Wednesday, 4 January 2017

How to get prepared for the Preparation Testing


Reference: Ethical Hacking and Penetration with Kali Linux



Once you want to start a penetration project, there are number of things that you need to consider. Remember, without following the proper steps, getting approvals and finalizing an agreement with customer; using these techniques is illegal and against the law.



Important things to consider before you start:
  • Get signed approval for all tests from the customer
  • You need to sign confidentiality agreement (NDA)
  • Get approval of collateral parties (ISPs)
  • Put together team and tools and get ready for the tests
  • Define goals (DoS, Penetration, etc.)
  • Set the ground rules (rules of engagement with the customer and team)
  • Set the schedule (non-work hours, weekends?)
  • Notify appropriate parties (Sys admin, Security department, Legal department, law enforcement)



No comments:

Post a Comment