CompTIA PenTest+ Practice Questions: Planning and Scoping

5 free, exam-style CompTIA PenTest+ (PT0-003) practice questions covering Planning and Scoping. Each question shows the correct answer and a clear explanation. Ready for the real thing? Take the full timed quiz below.

🚀 Take the full CompTIA PenTest+ quiz 📘 CompTIA PenTest+ study guide

Q1. Before testing a client network, what document should define targets, timing, and permitted techniques?

Explanation: Rules of engagement define authorization, scope, methods, timing, contacts, and constraints for a penetration test. Learn more.

Q2. Why should a tester avoid destructive payloads unless explicitly authorized?

Explanation: Penetration testing must follow authorization and avoid unnecessary business disruption. Learn more.

Q3. Which scan should be coordinated carefully because it may crash fragile services?

Explanation: Aggressive scanning can disrupt legacy or fragile services and should be approved and scheduled. Learn more.

Q4. Which evidence should a tester avoid collecting unless it is required and authorized?

Explanation: Collecting unnecessary sensitive data increases legal and operational risk and may violate scope. Learn more.

Q5. Which activity should occur immediately when a tester discovers a critical out-of-scope exposure?

Explanation: Out-of-scope critical issues should be handled through the agreed escalation process. Learn more.

More CompTIA PenTest+ practice topics