GCFA · Question #252
In which of the following security tests does the security testing team simulate as an employee or other person with an authorized connection to the organization's network?
The correct answer is D. Local network. A local network security test simulates an insider threat by placing the tester in the role of an authorized employee or internal user with direct network access.
Question
In which of the following security tests does the security testing team simulate as an employee or other person with an authorized connection to the organization's network?
Options
- ARemote network
- BRemote dial-up network
- CStolen equipment
- DLocal network
How the community answered
(66 responses)- A14% (9)
- B6% (4)
- C3% (2)
- D77% (51)
Why each option
A local network security test simulates an insider threat by placing the tester in the role of an authorized employee or internal user with direct network access.
Remote network testing simulates an external attacker targeting the organization from the internet, not an authorized internal user.
Remote dial-up network testing simulates an attacker accessing the network via modem or dial-up connections from an external location, not an authenticated internal employee.
Stolen equipment testing simulates scenarios where a threat actor has obtained physical devices such as laptops or tokens, not a person with an authorized network connection.
The local network test type places the security tester inside the organization's network perimeter, simulating an employee or other authorized insider who has legitimate connectivity, which assesses threats that originate from within the trusted network boundary.
Concept tested: Penetration testing types - local network insider simulation
Source: https://csrc.nist.gov/publications/detail/sp/800-115/final
Topics
Community Discussion
No community discussion yet for this question.