66.6k views
4 votes
Employees should always be notified in advance that a penetration test is going to be performed. T/F

User Roshnal
by
4.1k points

1 Answer

4 votes

Answer:

The statement is: False.

Step-by-step explanation:

A penetration test consists of a series of test attacks against defense mechanisms existing in an environment that is being analyzed. These tests include the analysis of physical and digital devices to human factors using Social Engineering for that purpose.

Thus, these tests must be carried out without prior notice to employees so the evaluators can simulate what is the real defense and reaction the organization has in front of a threat.

User Dabloons
by
4.4k points