PT0-002 Engagement Management Practice Question
In a red team exercise, the team wants to simulate a realistic adversary. Which TWO of the following are typically included in the scope of a red team engagement compared to a standard penetration test?
Answer choices
Why each option matters
Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.
Correct answer & explanation
✓
Physical security testing (e.g., tailgating, lock picking)
Red team exercises often include physical and social engineering attacks, and may attempt to remain undetected for longer periods.
Answer analysis
Option-by-option breakdown
For each option: why learners choose it and why it is or isn't the right answer here.
- ✗
Extensive vulnerability scanning of all in-scope systems
Why it's wrong here
Extensive vulnerability scanning of all in-scope systems is a hallmark of vulnerability assessments or standard penetration tests, not a red team exercise. Red team operations are objective-driven and adversary-emulating, so they focus on gaining access to specific high-value targets while operating stealthily. Running broad, noisy scans across all systems would likely trip detection controls and violate the red team's fundamental premise of evading the blue team, making this approach counterproductive.
- ✗
Comprehensive compliance verification against standards
Why it's wrong here
Comprehensive compliance verification against standards such as PCI-DSS, HIPAA, or ISO 27001 is an audit or certification activity, not a red team objective. Red team exercises assess the effectiveness of security controls, people, and processes against realistic attack scenarios, not whether specific regulatory checkboxes are ticked. While a red team might incidentally discover non-compliance, its purpose is to demonstrate exploitable attack paths and business impact rather than to certify adherence to a standard.
- ✓
Physical security testing (e.g., tailgating, lock picking)
Why this is correct
Physical security testing is a legitimate and often essential component of a red team engagement because real-world adversaries frequently exploit physical access as an initial foothold or alternate path into network resources. Techniques like tailgating into a secured office, picking locks to access server rooms, or cloning employee badges allow the red team to simulate a full-scope attacker who does not simply rely on remote network access. By physically penetrating a facility, the team can demonstrate how seemingly separate physical and logical security controls can be chained into a critical business impact.
- ✗
Detailed reporting of all vulnerabilities found
Why it's wrong here
Detailed reporting of all vulnerabilities found is typical of a vulnerability assessment, where the deliverable is an exhaustive inventory of weaknesses. In contrast, a red team report tells the story of the attack chain, highlighting the specific vulnerabilities exploited, the tactics used, the business impact of the objective, and the overall security posture as measured by the blue team's detection and response. Red teams deliberately avoid drowning stakeholders in a list of every minor issue, instead focusing on the adversarial paths that matter most to the organization's risk profile.
- ✓
Social engineering attacks against employees
Why this is correct
Social engineering attacks against employees, such as phishing, vishing, pretexting, and smishing, are a core technique in red teaming because the human element is often the most accessible attack surface. These attacks simulate realistic adversary behavior to test user awareness, security policies, and the effectiveness of technical controls like email filters and multi-factor authentication. A successful social engineering campaign can provide the red team with initial credentials or remote access, making it a direct and realistic method for validating an organization's resilience to manipulation.
Go deeper
Related to this question
Learn chapter
Writing Penetration Test Reports
Key term
Scope
In IT, scope defines the boundaries, goals, and deliverables of a project, assessment, or engagement, specifying what is included and what is excluded.
Key term
Red team
A red team is a group of security professionals who simulate real-world attacks on an organization's systems, people, and facilities to test the effectiveness of its defenses.
About these practice questions
One of 777 original PT0-003 practice questions on Courseiva, each with a full explanation and wrong-answer analysis — not exam dumps or protected exam content. Learn why practice questions differ from exam dumps →
JA
Written by Johnson Ajibi, MSc IT Security
Senior Network & Security Engineer · founder of Courseiva
This PT0-003 practice question is part of Courseiva's free CompTIA certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the PT0-003 exam.