- 5.3 2024/2025 Exam Questions and
Answers | A+ Score Assured
3rd party risk - 🧠ANSWER ✔✔3rd party business partners share important
data
- perform risk assessment
use contracts for clear understanding
penetration testing - 🧠ANSWER ✔✔simulate an attack
often compliance mandate
3rd parties specialize in pen testing
rules of engagement - 🧠ANSWER ✔✔defines purpose and scope of pen
test
COPYRIGHT©PROFFKERRYMARTIN 2025/2026. YEAR PUBLISHED 2025. COMPANY REGISTRATION NUMBER: 619652435. TERMS OF USE. PRIVACY STATEMENT.
ALL RIGHTS RESERVED
1
, rules of test
- ip address ranges
- in/out of scope apps and devices
etc
time, internal/external, etc
right to audit clauses - 🧠ANSWER ✔✔legal agreement to have the option
to perform security audits at any time
- in contracts with 3rd parties
- verify security
evidence of security audits - 🧠ANSWER ✔✔security controls and
processes check
- access management, off boarding, VPN controls, etc
audits usually done by 3rd party
COPYRIGHT©PROFFKERRYMARTIN 2025/2026. YEAR PUBLISHED 2025. COMPANY REGISTRATION NUMBER: 619652435. TERMS OF USE. PRIVACY STATEMENT.
ALL RIGHTS RESERVED
2