answers
B.
Requiring all testers to review the scoping document carefully
C.
Never assessing the production networks
Answers
C.
Never assessing the production networks
D.
Prohibiting testers from joining the team during the assessment
Answers
D.
Prohibiting testers from joining the team during the assessment
Suggested answer: B

Explanation:

The scoping document is a document that defines the objectives, scope, limitations, deliverables, and expectations of a penetration testing engagement. It is an essential document that guides the penetration testing process and ensures that both the tester and the client agree on the terms and conditions of the test. Requiring all testers to review the scoping document carefully would have most effectively prevented this misunderstanding, as it would have informed the new tester about the client's request not to test the production networks. The other options are not effective or realistic ways to prevent this misunderstanding.

asked 02/10/2024
AMMAR SHEIKH SALEH
33 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first