CompTIA PenTest+ PT0-002 Practice Question

During a recent penetration testing engagement for a financial firm, you discovered that an employee's credentials were used to access sensitive client data during a time when the employee was on a mandatory vacation. This finding should prompt which of the following recommendations in your final report?

  • Recommend reinforcing the use of mandatory vacations as an operational control, along with auditing account activity during such periods to uncover potential unauthorized access or internal threats.

  • Suggest implementing job rotation so that no single employee has exclusive access to sensitive client data for an extended period.

  • Advise additional system hardening techniques to ensure that the employee’s credentials cannot be misused during their mandatory vacation period.

  • Propose enhanced user training focused on security best practices to prevent employees from sharing their credentials.

CompTIA PenTest+ PT0-002
Reporting and Communication
Your Score:
Settings & Objectives
Random Mixed
Questions are selected randomly from all chosen topics, with a preference for those you haven’t seen before. You may see several questions from the same objective or domain in a row.
Rotate by Objective
Questions cycle through each objective or domain in turn, helping you avoid long streaks of questions from the same area. You may see some repeat questions, but the distribution will be more balanced across topics.

Check or uncheck an objective to set which questions you will receive.

Bash, the Crucial Exams Chat Bot
AI Bot