nerdexam
CompTIA

SY0-301 · Question #590

Which of the following is BEST utilized to actively test security controls on a particular system?

The correct answer is B. Penetration test. A penetration test (Option B) is an authorized, simulated attack on a system where a tester actively attempts to exploit vulnerabilities to evaluate the effectiveness of security controls. It is 'active' testing - the tester takes action to breach defenses, just as a real…

Security operations

Question

Which of the following is BEST utilized to actively test security controls on a particular system?

Options

  • APort scanning
  • BPenetration test
  • CVulnerability scanning
  • DGrey/Gray box

How the community answered

(46 responses)
  • A
    2% (1)
  • B
    91% (42)
  • C
    4% (2)
  • D
    2% (1)

Explanation

A penetration test (Option B) is an authorized, simulated attack on a system where a tester actively attempts to exploit vulnerabilities to evaluate the effectiveness of security controls. It is 'active' testing - the tester takes action to breach defenses, just as a real attacker would. Option A (Port scanning) is a passive reconnaissance technique that discovers open ports but does not test whether controls can be bypassed. Option C (Vulnerability scanning) automatically identifies known vulnerabilities but does not attempt to exploit them - it reports potential weaknesses without confirming exploitability. Option D (Grey/Gray box) describes a testing methodology (partial knowledge of the system), not a testing type in itself. Penetration testing is the gold standard for actively validating that security controls work as intended.

Topics

#penetration testing#security testing#vulnerability assessment#security controls

Community Discussion

No community discussion yet for this question.

Full SY0-301 Practice