mediummultiple choiceObjective-mapped

A client is planning a penetration test of their internal network but refuses to provide network diagrams or access to a staging environment. The tester is concerned about causing a denial of service (DoS) on critical systems. Which clause should be included in the rules of engagement to mitigate this risk?

Question 1mediummultiple choice
Full question →

A client is planning a penetration test of their internal network but refuses to provide network diagrams or access to a staging environment. The tester is concerned about causing a denial of service (DoS) on critical systems. Which clause should be included in the rules of engagement to mitigate this risk?

Answer choices

Why each option matters

Good practice is not just finding the correct option. The wrong answers often show the exact trap the exam wants you to fall into.

A

Distractor review

A clause requiring the client to provide a complete list of in-scope IP addresses.

While a list helps, the client refuses to provide network details, making this clause infeasible. Even with a list, rate limiting is still needed to avoid DoS.

B

Distractor review

A waiver stating that any service disruption is the client's responsibility.

A waiver does not prevent DoS; it only transfers liability. The goal is to reduce the risk of disruption, not just manage legal fallout.

C

Best answer

A rate-limiting clause that restricts scan speed and concurrent connections.

Rate limiting is a proactive measure that reduces the chance of overwhelming network devices or services, even when the tester lacks full network visibility.

D

Distractor review

An exclusion list for systems that should not be tested.

Without knowing which systems are critical, the tester cannot create an effective exclusion list. Rate limiting is more comprehensive.

Common exam trap

Common exam trap: answer the scenario, not the keyword

Many certification questions include familiar terms but test a specific constraint. Read the exact wording before choosing an answer that is generally true but wrong for this case.

Technical deep dive

How to think about this question

This question should be treated as a scenario, not a definition check. Identify the problem, the constraint and the best action. Then compare each option against those facts.

KKey Concepts to Remember

  • Read the scenario before looking for a memorised answer.
  • Find the constraint that changes the correct option.
  • Eliminate answers that are true in general but not in this case.
  • Use explanations to understand the rule behind the answer.

TExam Day Tips

  • Underline the problem statement mentally.
  • Watch for words such as best, first, most likely and least administrative effort.
  • Review why wrong options are wrong, not only why the correct option is correct.

Related practice questions

Related PT0-002 practice-question pages

Use these pages to review the topic behind this question. This is how one missed question becomes focused revision.

More questions from this exam

Keep practising from the same exam bank, or move into a focused topic page if this question exposed a weak area.

FAQ

Questions learners often ask

What does this PT0-002 question test?

Read the scenario before looking for a memorised answer.

What is the correct answer to this question?

The correct answer is: A rate-limiting clause that restricts scan speed and concurrent connections. — Without prior knowledge of the network, the tester should implement rate-limiting to control the speed of scans and exploits. This prevents overwhelming any system. A list of IP addresses or exclusion lists are helpful but not sufficient if the tester does not know which systems are critical. A waiver for service disruption is not a mitigation; it simply shifts responsibility.

What should I do if I get this PT0-002 question wrong?

Then try more questions from the same exam bank and focus on understanding why the wrong options are tempting.

Discussion

Loading comments…

Sign in to join the discussion.