An IS auditor doing penetration testing during an audit of
Internet connections would:

A. evaluate configurations.

B. examine security settings.

C. ensure virus-scanning software is in use.

D. use tools and techniques that are available to a hacker.

Answer Posted / guest

Answer: D

Penetration testing is a technique used to mimic an
experienced hacker attacking a live site by using tools and
techniques available to a hacker. The other choices are
procedures that an IS auditor would consider undertaking
during an audit of Internet connections, but are not aspects
of penetration testing techniques.

Is This Answer Correct ?    8 Yes 0 No



Post New Answer       View All Answers


Please Help Members By Posting Answers For Below Questions

WHICH OF THE FOLLOWING IS OFTEN AN ADVANTAGE OF USING PROTOTYPING GOR DYDTEM DVELOPMENT

2836


purchase orders issued to vendors have been authorized as per the authorization matrix

1086