nerdexam
CompTIA

CS0-003 · Question #344

A Chief Information Security Officer (CISO) is concerned that a specific threat actor who is known to target the company's business type may be able to breach the network and remain inside of it for…

The correct answer is B. Adversary emulation. Adversary emulation is a technique that involves mimicking the tactics, techniques, and procedures (TTPs) of a specific threat actor or group to test the effectiveness of the security controls and incident response capabilities of an organization. Adversary emulation can help…

Submitted by helene.fr· Mar 6, 2026Vulnerability Management

Question

A Chief Information Security Officer (CISO) is concerned that a specific threat actor who is known to target the company's business type may be able to breach the network and remain inside of it for an extended period of time. Which of the following techniques should be performed to meet the CISO's goals?

Options

  • AVulnerability scanning
  • BAdversary emulation
  • CPassive discovery
  • DBug bounty

How the community answered

(55 responses)
  • A
    4% (2)
  • B
    76% (42)
  • C
    7% (4)
  • D
    13% (7)

Explanation

Adversary emulation is a technique that involves mimicking the tactics, techniques, and procedures (TTPs) of a specific threat actor or group to test the effectiveness of the security controls and incident response capabilities of an organization. Adversary emulation can help identify and address the gaps and weaknesses in the security posture of an organization, as well as improve the readiness and skills of the security team. Adversary emulation can also help measure the dwell time, which is the duration that a threat actor remains undetected inside the

Topics

#Adversary emulation#red teaming#threat actors

Community Discussion

No community discussion yet for this question.

Full CS0-003 Practice