CISSP › Security Assessment and Testing
This domain covers how organizations design and run security assessments to find weaknesses before attackers do. You must distinguish vulnerability assessment from penetration testing, static from dynamic analysis, and understand audit logging, continuous monitoring, and control testing. Questions present scenarios and ask which technique, tool category, or assessment type fits the stated goal.
CISSP Security Assessment and Testing — All 58 Questions
Every question in this domain with answers and detailed explanations.