2023 IT Examiner School
Internal Use Only
Vulnerability Assessment & Penetration Testing
Vulnerability assessment is a process that defines, identifies & classifies the security holes (vulnerabilities) in a computer, network, or communications infrastructure Vulnerability Scans Tabletop Assessments A penetration test subjects a system to the real-world attacks selected & conducted by the testing personnel
Internal Use Only
Why They Are Important: Penetration tests can give security personnel real experience in dealing with an intrusion
Ideally, should be performed without informing staff, to test whether policies are truly effective. However, may not be practical The test can uncover aspects of network security, application & operational policies that are lacking
Made with FlippingBook - Share PDF online