exam questions

Exam SY0-601 All Questions

View all questions & answers for the SY0-601 exam

Exam SY0-601 topic 1 question 339 discussion

Actual exam question from CompTIA's SY0-601
Question #: 339
Topic #: 1
[All SY0-601 Questions]

A security team is engaging a third-party vendor to do a penetration test of a new proprietary application prior to its release. Which of the following documents would the third-party vendor MOST likely be required to review and sign?

  • A. SLA
  • B. NDA
  • C. MOU
  • D. AUP
Show Suggested Answer Hide Answer
Suggested Answer: B 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
Ufuk_Ari
Highly Voted 2 years, 2 months ago
Selected Answer: B
The third-party vendor would most likely be required to review and sign a non-disclosure agreement (NDA) or confidentiality agreement. This document outlines the terms and conditions of the engagement, including the requirement for the vendor to keep all information about the proprietary application confidential and not to disclose any information about the test results or findings to any third parties.
upvoted 13 times
...
LaBooty123456
Highly Voted 2 years, 2 months ago
Selected Answer: B
B. NDA, keyword proprietary
upvoted 8 times
...
sujon_london
Most Recent 1 year, 8 months ago
Ans is B. Though I have spent quite a few minutes to justify my answer SLA with BAR, Perflexity AI and Chat GPT. Finally, I am convinced that NDA (Non-Disclosure Agreement) is chosen primarily for confidentiality over SLA (Service Level Agreement). An SLA is a contract between two parties that defines the level of service that the vendor will provide. In this case, the vendor is the penetration testing company and the customer is the security team. An NDA is a legal contract that protects confidential information. In this case, the confidential information would be the new proprietary application that is being tested. The NDA would typically include things like the definition of confidential information, the obligations of the parties to keep the information confidential, and the remedies for breach of the NDA.
upvoted 1 times
...
ApplebeesWaiter1122
1 year, 10 months ago
Selected Answer: B
An NDA is a legal contract that establishes confidentiality obligations between parties involved in a business relationship. In the context of engaging a third-party vendor for a penetration test, the NDA ensures that the vendor understands and agrees to keep any sensitive information, findings, or details about the proprietary application confidential. It prevents the vendor from disclosing or sharing any confidential information with unauthorized parties or using it for purposes other than the agreed-upon scope of the penetration test. By signing the NDA, the third-party vendor acknowledges their responsibility to protect the confidential information they may come across during the penetration testing process and demonstrates their commitment to maintaining the privacy and security of the proprietary application and its related data.
upvoted 4 times
...
NeoSam999
2 years, 2 months ago
Selected Answer: C
Memorandum of understanding (MOU) A memorandum of understanding (MOU) or memorandum of agreement (MOA) is an expression of agreement or aligned intent, will, or purpose between two entities. It is not typically a legal agreement or commitment, but rather a more formal form of a reciprocal agreement or handshake (neither of which is typically written down). An MOU can also be called a letter of intent. It is a means to document the specifics of an agreement or arrange- ment between two parties without necessarily legally binding them to the parameters of the document.
upvoted 1 times
...
sdc939
2 years, 2 months ago
Selected Answer: B
B, NDA!
upvoted 3 times
...
sdc939
2 years, 2 months ago
B, NDA!
upvoted 2 times
...
hsdj
2 years, 3 months ago
C. MOU - Memorandum of understanding
upvoted 1 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago