A company hires a cybersecurity professional to perform penetration tests to assess government regulation compliance. Which legal document should be provided to the cybersecurity professional that specifies the expectations and constraints, including quality of work, timelines, and cost?
IT Exam Items Repository › Category: Ethical Hacker › A company hires a cybersecurity professional to perform penetration tests to assess government regulation compliance. Which legal document should be provided to the cybersecurity professional that specifies the expectations and constraints, including quality of work, timelines, and cost?
A company hires a cybersecurity professional to perform penetration tests to assess government regulation compliance. Which legal document should be provided to the cybersecurity professional that specifies the expectations and constraints, including quality of work, timelines, and cost?
- statement of work (SOW)
- service-level agreement (SLA)
- non-disclosure agreement (NDA)
- master service agreement (MSA)
Explanation: A service-level agreement (SLA) is a well-documented expectation or constraint related to one or more of the penetration testing service's minimum and maximum performance measures (such as quality, timeline, and cost).
Related exam: 2.4.3 Quiz - Planning and Scoping a Penetration Testing Assessment Answers
About The Author
The ITExamAnswers Editorial Team is a dedicated group of certified IT professionals and network engineers. We rigorously review, verify, and update all exam materials to ensure you receive the most accurate and reliable resources for your certification journey.