exam questions

Exam PT1-002 All Questions

View all questions & answers for the PT1-002 exam

Exam PT1-002 topic 1 question 1 discussion

Actual exam question from CompTIA's PT1-002
Question #: 1
Topic #: 1
[All PT1-002 Questions]

A client wants a security assessment company to perform a penetration test against its hot site. The purpose of the test is to determine the effectiveness of the defenses that protect against disruptions to business continuity. Which of the following is the MOST important action to take before starting this type of assessment?

  • A. Ensure the client has signed the SOW.
  • B. Verify the client has granted network access to the hot site.
  • C. Determine if the failover environment relies on resources not owned by the client.
  • D. Establish communication and escalation procedures with the client.
Show Suggested Answer Hide Answer
Suggested Answer: A 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
[Removed]
Highly Voted 3 years ago
Selected Answer: A
A SOW should be signed before ANYTHING is done.
upvoted 5 times
shakevia463
2 years, 11 months ago
Hey did you take the test? How many questions did you see? Can anyone report back soon here or on the main pt1-002 page?
upvoted 1 times
...
...
[Removed]
Highly Voted 3 years, 5 months ago
It's A...who the hell approves these answers
upvoted 5 times
...
itcertific2020
Most Recent 1 year, 3 months ago
Hello Here , anyone can tell the difference between PT1-002 and PT0-002
upvoted 1 times
...
Caoilfhion
1 year, 6 months ago
Selected Answer: C
It's C because a SOW means nothing if you didn't account for systems that weren't included in being given permission to Pentest. Checking to make sure the ENTIRE network is owned by the client first, ensures 1.) You're not getting slammed with legal regulations by not having permission on those systems...you might need multiple SOWs! and 2.) You're not stuck during the Pentest because you ran into a system you didn't account for, and legally cannot continue....(even though this is moot to real bad actors, this test about "hacking for good".)
upvoted 1 times
...
JimBobSquare101
3 years ago
Having the S+, CySA and CASP, I would go with A on this...
upvoted 4 times
...
Cyber_Judy
3 years ago
Selected Answer: C
Albeit a statement of work (SOW) is one of the first and primary requirements when conducting a penetration test, however it would include scope and what is included. Whether the organization owns said networks and subnetworks.
upvoted 1 times
...
shakevia463
3 years, 1 month ago
Selected Answer: A
Agree with A sign the contract first. Does anyone have any updates to the recent test? Percentage of questions valid?
upvoted 3 times
...
strawberryspring
3 years, 3 months ago
If this were CISSP I’d say A, however they directly specify the purpose of the test is to test system disruption
upvoted 1 times
...
Umbriator
3 years, 3 months ago
No, Answer C is correct becuase if you don't do this you are screwed. A is also important, but it will not increase the risk of damage.
upvoted 3 times
...
DarkHorse99
3 years, 4 months ago
Selected Answer: A
Def A. From PmP/cyber you would do this
upvoted 3 times
...
tokhs
3 years, 7 months ago
Selected Answer: A
the answer should ba A
upvoted 3 times
...
Random_Leaf_Ninja127
3 years, 7 months ago
This answer is wrong. The correct answer is A. You need to make sure the contract is signed before anything is started.
upvoted 3 times
[Removed]
3 years, 7 months ago
I agree
upvoted 1 times
...
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...