nerdexam
CompTIA

SY0-501 · Question #144

A security program manager wants to actively test the security posture of a system. The system is not yet in production and has no uptime requirement or active user base. Which of the following…

The correct answer is C. Penetration testing. A penetration test, or pen test, is an attempt to evaluate the security of an IT infrastructure by safely trying to exploit vulnerabilities.

Submitted by the_admin· Mar 4, 2026Security operations

Question

A security program manager wants to actively test the security posture of a system. The system is not yet in production and has no uptime requirement or active user base. Which of the following methods will produce a report which shows vulnerabilities that were actually exploited?

Options

  • APeer review
  • BComponent testing
  • CPenetration testing
  • DVulnerability testing

How the community answered

(53 responses)
  • A
    6% (3)
  • B
    9% (5)
  • C
    83% (44)
  • D
    2% (1)

Explanation

A penetration test, or pen test, is an attempt to evaluate the security of an IT infrastructure by safely trying to exploit vulnerabilities.

Topics

#penetration testing#vulnerability assessment#security posture#exploitation

Community Discussion

No community discussion yet for this question.

Full SY0-501 Practice