ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 272 - PT0-002 discussion

Report
Export

A client evaluating a penetration testing company requests examples of its work. Which of the following represents the BEST course of action for the penetration testers?

A.
Redact identifying information and provide a previous customer's documentation.
Answers
A.
Redact identifying information and provide a previous customer's documentation.
B.
Allow the client to only view the information while in secure spaces.
Answers
B.
Allow the client to only view the information while in secure spaces.
C.
Determine which reports are no longer under a period of confidentiality.
Answers
C.
Determine which reports are no longer under a period of confidentiality.
D.
Provide raw output from penetration testing tools.
Answers
D.
Provide raw output from penetration testing tools.
Suggested answer: C

Explanation:

Penetration testing reports contain sensitive information about the vulnerabilities and risks of a customer's systems and networks. Therefore, penetration testers should respect the confidentiality and privacy of their customers and only share their reports with authorized parties. Penetration testers should also follow the terms and conditions of their contracts with their customers, which may include a period of confidentiality that prohibits them from disclosing any information related to the testing without the customer's consent.

asked 02/10/2024
Melvin Bruijnaers
33 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first