Chapter 2Planning and Scoping Penetration Tests

THIS CHAPTER COVERS THE FOLLOWING PENTEST+ EXAM TOPICS:

Domain 1: Planning and Scoping

  • images 1.1 Explain the importance of planning for an engagement.
    • Understanding the target audience
    • Rules of engagement
    • Communication escalation path
    • Resources and requirements
      • Confidentiality of findings
      • Known vs. unknown
    • Budget
    • Impact analysis and remediation timelines
    • Disclaimers
      • Point-in-time assessment
      • Comprehensiveness
    • Technical constraints
    • Support resources
      • WSDL/WADL
      • SOAP project file
      • SDK documentation
      • Swagger document
      • XSD
      • Sample application requests
      • Architectural diagram
  •  1.2 Explain key legal concepts. ...

Get CompTIA PenTest+ Study Guide now with O’Reilly online learning.

O’Reilly members experience live online training, plus books, videos, and digital content from 200+ publishers.