Penetration Testing mailing list archives
RE: Licensed Penetration Tester LPT
From: "James Boomer" <jboomer () brickwallsecurity com>
Date: Thu, 20 Apr 2006 09:22:27 -0500
I couldn't agree with you more. But if someone has the knowledge and the know how then taking the exam won't hurt a bit. But I completely agree with you 100% as I myself own a Security Consulting Firm and have run into the same problem. You need to Know the practical side and the real life side and finding good people who do and keep current on it is always a challnge. -----Original Message----- From: intel96 [mailto:intel96 () bellsouth net] Sent: Wednesday, April 19, 2006 6:37 PM To: James Boomer Cc: 'Mambo'; cenkornek () yahoo com; pen-test () securityfocus com Subject: Re: Licensed Penetration Tester LPT James, I would argue that the term licensed penetration tester has very little weight. When I see the term licensed I think of doctors, nurses, lawyers, and others that have to take board exams in the states where they want to practice their trade. While taken the licensed penetration tester exam and passing show that you have the knowledge for the material used in the testing process, it does not prove anything else. Case in point I had the pleasure of conducting a security assessment for a bank after the the organization fired a certified security professional. The bank hired the certified person to conduct the assessment based on the person's high-level security certificates. That person passed the written exam, but had no practical experience. Just because someone has a certification or in this case a license to be a penetration tester mean very little when it comes to liability. Liability protection comes from others factors like good insurance, proven methodologies, a solid statement of work, NDAs, liability waivers, and trained personnel. I feel that anyone in this business needs to improve themselves daily to even keep up especially when you start citing due diligence as a reason to obtain the licensed penetration tester. Due diligence is another can of worms that we do not need to open in this thread. Intel96, EIEIO ANY MANY MORE TO GO (I have doctors that tell me that I have too many initials after my name, maybe I should add LPT too...NOT!) James Boomer wrote:
With the licensed Penetration Tester it help you when you need to prove
due
diligence. If you audit a company or an internal network if something
were
to happen it protects you more as far liability. Especially if you turn around and start a security consulting firm or work for one, but other
than
that it doesn't due a whole lot for you. -----Original Message----- From: Mambo [mailto:mamboz () gmail com] Sent: Monday, April 17, 2006 11:08 PM To: cenkornek () yahoo com Cc: pen-test () securityfocus com Subject: Re: Licensed Penetration Tester LPT I think CHECK adds more value. On 17 Apr 2006 12:22:11 -0000, cenkornek () yahoo com <cenkornek () yahoo com> wrote:Hi group, I am a CEH (Certified Ethical hacker)from e-council. Is there anyone outthere who has taken LPT (Licensed Penetration Tester) certificate from e-council? Would you recommend it?Thanks in advance Cenk Kaan ORNEK
----------------------------------------------------------------------------
--This List Sponsored by: Cenzic Concerned about Web Application Security? Why not go with the #1 solution - Cenzic, the only one to win theAnalyst'sChoice Award from eWeek. As attacks through web applications continue torise,you need to proactively protect your applications from hackers. Cenzic
has
themost comprehensive solutions to meet your application security
penetration
testing and vulnerability management needs. You have an option to go withamanaged service (Cenzic ClickToSecure) or an enterprise software (Cenzic Hailstorm). Download FREE whitepaper on how a managed service can help you: http://www.cenzic.com/news_events/wpappsec.php And, now for a limited time we can do a FREE audit for you to confirm
your
results from other product. Contact us at request () cenzic com for details.
----------------------------------------------------------------------------
--
----------------------------------------------------------------------------
-- This List Sponsored by: Cenzic Concerned about Web Application Security? Why not go with the #1 solution - Cenzic, the only one to win the
Analyst's
Choice Award from eWeek. As attacks through web applications continue to rise, you need to proactively protect your applications from hackers. Cenzic has the most comprehensive solutions to meet your application security penetration
testing and vulnerability management needs. You have an option to go with
a
managed service (Cenzic ClickToSecure) or an enterprise software (Cenzic Hailstorm). Download FREE whitepaper on how a managed service can help you: http://www.cenzic.com/news_events/wpappsec.php And, now for a limited time we can do a FREE audit for you to confirm your
results from other product. Contact us at request () cenzic com for details.
----------------------------------------------------------------------------
--
---------------------------------------------------------------------------- --
This List Sponsored by: Cenzic Concerned about Web Application Security? Why not go with the #1 solution - Cenzic, the only one to win the
Analyst's
Choice Award from eWeek. As attacks through web applications continue to
rise,
you need to proactively protect your applications from hackers. Cenzic has
the
most comprehensive solutions to meet your application security penetration
testing and vulnerability management needs. You have an option to go with
a
managed service (Cenzic ClickToSecure) or an enterprise software (Cenzic Hailstorm). Download FREE whitepaper on how a managed service can help you: http://www.cenzic.com/news_events/wpappsec.php And, now for a limited time we can do a FREE audit for you to confirm your
results from other product. Contact us at request () cenzic com for details.
---------------------------------------------------------------------------- --
---------------------------------------------------------------------------- -- This List Sponsored by: Cenzic Concerned about Web Application Security? Why not go with the #1 solution - Cenzic, the only one to win the Analyst's Choice Award from eWeek. As attacks through web applications continue to rise, you need to proactively protect your applications from hackers. Cenzic has the most comprehensive solutions to meet your application security penetration testing and vulnerability management needs. You have an option to go with a managed service (Cenzic ClickToSecure) or an enterprise software (Cenzic Hailstorm). Download FREE whitepaper on how a managed service can help you: http://www.cenzic.com/news_events/wpappsec.php And, now for a limited time we can do a FREE audit for you to confirm your results from other product. Contact us at request () cenzic com for details. ---------------------------------------------------------------------------- -- ------------------------------------------------------------------------------ This List Sponsored by: Cenzic Concerned about Web Application Security? Why not go with the #1 solution - Cenzic, the only one to win the Analyst's Choice Award from eWeek. As attacks through web applications continue to rise, you need to proactively protect your applications from hackers. Cenzic has the most comprehensive solutions to meet your application security penetration testing and vulnerability management needs. You have an option to go with a managed service (Cenzic ClickToSecure) or an enterprise software (Cenzic Hailstorm). Download FREE whitepaper on how a managed service can help you: http://www.cenzic.com/news_events/wpappsec.php And, now for a limited time we can do a FREE audit for you to confirm your results from other product. Contact us at request () cenzic com for details. ------------------------------------------------------------------------------
Current thread:
- Licensed Penetration Tester LPT cenkornek (Apr 17)
- RE: Licensed Penetration Tester LPT Paul A Ryan (Apr 17)
- Re: Licensed Penetration Tester LPT rob havelt (Apr 17)
- RE: Licensed Penetration Tester LPT Richard Zaluski (Apr 17)
- Re: Licensed Penetration Tester LPT Mambo (Apr 17)
- RE: Licensed Penetration Tester LPT James Boomer (Apr 19)
- Re: Licensed Penetration Tester LPT Mambo (Apr 19)
- Re: Licensed Penetration Tester LPT intel96 (Apr 19)
- Re: Licensed Penetration Tester LPT Steve Friedl (Apr 20)
- Re: Licensed Penetration Tester LPT Dogten (Apr 23)
- RE: Licensed Penetration Tester LPT James Boomer (Apr 20)
- Re: Licensed Penetration Tester LPT Pete Herzog (Apr 23)
- RE: Licensed Penetration Tester LPT James Boomer (Apr 19)
- Re: Licensed Penetration Tester LPT Maudite MLRL (Apr 19)
- Re: Licensed Penetration Tester LPT Dogten (Apr 20)
- <Possible follow-ups>
- RE: Licensed Penetration Tester LPT Clemens, Dan (Apr 17)
- RE: Licensed Penetration Tester LPT Mark Teicher (Apr 19)
- Re: Licensed Penetration Tester LPT Mark Teicher (Apr 20)
- Re: Licensed Penetration Tester LPT Mark Teicher (Apr 24)
- Re: Licensed Penetration Tester LPT Dogten (Apr 24)
- Re: Licensed Penetration Tester LPT v b (Apr 25)
- Re: Licensed Penetration Tester LPT Dogten (Apr 24)