How to get a penetration test (pentest)

How to get a penetration test (pentest)

Update: 2024-10-15
Share

Description

Summary:

In this episode, Dave Chronister, founder of Parameter Security and ShowMeCon, shares valuable insights into the world of penetration testing (pentesting). Listeners will learn about the differences between vulnerability assessments and penetration tests, what red teaming is, and why organizations should lean towards white-box pentests. Dave and Tim discuss how to avoid common pitfalls when engaging with pentest companies, the importance of rules of engagement, and how to ensure you're getting a high-quality test. Dave also shares stories from his 17+ years in the field, illustrating the critical lessons organizations need to understand.

Key Topics Covered:

  • Difference between vulnerability assessments and penetration tests.

  • Red teaming vs. penetration testing: When and why to use each.

  • How to choose the right pentest company.

  • The importance of setting clear rules of engagement.

  • Real-world examples of pentesting gone wrong.

Resources Mentioned:

Contact Information:

Leave a comment below or reach out via the contact form on the site, email timothy.deblock[@]exploresec[.]com, or reach out on LinkedIn.

Check out our services page and reach out if you see any services that fit your needs.

Social Media Links:

[RSS Feed] [iTunes] [LinkedIn]






























































<form method="POST" novalidate data-form-id="66f36fca603e852c138d082b" autocomplete="on" onsubmit="return (function (form) {
Y.use('squarespace-form-submit', 'node', function usingFormSubmit(Y) {
(new Y.Squarespace.FormSubmit(form)).submit({
formId: '66f36fca603e852c138d082b',
collectionId: '55c01592e4b0b281efaaeac9',
objectName: 'item-66f36fca603e852c138d082d'
});
});
return false;
})(this);" class="newsletter-form">

Subscribe


Sign up with your email address to receive news and updates.









<label for="email-yui_3_17_2_1_1704234756218_68248-field" class="newsletter-form-field-label title">Email Address</label>
<input autocomplete="email" spellcheck="false" name="email" id="email-yui_3_17_2_1_1704234756218_68248-field" placeholder="Email Address" type="email" class="newsletter-form-field-element field-element" x-autocompletetype="email" />







<button
class="
newsletter-form-button
sqs-system-button
sqs-editable-button-layout
sqs-editable-button-style
sqs-editable-button-shape
sqs-button-element--primary
"
type="submit"
value="Sign Up"
>

Sign Up

</button>







We respect your privacy.


Thank you!

</form>





Comments 
00:00
00:00
x

0.5x

0.8x

1.0x

1.25x

1.5x

2.0x

3.0x

Sleep Timer

Off

End of Episode

5 Minutes

10 Minutes

15 Minutes

30 Minutes

45 Minutes

60 Minutes

120 Minutes

How to get a penetration test (pentest)

How to get a penetration test (pentest)

Timothy De Block