QuestionQ154

Secure Software Testing

Which of the following testing methods aims to assess the IT system from a threat-source perspective and identify potential failures in the IT system’s protection schemes?

  • A Security Test and Evaluation (ST&E)
  • B Penetration testing
  • C Automated vulnerability scanning tool
  • D On-site interviews
Explanation

Penetration testing emulates a threat source’s attempts to exploit weaknesses in an IT system, revealing whether protective controls can be circumvented or fail.

Community Discussion

No comments yet. Be the first to start the discussion!