QuestionQ263

Engagement Management

Given the following statements:

  • Implement a web application firewall.
  • Upgrade end-of-life operating systems.
  • Implement a secure software development life cycle.

In which of the following sections of a penetration test report would these statements appear?

  • A Executive summary
  • B Attack narrative
  • C Detailed findings
  • D Recommendations
Explanation

A penetration-test report’s recommendations section presents remediation actions that reduce or eliminate identified security risks, such as implementing protective controls, upgrading unsupported systems, and improving secure development practices.

Community Discussion

No comments yet. Be the first to start the discussion!