|
One of the key steps to measure Operational Risk is the need to identify and understand network vulnerabilities. The end result is the same, although the motives may be different and typically embrace one or more of the following five objectives
- Policy mandate to undertake periodic testing.
- Acceptance of a new system in regards to its security stance.
- Validate that a previously discovered exploit has been adequately closed.
- Ad hoc sanity check of security precautions.
- Compliance & Audit directives.
Pen testing is ideal tool to improve an organisation's security posture.
Types of testsInfrastructure (Public, Private, WAN's, LAN's, Mobile phone and VoIP)
Application (Native web apps as well as legacy hybrid systems).
Network (Desktop, Server, Profiles and Data)
RAS & VPN (lost laptop, VPN, War dialling and Wifi).
Social engineering (Access procedures, staff awareness and operational behaviour)
If you need to learn to how to conduct the tests, as opposed to subcontract the testing then please consider an ethical hacking course.
If you require more information such as estimated costs, time scales, reference material, or availability then please use the enquiry form or contact our customer services team. |