OSSTMM covers which topics?

Study for the SANS560 GIAC Penetration Tester (GPEN) Test. Study with flashcards and multiple choice questions, each question has hints and explanations. Get ready for your exam!

Multiple Choice

OSSTMM covers which topics?

Explanation:
OSSTMM is a security testing framework designed to be repeatable and quantitative, covering how a test is scoped, what metrics are collected, and different domains of testing, including human factors and data networks. This breadth—defining the test boundaries, measuring results with consistent metrics, testing how people contribute to security (human security testing), and evaluating data networks—best matches what OSSTMM covers. The other options focus narrowly on a single area (web apps), a specific technique (password cracking), or a procedural domain (incident response), none of which reflect the full OSSTMM scope.

OSSTMM is a security testing framework designed to be repeatable and quantitative, covering how a test is scoped, what metrics are collected, and different domains of testing, including human factors and data networks. This breadth—defining the test boundaries, measuring results with consistent metrics, testing how people contribute to security (human security testing), and evaluating data networks—best matches what OSSTMM covers. The other options focus narrowly on a single area (web apps), a specific technique (password cracking), or a procedural domain (incident response), none of which reflect the full OSSTMM scope.

Subscribe

Get the latest from Passetra

You can unsubscribe at any time. Read our privacy policy