New Year Sale 2026! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

ISC2 CISSP Exam - Topic 1 Question 72 Discussion

Actual exam question for ISC2's CISSP exam
Question #: 72
Topic #: 1
[All CISSP Questions]

Which of the following is the FIRST step of a penetration test plan?

Show Suggested Answer Hide Answer
Suggested Answer: D

Contribute your Thoughts:

0/2000 characters
Judy
3 months ago
Wait, is notifying customers really an option? That seems odd.
upvoted 0 times
...
Andra
3 months ago
C makes the most sense, but I’m surprised it’s not more obvious.
upvoted 0 times
...
Yoko
4 months ago
No way, it's A! You can't analyze without a diagram.
upvoted 0 times
...
Matthew
4 months ago
I thought it was D, timing is crucial too.
upvoted 0 times
...
Barney
4 months ago
It's definitely C, you need management approval first!
upvoted 0 times
...
Noble
4 months ago
Scheduling the test seems important, but I think it comes after getting approval. I’d go with option C for the first step.
upvoted 0 times
...
Gabriele
4 months ago
I practiced a similar question, and I feel like notifying customers is not the first step. It seems more like a later consideration.
upvoted 0 times
...
Celia
5 months ago
I'm not so sure about that. I remember something about analyzing the network diagram first, but maybe that comes later?
upvoted 0 times
...
Rashida
5 months ago
I think the first step is definitely getting management approval. Without that, the whole test could be a problem, right?
upvoted 0 times
...
Louisa
5 months ago
Okay, I've got this. The original subscription was $600 per unit for 10 units over 24 months. After 10 months, they want to issue a prorated refund and quote a new, more expensive subscription. The question is asking for the expected net total of the amended subscription. I'll need to do some calculations, but I think I can figure this out.
upvoted 0 times
...
Roy
5 months ago
I've used the Demisto War Room CLI before, and I'm pretty sure the correct answer is B, /invite Bob. That's the standard command for inviting a user to join an investigation.
upvoted 0 times
...
Adolph
5 months ago
Okay, I've got this. The change log is the input that's used to document changes during the Manage Stakeholder Engagement process. Remembering the different inputs and outputs is key for these types of questions.
upvoted 0 times
...
Avery
10 months ago
Hold up, is this a trick question? The FIRST step is always making sure you have the right snacks for the long haul.
upvoted 0 times
Ligia
9 months ago
C) Obtaining the approval of the company's management
upvoted 0 times
...
Lyla
9 months ago
B) Notifying the company's customers
upvoted 0 times
...
Caprice
9 months ago
A) Analyzing a network diagram of the target network
upvoted 0 times
...
...
Brock
10 months ago
Scheduling during low impact? Nah, real pentesters do it during the busiest time. More drama that way!
upvoted 0 times
Patria
9 months ago
D) Scheduling the penetration test during a period of least impact
upvoted 0 times
...
Rasheeda
10 months ago
C) Obtaining the approval of the company's management
upvoted 0 times
...
Desiree
10 months ago
A) Analyzing a network diagram of the target network
upvoted 0 times
...
...
Heike
10 months ago
Notifying customers? That's just asking for trouble. Better keep this one under wraps until I'm done.
upvoted 0 times
Justine
8 months ago
D) Scheduling the penetration test during a period of least impact
upvoted 0 times
...
Alpha
8 months ago
C) Obtaining the approval of the company's management
upvoted 0 times
...
Florencia
8 months ago
A) Analyzing a network diagram of the target network
upvoted 0 times
...
Blair
9 months ago
D) Scheduling the penetration test during a period of least impact
upvoted 0 times
...
Filiberto
9 months ago
C) Obtaining the approval of the company's management
upvoted 0 times
...
Truman
10 months ago
C) Obtaining the approval of the company's management
upvoted 0 times
...
Page
10 months ago
A) Analyzing a network diagram of the target network
upvoted 0 times
...
Alyssa
10 months ago
A) Analyzing a network diagram of the target network
upvoted 0 times
...
...
Karan
10 months ago
D) Scheduling the penetration test during a period of least impact
upvoted 0 times
...
Chi
10 months ago
Analyzing the network diagram? That's way too advanced for the first step. You gotta get the basics covered first.
upvoted 0 times
...
Mireya
10 months ago
A) Analyzing a network diagram of the target network
upvoted 0 times
...
Kimberlie
10 months ago
C) Obtaining the approval of the company's management
upvoted 0 times
...
Larae
11 months ago
But without management approval, we can't proceed with the test. It's crucial to have their support.
upvoted 0 times
...
Elinore
11 months ago
Hmm, I think the first step is definitely obtaining management approval. Can't start hacking without the green light!
upvoted 0 times
Refugia
10 months ago
D) Scheduling the penetration test during a period of least impact
upvoted 0 times
...
Filiberto
10 months ago
C) Obtaining the approval of the company's management
upvoted 0 times
...
Erinn
10 months ago
A) Analyzing a network diagram of the target network
upvoted 0 times
...
...
Jaime
11 months ago
I disagree, I believe the first step is analyzing a network diagram of the target network.
upvoted 0 times
...
Larae
11 months ago
I think the first step is obtaining the approval of the company's management.
upvoted 0 times
...

Save Cancel