medium
Single Answer
0

Denis is reviewing the approval process for a penetration test and wants to ensure that it has appropriate management review. Who should he ensure has approved the request for a penetration test for a business system?

Answer Options

A

The change advisory board

B

Senior management

C

The systems administrator for the system

D

The service owner

Correct Answer: B

Explanation

In most organizations, senior management needs to approve penetration tests because of the risk and potential impact on business operations. Change advisory boards approve changes, not tests, system administrators do not typically have authority to sign off, and service owners may be aware but are not the ultimate authority.