What was Amarjit’s question?
Author: Anonymous
After completing a PenTest engagement at a client location,…
After completing a PenTest engagement at a client location, a formal hand-off process to the client is initiated. What can be expected during this action?
One employee on your staff is considered a 50% employee (vs…
One employee on your staff is considered a 50% employee (vs 100%). How many hours would the employee be scheduled in a 2 week, 40 hour week work period?
A penetration tester is in the enumeration phase and has bee…
A penetration tester is in the enumeration phase and has been tasked with creating a detailed network map of the target environment. The tester needs to document and capture all relevant information, including services, IP addresses, and device types. Which of the following actions should the penetration tester prioritize to ensure a complete and accurate map of the network is built?
Which of the following best describes the relationship betwe…
Which of the following best describes the relationship between threats, vulnerabilities, and risk?
An organization is planning to perform a security assessment…
An organization is planning to perform a security assessment to identify vulnerabilities in its network. Which of the following approaches will provide the MOST detailed information about internal system configurations, installed software, and user-specific settings?
When defining the communication path, what should an IT mana…
When defining the communication path, what should an IT manager establish for a PenTest team?
A penetration tester is tasked with testing the effectivenes…
A penetration tester is tasked with testing the effectiveness of a firewall. The pentester sends specially crafted packets to determine if they can bypass the firewall. After several tests, the tester discovers that some packets are allowed through the firewall. Which of the following is the MOST likely reason for this, and what should the pentester include in their report?
A PenTest team prepares for an engagement at a customer site…
A PenTest team prepares for an engagement at a customer site. Which assets could the team inventory as being in-scope for the test? (Select three.)
A penetration tester has successfully gained access to a tar…
A penetration tester has successfully gained access to a target system and identified sensitive customer data. The tester now needs to exfiltrate the data covertly to avoid detection. Which of the following methods would be the MOST appropriate for ensuring the data is both hidden and protected during the exfiltration process?