Here are all the actual test exam dumps for IT exams. Most people prepare for the actual exams with our test dumps to pass their exams. So it's critical to choose and actual test pdf to succeed.

Exam PT0-003 Topic 3 Question 363 Discussion

Actual exam question for CompTIA's PT0-003 exam
Question #: 363
Topic #: 3
Which of the following explains the reason a tester would opt to use DREAD over PTES during the planning phase of a penetration test?

Suggested Answer: D Vote an answer

DREAD (Damage, Reproducibility, Exploitability, Affected Users, Discoverability) is a threat modeling framework used to assess and prioritize risks.
* Option A (Web application test) #: While DREAD can be used in web security, PTES (Penetration Testing Execution Standard) is a better framework for conducting pentests.
* Option B (Mobile application test) #: PTES provides guidelines for mobile security testing, whereas DREAD is for threat modeling.
* Option C (Thick client application) #: Thick clients require specific testing methodologies, not DREAD.
* Option D (Creating a threat model) #: Correct.
* DREAD is designed for risk assessment and prioritization.
* PTES focuses on penetration testing execution, not threat modeling.
# Reference: CompTIA PenTest+ PT0-003 Official Guide - Threat Modeling with DREAD vs. PTES

by Jay at Sep 27, 2026, 11:50 PM

Comments

Chosen Answer:
This is a voting comment (?) , you can switch to a simple comment.
Switch to a voting comment New
Nick name: Submit Cancel
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.