nerdexam
CompTIACompTIA

PT0-002 · Question #621

PT0-002 Question #621: Real Exam Question with Answer & Explanation

The correct answer is A: The cloud-hosting environment. Since the company's e-commerce solution is fully deployed in a cloud infrastructure, the cloud- hosting environment is the primary focus for the penetration test. This includes assessing: - Cloud security configurations (e.g., IAM, storage access controls) - Web application vulne

Planning and Scoping

Question

A penetration tester is performing an assessment for a company whose e-commerce solution is deployed 100% in a cloud infrastructure and is maintained by a team of globally distributed technology professionals. Which of the following areas of the organization should the penetration tester focus on primarily throughout the assessment?

Options

  • AThe cloud-hosting environment
  • BThe corporate offices
  • CThe remote employees' home offices
  • DThe legacy data center environment

Explanation

Since the company's e-commerce solution is fully deployed in a cloud infrastructure, the cloud- hosting environment is the primary focus for the penetration test. This includes assessing: - Cloud security configurations (e.g., IAM, storage access controls) - Web application vulnerabilities (e.g., SQL injection, XSS) - Network security settings (e.g., firewall rules, security groups) - Data protection and encryption mechanisms

Topics

#Penetration testing scope#Cloud security assessment#Engagement planning#Infrastructure focus

Community Discussion

No community discussion yet for this question.

Full PT0-002 PracticeBrowse All PT0-002 Questions