When using a third party to perform penetration testing, which of the following is the MOST important control to minimize operational impact?

Posted by: Pdfprep Category: CRISC Tags: , ,

When using a third party to perform penetration testing, which of the following is the MOST important control to minimize operational impact?
A . Require the vendor to have liability insurance.
B . Perform a background check on the vendor.
C . Require the vendor to sign a nondisclosure agreement.
D . Clearly define the project scope.

Answer: D

Leave a Reply

Your email address will not be published.