exam questions

Exam PT1-002 All Questions

View all questions & answers for the PT1-002 exam

Exam PT1-002 topic 1 question 5 discussion

Actual exam question from CompTIA's PT1-002
Question #: 5
Topic #: 1
[All PT1-002 Questions]

A new security firm is onboarding its first client. The client only allowed testing over the weekend and needed the results Monday morning. However, the assessment team was not able to access the environment as expected until Monday. Which of the following should the security company have acquired BEFORE the start of the assessment?

  • A. A signed statement of work
  • B. The correct user accounts and associated passwords
  • C. The expected time frame of the assessment
  • D. The proper emergency contacts for the client
Show Suggested Answer Hide Answer
Suggested Answer: D 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
euknvyna
Highly Voted 3 years, 9 months ago
That is unlikely to start testing without credentials. Let's assume that credentials were known. What if e.g. environment maintenance took place over the weekend or MAC were white\blacklisted? D -> Emergency contact is correct
upvoted 11 times
...
Adonist
Highly Voted 3 years, 5 months ago
Selected Answer: D
I would go with D
upvoted 6 times
...
MeisAdriano
Most Recent 1 year, 1 month ago
Selected Answer: D
It's not A,B,C because: NOT-A) If I have to start, I suppose to have already signed SOW. The "was not able to access" suppose I'm trying, so I suppose to have already signed a SOW. NOT-B) We don't know if we are in a white/black box condition, we can assume for so strict times maybe we are in a white box and we received wrong credentials, but only calling the proper emergency contact for the client can solve this situation(D answer) NOT-C) Could be a good answer, but to acquire the expected time frame of the assessment doesn't help the assessment team -not able to access and produce results until Monday. That's why the right answer is D: If I have any doubt or problem or expected time frame compromised, I can advise the emergency contacts.
upvoted 1 times
...
somsom
1 year, 1 month ago
The user account and passwords must have been given to them, and in the SOW, it must have been included that all these would be provided. So, the emergency contact of the client is very necessary
upvoted 1 times
...
pentesternoname
1 year, 9 months ago
Selected Answer: B
In a security assessment, having the correct user accounts and associated passwords is crucial for the assessment team to access and test the client's environment. Without proper access credentials, the team might face delays in conducting the assessment, as described in the scenario. Acquiring this information before the start of the assessment helps ensure a smooth and timely process.
upvoted 1 times
...
Anarckii
2 years, 2 months ago
Selected Answer: B
It look me awhile to get this answer, but this made sense: A. A signed statement of work: While a signed statement of work is essential for establishing the scope, objectives, and terms of the assessment, it does not provide the necessary credentials or access to the client's environment. It is a contractual agreement outlining the scope of the work to be performed. C. The expected time frame of the assessment: Knowing the expected time frame of the assessment is important for planning purposes, but it does not resolve the issue of the assessment team's inability to access the environment over the weekend. It merely provides an understanding of the duration of the assessment. D. The proper emergency contacts for the client: While having the proper emergency contacts is crucial for communication and addressing any urgent situations during the assessment, it does not directly address the issue of the assessment team's inability to access the environment as expected
upvoted 2 times
pentesternoname
1 year, 9 months ago
I agree with you
upvoted 1 times
...
...
AaronS1990
2 years, 5 months ago
Selected Answer: D
I agree with D for the reasons Kiduu stated below
upvoted 3 times
...
shakevia463
2 years, 6 months ago
Selected Answer: D
If they had emergency contact information the issue would have been resolved. Answer D they couldnt resolve the issue because they didnt have the emergency contact
upvoted 3 times
...
RightAsTain
2 years, 10 months ago
C is right. They should have assessed the timeframe to see if the weekend was enough time. There was no emergency here. They just went out of scope by performing the test into Monday.
upvoted 2 times
AaronS1990
2 years, 5 months ago
C isn't saying they should have assessed/confirmed it, it is saying that they have gotten it. But we can already see that the time-frame is known. It's not the best question as it seems a bit open to interpretation but I'd got with D
upvoted 3 times
...
...
Cyber_Judy
3 years, 2 months ago
Selected Answer: D
D - gotta know who to contact during weekend hours if you don't have proper info/accesses.
upvoted 4 times
...
Cyber_Judy
3 years, 2 months ago
D - as per specifics on question stated... In order -> 1. Client only allowed testing over the weekend 2. Needed the results Monday morning. 3. Team not able to access environment as expected until Monday. 4. Which should company have acquired BEFORE start of assessment? SUMMARY: They knew they had to do it over the weekend and have results by Monday morning (yet unrealistic expectations).
upvoted 3 times
...
kiduuu
3 years, 3 months ago
Selected Answer: D
Is not A, B or C because : A. A signed statement of work - "A new security firm is onboarding its first client" - it already has the approval B. The correct user accounts and associated passwords - "the assessment team was not able to access the environment as expected" - is not required to be Credential-based vulnerability assessment ! C. The expected time frame of the assessment - The client only allowed testing over the weekend and needed the results Monday morning - you have a timeframe
upvoted 4 times
...
Charlieb123
3 years, 4 months ago
Selected Answer: A
If by not choosing A - a signed SOW, it means there isn't a signed SOW, then the test shouldn't go ahead. So BEFORE you do anything testing, you MUST have a signed SOW. I think it's a trick question steering people away from the obvious.
upvoted 2 times
maps7
3 years, 2 months ago
the answer is A you need a SOW to start work
upvoted 1 times
...
...
brandonl
3 years, 5 months ago
It specifically states in the question: "the client only allowed testing over the weekend and needed the results Monday morning." Therefore, it was known that this needed to happen, therefore this must have been determined. The issue is that this condition could not be met, but the team had no way to notify the client. Therefore, D.
upvoted 6 times
...
jedington
3 years, 5 months ago
Selected Answer: C
It's unlikely to be D, because it doesn't mention anywhere that the team couldn't access contacts/etc. It's not B, because it didn't mention anywhere that there were credential problems. It IS C, because it claims the security team couldn't access the system; therefore, a clear timeline of expected access to said system should've been clarified to cover the security team.
upvoted 2 times
Adonist
3 years, 5 months ago
Isn't the weekend and expected results by monday a clarified timeline though?
upvoted 2 times
...
...
Umbriator
3 years, 5 months ago
We don't now if it's a black box or white box test. I presume it's a black box test, so they have to find out about the credential by them self. If the SOW state that the work has to be done in the weekends, the contact has to be available in the weekend. So if i didn't get access to the system, i would have called the contact to see what was wrong. I would also checked if the system was attacked during that time.
upvoted 1 times
...
BinarySoldier
3 years, 6 months ago
Selected Answer: C
"the assessment team was not able to access the environment as expected until Monday." It's not like the team could not get access to the environment due to failing credentials, it's because they didn't know when to the time frame. That's why it's mentioned they accessed the platform on Monday, and the question doesn't say this was with the assistance of the client. I am changing to C being the correct answer
upvoted 1 times
brandonl
3 years, 5 months ago
It specifically states in the question: "the client only allowed testing over the weekend and needed the results Monday morning." Therefore, it was known that this needed to happen, therefore this must have been determined. The issue is that this condition could not be met, but the team had no way to notify the client. Therefore, D.
upvoted 3 times
...
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...