What is the purpose of a 'methodology' section in a security assessment report?
-
A
To describe the client's organizational chart
-
B
To explain the testing approach, frameworks, and tools used so findings can be reproduced and validated
-
C
To list the consultant's hourly billing rates
-
D
To provide a glossary of cybersecurity acronyms