[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"me":3,"catalog:en:security\u002Fpt-scoping-rules-of-engagement":4,"config":232},null,{"field_key":5,"field_name":6,"seniority":7,"topic_key":8,"topic_name":9,"spec_key":7,"spec_name":7,"locale":10,"cell_total":11,"field_total":12,"seniorities":13,"topics":17,"specs":130,"samples":147},"security","Security","","pt-scoping-rules-of-engagement","Pt Scoping Rules Of Engagement","en",75,2850,[14,15,16],"junior","mid","senior",[18,21,24,27,30,33,36,39,42,45,48,51,54,57,60,63,66,69,72,75,78,81,84,87,90,93,96,99,102,103,106,109,112,115,118,121,124,127],{"key":19,"name":20,"count":11},"as-access-control-idor","As Access Control Idor",{"key":22,"name":23,"count":11},"as-api-security","As Api Security",{"key":25,"name":26,"count":11},"as-authentication-session","As Authentication Session",{"key":28,"name":29,"count":11},"as-crypto-implementation-pitfalls","As Crypto Implementation Pitfalls",{"key":31,"name":32,"count":11},"as-injection-input-validation","As Injection Input Validation",{"key":34,"name":35,"count":11},"as-secure-sdlc-sast-dast","As Secure Sdlc Sast Dast",{"key":37,"name":38,"count":11},"bt-crisis-communication-management","Bt Crisis Communication Management",{"key":40,"name":41,"count":11},"bt-detection-engineering-tuning","Bt Detection Engineering Tuning",{"key":43,"name":44,"count":11},"bt-digital-forensics-fundamentals","Bt Digital Forensics Fundamentals",{"key":46,"name":47,"count":11},"bt-incident-triage-classification","Bt Incident Triage Classification",{"key":49,"name":50,"count":11},"bt-ir-playbook-execution","Bt Ir Playbook Execution",{"key":52,"name":53,"count":11},"bt-threat-intelligence-application","Bt Threat Intelligence Application",{"key":55,"name":56,"count":11},"cse-container-workload-security","Cse Container Workload Security",{"key":58,"name":59,"count":11},"cse-cspm-misconfiguration","Cse Cspm Misconfiguration",{"key":61,"name":62,"count":11},"cse-data-protection-governance","Cse Data Protection Governance",{"key":64,"name":65,"count":11},"cse-detection-incident-response","Cse Detection Incident Response",{"key":67,"name":68,"count":11},"cse-iam-privilege-escalation","Cse Iam Privilege Escalation",{"key":70,"name":71,"count":11},"cse-network-perimeter-zero-trust","Cse Network Perimeter Zero Trust",{"key":73,"name":74,"count":11},"ds-iac-policy-as-code","Ds Iac Policy As Code",{"key":76,"name":77,"count":11},"ds-pipeline-security-gates","Ds Pipeline Security Gates",{"key":79,"name":80,"count":11},"ds-secrets-pipeline-management","Ds Secrets Pipeline Management",{"key":82,"name":83,"count":11},"ds-security-metrics-blameless-culture","Ds Security Metrics Blameless Culture",{"key":85,"name":86,"count":11},"ds-shift-left-security-culture","Ds Shift Left Security Culture",{"key":88,"name":89,"count":11},"ds-software-supply-chain-pipeline","Ds Software Supply Chain Pipeline",{"key":91,"name":92,"count":11},"pt-legal-ethical-boundaries","Pt Legal Ethical Boundaries",{"key":94,"name":95,"count":11},"pt-methodology-phases","Pt Methodology Phases",{"key":97,"name":98,"count":11},"pt-red-team-engagement-management","Pt Red Team Engagement Management",{"key":100,"name":101,"count":11},"pt-reporting-remediation-prioritization","Pt Reporting Remediation Prioritization",{"key":8,"name":9,"count":11},{"key":104,"name":105,"count":11},"pt-vulnerability-assessment-vs-pentest","Pt Vulnerability Assessment Vs Pentest",{"key":107,"name":108,"count":11},"security-authn-authz","Security Authn Authz",{"key":110,"name":111,"count":11},"security-cloud-infra-security","Security Cloud Infra Security",{"key":113,"name":114,"count":11},"security-compliance-risk","Security Compliance Risk",{"key":116,"name":117,"count":11},"security-cryptography-basics","Security Cryptography Basics",{"key":119,"name":120,"count":11},"security-incident-response","Security Incident Response",{"key":122,"name":123,"count":11},"security-network-security","Security Network Security",{"key":125,"name":126,"count":11},"security-secure-sdlc","Security Secure Sdlc",{"key":128,"name":129,"count":11},"security-web-vulnerabilities","Security Web Vulnerabilities",[131,135,138,141,144],{"key":132,"name":133,"count":134},"appsec","AppSec",450,{"key":136,"name":137,"count":134},"blue-team-incident","Blue Team \u002F Incident",{"key":139,"name":140,"count":134},"cloud-security","Cloud Security",{"key":142,"name":143,"count":134},"devsecops","DevSecOps",{"key":145,"name":146,"count":134},"offensive-pentest","Offensive \u002F Pentest",[148,166,179,193,206,219],{"id":149,"topic":9,"difficulty":150,"body":151,"options":152,"correct_key":154,"explanation":165},"019fadba-ff8b-7248-9c0a-1715f9f03bdd",1,"What is the main purpose of a Rules of Engagement (RoE) document before a penetration test begins?",[153,156,159,162],{"key":154,"text":155},"a","To define, in writing, what is authorized, what is out of scope, and how the test will be conducted.",{"key":157,"text":158},"b","To list the invoice amount, payment schedule, and applicable late-payment penalties the client owes after the test finishes.",{"key":160,"text":161},"c","To describe the exploit code the testers plan to run against the target systems.",{"key":163,"text":164},"d","To replace the need for any written authorization from the client organization.","The RoE is the written agreement that spells out authorized scope, testing boundaries, timing, and communication rules — it is the foundation that makes the engagement legal and predictable, not a billing document or a technical exploit plan.",{"id":167,"topic":9,"difficulty":150,"body":168,"options":169,"correct_key":154,"explanation":178},"019fadba-ff8c-74d6-9c26-e1fc65a2714e","Why does a penetration tester need a signed authorization letter (sometimes called a 'get out of jail free' letter) before starting any testing activity?",[170,172,174,176],{"key":154,"text":171},"It provides documented proof that the client authorized the testing, protecting the tester from claims of unauthorized access.",{"key":157,"text":173},"It replaces the need to define which systems are in scope, since the letter alone covers everything.",{"key":160,"text":175},"It is only a formality with no legal weight and can safely be skipped if the client trusts the tester, even when the systems involved process regulated financial or health data.",{"key":163,"text":177},"It is required only when testing systems hosted outside the tester's home country.","Without documented, signed authorization from someone with the legal authority to grant it, activity that looks identical to an attack (scanning, exploitation attempts) could otherwise be treated as unauthorized computer access. The letter is evidence of consent, not a scope definition by itself.",{"id":180,"topic":9,"difficulty":181,"body":182,"options":183,"correct_key":160,"explanation":192},"019fadba-ff8d-7297-94b2-9e5f372d919d",2,"During a network penetration test, a tester notices a server that responds on the same subnet as the in-scope IP range, but its address is not listed in the signed scope document. What should the tester do?",[184,186,188,190],{"key":154,"text":185},"Quietly skip mentioning it in the final report, since it was never part of the agreed engagement.",{"key":157,"text":187},"Test it anyway, since being on the same subnet as authorized targets implies it is also authorized, because network proximity is treated as equivalent to explicit written permission.",{"key":160,"text":189},"Treat the server as out of scope and raise it with the client point of contact before touching it further.",{"key":163,"text":191},"Assume the client forgot to list it and add it to the report as if it had been formally authorized.","Only what is explicitly listed in the signed RoE is authorized. An unlisted host must not be tested; the correct action is to flag it to the client contact and get an explicit scope decision, not assume authorization or silently test or ignore it.",{"id":194,"topic":9,"difficulty":150,"body":195,"options":196,"correct_key":163,"explanation":205},"019fadba-ff95-7379-b4b0-85751dbd0377","In an RoE document, what does the 'testing window' typically specify?",[197,199,201,203],{"key":154,"text":198},"The specific tools and exploit frameworks the tester is required to use during the engagement.",{"key":157,"text":200},"The maximum number of vulnerabilities the tester is allowed to find and report.",{"key":160,"text":202},"The list of employees who are personally responsible for every system in scope.",{"key":163,"text":204},"The agreed dates and hours during which active testing activity is permitted to occur.","The testing window defines when testing may happen — specific dates, hours, or blackout periods to avoid — so activity outside that window is not authorized, regardless of whether the target itself is in scope.",{"id":207,"topic":9,"difficulty":181,"body":208,"options":209,"correct_key":157,"explanation":218},"019fadba-ff96-7a9a-b715-537dee3aa619","A client asks a pentest firm to test a web application, but the application is hosted on a third-party cloud provider's shared infrastructure. What must the RoE process confirm before testing begins?",[210,212,214,216],{"key":154,"text":211},"Nothing extra; the client's own authorization is always sufficient for any infrastructure they use.",{"key":157,"text":213},"That the cloud provider's own policies allow this kind of testing, and separate provider authorization is obtained if required.",{"key":160,"text":215},"That the cloud provider's marketing materials mention security as a feature of their platform.",{"key":163,"text":217},"That the tester has personally used that specific cloud provider's service before in an unrelated project, since prior familiarity with the platform is treated as equivalent to a legal authorization check.","Many cloud providers have their own testing policies (some require pre-notification or explicit permission for certain test types, like DoS-style load). The client authorizing the test does not automatically satisfy the infrastructure owner's separate requirements, so this must be checked and documented before testing.",{"id":220,"topic":9,"difficulty":181,"body":221,"options":222,"correct_key":160,"explanation":231},"019fadba-ff98-7bd2-8edc-8845ed576eb7","Why do RoE documents usually require an emergency contact and an agreed communication channel for both the client and the testing team?",[223,225,227,229],{"key":154,"text":224},"So that the client can cancel the entire contract without notice at any point during testing.",{"key":157,"text":226},"So that the testing team can advertise the engagement publicly once it starts, to build their portfolio, regardless of any confidentiality obligations the firm has toward the client.",{"key":160,"text":228},"So that if testing causes an unexpected outage or issue, both sides can quickly reach each other and coordinate a response.",{"key":163,"text":230},"So that the tester can bypass the RoE and test out-of-scope systems if the client is unreachable.","Testing can occasionally trigger unintended effects (a crash, a false alarm to the SOC, a service disruption). A clear emergency contact and communication path lets both sides react quickly — pause testing, confirm what happened, and coordinate — rather than leaving either side guessing.",{"fields":233,"seniorities":407,"interview_shapes":408,"locales":413,"oauth":415,"question_count":418,"coach_enabled":419,"jd_match_enabled":419},[234,259,279,296,320,333,352,371,381,388,394,401],{"key":235,"name_tr":236,"name_en":236,"sort":150,"specializations":237},"backend","Backend",[238,241,244,247,250,253,256],{"key":239,"name":240,"field":235},"general","Genel",{"key":242,"name":243,"field":235},"go","Go",{"key":245,"name":246,"field":235},"python","Python",{"key":248,"name":249,"field":235},"java","Java",{"key":251,"name":252,"field":235},"csharp","C#\u002F.NET",{"key":254,"name":255,"field":235},"nodejs","Node.js",{"key":257,"name":258,"field":235},"php","PHP",{"key":260,"name_tr":261,"name_en":261,"sort":181,"specializations":262},"frontend","Frontend",[263,264,267,270,273,276],{"key":239,"name":240,"field":260},{"key":265,"name":266,"field":260},"javascript","JavaScript",{"key":268,"name":269,"field":260},"typescript","TypeScript",{"key":271,"name":272,"field":260},"react","React",{"key":274,"name":275,"field":260},"vue","Vue",{"key":277,"name":278,"field":260},"angular","Angular",{"key":280,"name_tr":281,"name_en":281,"sort":282,"specializations":283},"fullstack","Fullstack",3,[284,285,286,287,288,289,290,291,292,293,294,295],{"key":239,"name":240,"field":280},{"key":242,"name":243,"field":235},{"key":245,"name":246,"field":235},{"key":248,"name":249,"field":235},{"key":251,"name":252,"field":235},{"key":254,"name":255,"field":235},{"key":257,"name":258,"field":235},{"key":265,"name":266,"field":260},{"key":268,"name":269,"field":260},{"key":271,"name":272,"field":260},{"key":274,"name":275,"field":260},{"key":277,"name":278,"field":260},{"key":297,"name_tr":298,"name_en":298,"sort":299,"specializations":300},"devops-cloud","DevOps \u002F Cloud",4,[301,302,305,308,311,314,317],{"key":239,"name":240,"field":297},{"key":303,"name":304,"field":297},"aws","AWS",{"key":306,"name":307,"field":297},"gcp","GCP",{"key":309,"name":310,"field":297},"azure","Azure",{"key":312,"name":313,"field":297},"kubernetes","Kubernetes",{"key":315,"name":316,"field":297},"terraform","Terraform",{"key":318,"name":319,"field":297},"linux","Linux",{"key":321,"name_tr":322,"name_en":322,"sort":323,"specializations":324},"ai-engineer","AI Engineer",5,[325,326,327,330],{"key":239,"name":240,"field":321},{"key":245,"name":246,"field":321},{"key":328,"name":329,"field":321},"llm-rag","LLM\u002FRAG",{"key":331,"name":332,"field":321},"mlops","MLOps",{"key":334,"name_tr":335,"name_en":336,"sort":337,"specializations":338},"database","Veritabanı","Database",6,[339,340,343,346,349],{"key":239,"name":240,"field":334},{"key":341,"name":342,"field":334},"postgresql","PostgreSQL",{"key":344,"name":345,"field":334},"mysql","MySQL",{"key":347,"name":348,"field":334},"mongodb","MongoDB",{"key":350,"name":351,"field":334},"redis","Redis",{"key":353,"name_tr":354,"name_en":355,"sort":356,"specializations":357},"mobile","Mobil","Mobile",7,[358,359,362,365,368],{"key":239,"name":240,"field":353},{"key":360,"name":361,"field":353},"ios-swift","iOS (Swift)",{"key":363,"name":364,"field":353},"android-kotlin","Android (Kotlin)",{"key":366,"name":367,"field":353},"flutter","Flutter",{"key":369,"name":370,"field":353},"react-native","React Native",{"key":5,"name_tr":372,"name_en":6,"sort":373,"specializations":374},"Güvenlik",8,[375,376,377,378,379,380],{"key":239,"name":240,"field":5},{"key":132,"name":133,"field":5},{"key":145,"name":146,"field":5},{"key":139,"name":140,"field":5},{"key":142,"name":143,"field":5},{"key":136,"name":137,"field":5},{"key":382,"name_tr":383,"name_en":384,"sort":385,"specializations":386},"qa-test-automation","QA \u002F Test Otomasyonu","QA \u002F Test Automation",9,[387],{"key":239,"name":240,"field":382},{"key":389,"name_tr":390,"name_en":390,"sort":391,"specializations":392},"data-engineer","Data Engineer",10,[393],{"key":239,"name":240,"field":389},{"key":395,"name_tr":396,"name_en":397,"sort":398,"specializations":399},"game-dev","Oyun Geliştirme","Game Development",11,[400],{"key":239,"name":240,"field":395},{"key":402,"name_tr":403,"name_en":403,"sort":404,"specializations":405},"ml-engineer","ML Engineer",12,[406],{"key":239,"name":240,"field":402},[14,15,16],{"junior":409,"mid":411,"senior":412},{"questions":410,"median_sec":3},20,{"questions":410,"median_sec":3},{"questions":410,"median_sec":3},[414,10],"tr",[416,417],"google","github",21750,true]