112-52 · Question #30
What is the primary objective of penetration testing?
The correct answer is B. To evaluate the effectiveness of security measures. Penetration testing (or "pen testing") is a simulated cyberattack conducted by authorized security professionals to identify weaknesses before malicious actors can exploit them - making B correct, as its entire purpose is to assess and validate how well existing security controls
Question
What is the primary objective of penetration testing?
Options
- ATo exploit vulnerabilities for malicious gain
- BTo evaluate the effectiveness of security measures
- CTo test system performance under load
- DTo enhance data storage capabilities
How the community answered
(42 responses)- A2% (1)
- B88% (37)
- C7% (3)
- D2% (1)
Explanation
Penetration testing (or "pen testing") is a simulated cyberattack conducted by authorized security professionals to identify weaknesses before malicious actors can exploit them - making B correct, as its entire purpose is to assess and validate how well existing security controls hold up against real-world attack techniques.
Why the distractors are wrong:
- A is the objective of an actual attacker, not a pen tester - authorization and intent are what legally and ethically separate the two.
- C describes load/stress testing, a performance engineering discipline unrelated to security assessments.
- D describes data architecture or storage optimization, which has no connection to security testing.
Memory tip: Think of pen testing as a "fire drill for your defenses" - you're not starting a real fire (malicious exploitation), you're checking whether your sprinklers work (evaluating security measures) so you're ready if a real fire starts.
Topics
Community Discussion
No community discussion yet for this question.