Penetration Testing mailing list archives
Re: Licensed Penetration Tester LPT
From: Mark Teicher <mht3 () earthlink net>
Date: Thu, 20 Apr 2006 08:02:59 -0400 (GMT-04:00)
If President Ford didn't have to take the CYCGAWATST guess Security Consultants don't have to pass an AYC test .. CYCGAWATST = "Can You Chew Gum And Walk At The Same Time" AYC - "Are You Competent" -----Original Message-----
From: intel96 <intel96 () bellsouth net> Sent: Apr 19, 2006 7:37 PM To: James Boomer <jboomer () brickwallsecurity com> Cc: 'Mambo' <mamboz () gmail com>, cenkornek () yahoo com, pen-test () securityfocus com Subject: Re: Licensed Penetration Tester LPT James, I would argue that the term licensed penetration tester has very little weight. When I see the term licensed I think of doctors, nurses, lawyers, and others that have to take board exams in the states where they want to practice their trade. While taken the licensed penetration tester exam and passing show that you have the knowledge for the material used in the testing process, it does not prove anything else. Case in point I had the pleasure of conducting a security assessment for a bank after the the organization fired a certified security professional. The bank hired the certified person to conduct the assessment based on the person's high-level security certificates. That person passed the written exam, but had no practical experience. Just because someone has a certification or in this case a license to be a penetration tester mean very little when it comes to liability. Liability protection comes from others factors like good insurance, proven methodologies, a solid statement of work, NDAs, liability waivers, and trained personnel. I feel that anyone in this business needs to improve themselves daily to even keep up especially when you start citing due diligence as a reason to obtain the licensed penetration tester. Due diligence is another can of worms that we do not need to open in this thread. Intel96, EIEIO ANY MANY MORE TO GO (I have doctors that tell me that I have too many initials after my name, maybe I should add LPT too...NOT!) James Boomer wrote:With the licensed Penetration Tester it help you when you need to prove due diligence. If you audit a company or an internal network if something were to happen it protects you more as far liability. Especially if you turn around and start a security consulting firm or work for one, but other than that it doesn't due a whole lot for you. -----Original Message----- From: Mambo [mailto:mamboz () gmail com] Sent: Monday, April 17, 2006 11:08 PM To: cenkornek () yahoo com Cc: pen-test () securityfocus com Subject: Re: Licensed Penetration Tester LPT I think CHECK adds more value. On 17 Apr 2006 12:22:11 -0000, cenkornek () yahoo com <cenkornek () yahoo com> wrote:Hi group, I am a CEH (Certified Ethical hacker)from e-council. Is there anyone outthere who has taken LPT (Licensed Penetration Tester) certificate from e-council? Would you recommend it?Thanks in advance Cenk Kaan ORNEK---------------------------------------------------------------------------- --This List Sponsored by: Cenzic Concerned about Web Application Security? Why not go with the #1 solution - Cenzic, the only one to win theAnalyst'sChoice Award from eWeek. As attacks through web applications continue torise,you need to proactively protect your applications from hackers. Cenzic hasthemost comprehensive solutions to meet your application security penetration testing and vulnerability management needs. You have an option to go withamanaged service (Cenzic ClickToSecure) or an enterprise software (Cenzic Hailstorm). Download FREE whitepaper on how a managed service can help you: http://www.cenzic.com/news_events/wpappsec.php And, now for a limited time we can do a FREE audit for you to confirm your results from other product. Contact us at request () cenzic com for details.---------------------------------------------------------------------------- ------------------------------------------------------------------------------ -- This List Sponsored by: Cenzic Concerned about Web Application Security? Why not go with the #1 solution - Cenzic, the only one to win the Analyst's Choice Award from eWeek. As attacks through web applications continue to rise, you need to proactively protect your applications from hackers. Cenzic has the most comprehensive solutions to meet your application security penetration testing and vulnerability management needs. You have an option to go with a managed service (Cenzic ClickToSecure) or an enterprise software (Cenzic Hailstorm). Download FREE whitepaper on how a managed service can help you: http://www.cenzic.com/news_events/wpappsec.php And, now for a limited time we can do a FREE audit for you to confirm your results from other product. Contact us at request () cenzic com for details. ---------------------------------------------------------------------------- -- ------------------------------------------------------------------------------ This List Sponsored by: Cenzic Concerned about Web Application Security? Why not go with the #1 solution - Cenzic, the only one to win the Analyst's Choice Award from eWeek. As attacks through web applications continue to rise, you need to proactively protect your applications from hackers. Cenzic has the most comprehensive solutions to meet your application security penetration testing and vulnerability management needs. You have an option to go with a managed service (Cenzic ClickToSecure) or an enterprise software (Cenzic Hailstorm). Download FREE whitepaper on how a managed service can help you: http://www.cenzic.com/news_events/wpappsec.php And, now for a limited time we can do a FREE audit for you to confirm your results from other product. Contact us at request () cenzic com for details. ------------------------------------------------------------------------------------------------------------------------------------------------------------ This List Sponsored by: Cenzic Concerned about Web Application Security? Why not go with the #1 solution - Cenzic, the only one to win the Analyst's Choice Award from eWeek. As attacks through web applications continue to rise, you need to proactively protect your applications from hackers. Cenzic has the most comprehensive solutions to meet your application security penetration testing and vulnerability management needs. You have an option to go with a managed service (Cenzic ClickToSecure) or an enterprise software (Cenzic Hailstorm). Download FREE whitepaper on how a managed service can help you: http://www.cenzic.com/news_events/wpappsec.php And, now for a limited time we can do a FREE audit for you to confirm your results from other product. Contact us at request () cenzic com for details. ------------------------------------------------------------------------------
------------------------------------------------------------------------------ This List Sponsored by: Cenzic Concerned about Web Application Security? Why not go with the #1 solution - Cenzic, the only one to win the Analyst's Choice Award from eWeek. As attacks through web applications continue to rise, you need to proactively protect your applications from hackers. Cenzic has the most comprehensive solutions to meet your application security penetration testing and vulnerability management needs. You have an option to go with a managed service (Cenzic ClickToSecure) or an enterprise software (Cenzic Hailstorm). Download FREE whitepaper on how a managed service can help you: http://www.cenzic.com/news_events/wpappsec.php And, now for a limited time we can do a FREE audit for you to confirm your results from other product. Contact us at request () cenzic com for details. ------------------------------------------------------------------------------
Current thread:
- Re: Licensed Penetration Tester LPT, (continued)
- Re: Licensed Penetration Tester LPT intel96 (Apr 19)
- Re: Licensed Penetration Tester LPT Steve Friedl (Apr 20)
- Re: Licensed Penetration Tester LPT Dogten (Apr 23)
- RE: Licensed Penetration Tester LPT James Boomer (Apr 20)
- Re: Licensed Penetration Tester LPT Pete Herzog (Apr 23)
- Re: Licensed Penetration Tester LPT Maudite MLRL (Apr 19)
- Re: Licensed Penetration Tester LPT Dogten (Apr 20)
- Re: Licensed Penetration Tester LPT Dogten (Apr 24)
- Re: Licensed Penetration Tester LPT v b (Apr 25)
- Re: Licensed Penetration Tester LPT Phil Frederick (Apr 26)
- Re: Licensed Penetration Tester LPT Chris Hajer (Apr 26)
- Re: Licensed Penetration Tester LPT Tim (Apr 26)
- Re: Licensed Penetration Tester LPT xelerated (Apr 26)
- Re: Licensed Penetration Tester LPT Richard Van Luvender (Apr 27)
- Re: Licensed Penetration Tester LPT Brian Anderson (Apr 26)