44.8k views
4 votes
Which of the following tasks may be part of the security assessment and testing domain? Select all that apply.

a. Penetration testing
b. Vulnerability scanning
c. Risk assessment
d. Database administration

User Ahll
by
7.2k points

1 Answer

4 votes

Final answer:

The security assessment and testing domain typically includes penetration testing, vulnerability scanning, and risk assessment. These tasks are aimed at identifying and mitigating security vulnerabilities. Database administration, however, is typically not part of this domain.

Step-by-step explanation:

The security assessment and testing domain encompasses a range of practices designed to evaluate and fortify the security of an information system. Within this domain, several tasks are commonly performed:

  • Penetration testing: This task involves simulating a cyber-attack against a computer system to check for exploitable vulnerabilities.
  • Vulnerability scanning: This refers to the automated process of identifying security weaknesses in a computer system or network.
  • Risk assessment: This is the process of identifying, analyzing, and evaluating risks associated with the security and operation of information systems.

While the above tasks are part of the security assessment and testing domain, database administration is generally not. Database administration is more focused on managing and maintaining database systems rather than directly assessing and testing security vulnerabilities.

User Mcarifio
by
7.1k points