WebApp Sec mailing list archives

RE: Remote Desktop Security - Compliance VS Pen-Test


From: "Martin O'Neal" <martin.oneal () corsaire com>
Date: Tue, 2 Sep 2008 20:14:11 +0100


(I don't want to branch out this 
conversation)
Don't you belive that compliance and 
Pen-Test is 2 different domains?

No. :)

Compliance is what it says on the tin; it is the process of verifying
that your organisation is complying with the standards etc that it is
obliged to, by law, or governing bodies, etc blah blah blah.

Penetration testing (technical assessment) may be one of the ways that
you establish whether you comply or not.

Martin...

-------------------------------------------------------------------------
Sponsored by: Watchfire
Methodologies & Tools for Web Application Security Assessment
With the rapid rise in the number and types of security threats, web application security assessments should be 
considered a crucial phase in the development of any web application. What methodology should be followed? What tools 
can accelerate the assessment process? Download this Whitepaper today!

https://www.watchfire.com/securearea/whitepapers.aspx?id=70170000000940F
-------------------------------------------------------------------------


Current thread: