Penetration Testing mailing list archives

Re: Pentest Letter of Achievement/Certificate


From: John Kinsella <jlk () thrashyour com>
Date: Tue, 12 Jul 2005 19:29:43 -0700

I think http://www.isecom.org/osstmm/ might cover what you're looking
for...

John

On Tue, Jul 12, 2005 at 10:52:42PM +0200, blowfish 448 wrote:
Hi,

any of you know if any 'standards' or accepted guidelines exist for a 
letter or certification
of succesfull resistance to Penetration Testing/Vulnerability Assessment. 
Customers often
demand to have a proof delivered by their Penetration Test service provider 
to show to their
partners and customers.

The idea of course is not to disclose sensitive information but to briefly 
describe
the environment tested and how - according to which methodologies and the 
attack vectors
tested for.


Thanks in advance




Current thread: