nerdexam
CompTIA

SY0-701 · Question #506

An administrator wants to perform a risk assessment without using proprietary company information. Which of the following methods should the administrator use to gather information?

The correct answer is C. Open-source intelligence. Open-source intelligence (OSINT) involves gathering publicly available information from sources such as websites, social media, forums, and other publicly accessible data to perform a risk assessment. This method allows an administrator to gather useful insights without…

Submitted by yasin.bd· Mar 6, 2026Security program management and oversight

Question

An administrator wants to perform a risk assessment without using proprietary company information. Which of the following methods should the administrator use to gather information?

Options

  • ANetwork scanning
  • BPenetration testing
  • COpen-source intelligence
  • DConfiguration auditing

How the community answered

(46 responses)
  • A
    13% (6)
  • B
    4% (2)
  • C
    80% (37)
  • D
    2% (1)

Explanation

Open-source intelligence (OSINT) involves gathering publicly available information from sources such as websites, social media, forums, and other publicly accessible data to perform a risk assessment. This method allows an administrator to gather useful insights without accessing or relying on proprietary company information.

Community Discussion

No community discussion yet for this question.

Full SY0-701 Practice