Free CompTIA Security+ SY0-701 Practice Question

During an authorized security assessment, the security team at XYZ Corp is tasked with identifying potential vulnerabilities without alerting the target systems. Which of the following options best describes an method that the security team should employ to gather intelligence without raising suspicion?

  • Executing a full network scan to map out live hosts

  • Engaging in social engineering calls to the employees

  • Running an automated crawler on the company's public website

  • Performing passive DNS analysis

This question's topic:
CompTIA Security+ SY0-701 / 
Security Program Management and Oversight
Your Score:

Check or uncheck an objective to set which questions you will receive.