Penetration Testing mailing list archives
RE: OPST vs CEH
From: "Matthew Stein" <mattstein () webmail co za>
Date: Fri, 06 Feb 2004 03:19:30 +0200
With all due respect, any security testing professional who would refer to themselves as a Certified Ethical Hacker does not understand the OSSTMM or any of the other principals ISECOM (the group that made the osstmm) stands for. The OPST covers start to finish how to market a test, what to include in the contracts process, how to not loose your shirt on the pricing (proper estimates of a job), how to conduct the tests (the meat of the testing work), creative ideas of individual business opportunities (singular testing opportunities), what to include in the documentation, who to include in meetings, etc.
From my research, the OPST was designed to give you the
baseline of a security testing professional. The CEH literature claims it will make you into an "ethical hacker", which basically means that you know how to find and play with tools. They throw in some ethics for good measure and give lip service to the OSSTMM document. Either way, I'd recommend reading the OSSTMM and joining in the ISECOM mailing lists. Talk to the people who use the OSSTMM and ask them which class will better help you meet your personal goals as you work in the InfoSec community. ./matt -----Original Message----- From: kenzo [mailto:kenzo_chin () hotmail com] Sent: Wednesday, February 04, 2004 9:54 PM To: pen-test () securityfocus com Subject: OPST vs CEH I'm thinking about taking one of these certs. OPST (OSSTMM PROFESSIONAL SECURITY TESTER) or CEH (certified ethical hacker) I've read about the two, and they seem to be kind of the same thing. I know that some people in here were talking about the opst, but what about the ceh? Has anyone taking the CEH or both? Please let me know. thanks. --------------------------------------------------------------------------- ---------------------------------------------------------------------------- __________________________________________________________________________ http://www.webmail.co.za/dialup Webmail ISP - Cool Connection, Cool Price --------------------------------------------------------------------------- ----------------------------------------------------------------------------
Current thread:
- OPST vs CEH kenzo (Feb 05)
- Re: OPST vs CEH circut (Feb 06)
- <Possible follow-ups>
- RE: OPST vs CEH Matthew Stein (Feb 06)
- RE: OPST vs CEH Bartholomew, Brian J (Feb 06)
- RE: Learning vs. Play Time Robert E. Lee (Feb 07)
- RE: Learning vs. Play Time Clement Dupuis (Feb 12)
- RE: Learning vs. Play Time Robert E. Lee (Feb 07)
- RE: OPST vs CEH Don Parker (Feb 07)
- Re: OPST vs CEH Ben Nelson (Feb 11)
- RE: OPST vs CEH Bartholomew, Brian J (Feb 11)
- RE: OPST vs CEH wjnorth (Feb 12)
- credentials & experience (was: Re: OPST vs CEH Meritt James (Feb 16)
- Re: OPST vs CEH Patrick Prue (Feb 13)
- RE: OPST vs CEH Pete Herzog (Feb 16)
- RE: OPST vs CEH wjnorth (Feb 12)
(Thread continues...)