Penetration Testing mailing list archives

Re: My Frustrations Step Two


From: "Leonardo Cavallari Militelli" <leonardocavallari () gmail com>
Date: Thu, 18 Dec 2008 18:41:12 -0200

Maybe the best solution should be define a sort of RFP (Request for
Proposal) and steer customers to use it as contractual clauses.


On Thu, Dec 18, 2008 at 10:27 AM, Adriel T. Desautels
<ad_lists () netragard com> wrote:


So it appears to me that the solution to this problem is to provide the
customer with ammunition so that they can quickly shoot down the fraudulent
security experts and properly identify the real ones. There are different
services, different classifications of service, different threat levels,
etc. If our customers knew how to identify what they needed, they could use
that to choose a good provider with much more success. But thats the real
problem isn't it? Our customers aren't security experts and as a result they
don't know what they need...

So, what questions can we arm our customers with so that they can weed out
the Frauds?


Adriel T. Desautels
ad_lists () netragard com




------------------------------------------------------------------------
This list is sponsored by: Cenzic

Security Trends Report from Cenzic
Stay Ahead of the Hacker Curve!
Get the latest Q2 2008 Trends Report now

www.cenzic.com/landing/trends-report
------------------------------------------------------------------------



------------------------------------------------------------------------
This list is sponsored by: Cenzic

Security Trends Report from Cenzic
Stay Ahead of the Hacker Curve!
Get the latest Q2 2008 Trends Report now

www.cenzic.com/landing/trends-report
------------------------------------------------------------------------


Current thread: