Penetration Tester
Scoping · Recon · Attacks · Reporting · Tools · 120 scenario questions
⚠️ Exam Rules
| Questions in this Techclick bank | 120 |
|---|---|
| Timer | 180 min |
| Techclick practice target | 70% |
| Official exam code | PT0-003 |
A client signs your firm to test their environment but the kickoff email never references written authorization. Before scanning begins, which document most directly protects the tester from prosecution under computer-misuse law?
Correct: A. The authorization letter (the 'get-out-of-jail' letter) grants explicit permission and is the legal basis for testing, because without it any access is unauthorized. A proposal, schedule, or tool list does not grant legal authority and so none of those protect the tester.
A scoping call defines an engagement where the tester receives only the company name and a public IP range, with no credentials, network diagrams, or source code. This engagement model is best described as:
Correct: A. Black-box means no prior knowledge, mirroring an outside attacker, because only public information is supplied. White-box would include source and diagrams, gray-box would include partial access such as a user account, and a documentation-only audit is not active penetration testing.
Mid-engagement you find a critical, exploitable flaw on a host that is clearly outside the agreed CIDR range listed in the rules of engagement. What is the most appropriate next action?
Correct: A. Testers must stay within scope; the correct path is to report the discovery and let the client authorize expansion in writing, because exploiting an out-of-scope system is unauthorized. Exploiting anyway is illegal, and ignoring or hiding the finding violates professional and contractual duties.
A retailer processing card data asks how often PCI DSS obligates them to run penetration tests on the cardholder data environment. The accurate answer aligned to PCI DSS requirement 11.4 is:
Correct: A. PCI DSS 11.4 mandates internal and external penetration testing at least annually and after significant changes, because controls can drift as the environment evolves. A one-time test, daily testing, or ad-hoc-only testing all fail to meet the stated cadence.
While drafting rules of engagement for an upcoming assessment, the team wants to capture the items that constrain how and when testing happens. Which elements belong in the rules of engagement? (Choose THREE)
Correct: A and B and C. Testing windows, escalation contacts, and scope boundaries are core rules-of-engagement content because they govern when, how, and where testing may occur. A tester résumé belongs to qualifications paperwork, not the RoE, and competitor pricing is irrelevant to engagement constraints.
Last updated:
Yes. You can start, finish and score it for free, and download the Techclick practice certificate.
This bank has 120 original scenario-based questions with a 180-minute timer and a 70% Techclick practice target.
The official exam code is PT0-003 (CompTIA).
No. They are original practice questions written by Techclick. This is not the vendor's official exam and not leaked dumps.
Score 70% or higher to get a Techclick practice certificate and LinkedIn badge. It is not an official CompTIA certification.
Related practice tests: CompTIA A+ 220-1101 / 220-1102, CompTIA CAS-005, CompTIA CLO-002, CompTIA CV0-004, CySA+ CS0-003, CompTIA A+ DA0-001 (linked below).

You earned it — let the world know!
