QuestionQ4

Security Testing Processes

Which ONE of the following options correctly identifies the security testing type needed to accomplish this objective?

Explanation

Authorization testing verifies that users can access only the functions permitted by their assigned roles. Confirming that a non-admin user cannot access an administrator-only user-editing endpoint tests enforcement of role-based authorization and prevents vertical privilege escalation.

Learn more

Community Discussion

No comments yet. Be the first to start the discussion!