From the course: Introduction to Pen Testing for Cybersecurity Professionals

Unlock the full course today

Join today to access over 24,700 courses taught by industry experts.

Contracting the pen test

Contracting the pen test

- [Presenter] A pen testing exercise tests the security of an organization and then produces a report that provides a comprehensive set of recommendations to secure your system. The idea sounds simple. However, the entire exercise can be complex. A company might choose to outsource the pen test instead of using in-house staff for several reasons. One reason is that they might not feel comfortable with the rigors of a full-blown pen test and possibly face weeks of downtime from the IT department as they're completing the tests. In some cases, when there is no regulation requiring the company to do the pen test, it might generate some controversy as everyone may not agree or understand, or support the costs that are involved. The good news is that an outside team can provide several benefits. Outsourcing can reinforce that the IT staff have done due diligence in protecting the infrastructure. In addition, using an…

Contents