Penetration testing tutorial: Guidance for effective pen tests

Penetration testing tutorial: Guidance for effective pen tests

SearchSecurityChannel.com Staff

With the right training, expertise and strategy, security solution providers can conduct penetration tests for clients, providing a valuable service by helping uncover any vulnerabilities in the client’s network.

This penetration testing tutorial

To continue reading for free, register below or login

Requires Membership to View

To gain access to this and all member only content, please provide the following information:

By submitting your registration information to SearchSecurityChannel.com you agree to receive email communications from the TechTarget network of sites, and/or third party content providers that have relationships with TechTarget, based on your topic interests and activity, including updates on new content, event notifications, new site launches and market research surveys. Please verify all information and selections above. You may unsubscribe at any time from one or more of the services you have selected by editing your profile, unsubscribing via email or by contacting us here

  • Your use of SearchSecurityChannel.com is governed by our Terms of Use
  • We designed our Privacy Policy to provide you with important disclosures about how we collect and use your registration and other information. We encourage you to read the Privacy Policy, and to use it to help make informed decisions.
  • If you reside outside of the United States, by submitting this registration information you consent to having your personal data transferred to and processed in the United States.

provides a complete overview of the pen testing process, with a number of essential tips written for the solution provider’s perspective. It covers all aspects of penetration testing, including planning the tests, conducting the tests (and avoiding common pitfalls) and following up with a report to wow your clients and earn repeat 

Introduction to the penetration testing tutorial
Penetration testing services can prove to be profitable for security services providers and resellers. Turn to Penetration testing 101: How to offer pen test services to learn about the different kinds of pen tests and how to add pen testing services to your portfolio.

Pen test tools
Many security solution providers perform a wide variety of penetration tests for their customers. Our roundup of pen testing tools for penetration testing services reviews the pen testing tools available to solution providers, ranging from sophisticated vulnerability scanners and application scanning and code analysis tools, to all-in-one penetration suites and products for specific tasks such as password cracking.

Pen test reports
Penetration testing is a service commonly offered by information security solution providers. Unfortunately, for as long as pen tests have been offered, the final deliverable (a report) is often lacking in value for the client. Our article, “Wow your client with a winning penetration testing report” explores some of the most common pitfalls of penetration testing reports, with recommendations on ways to improve them.

Solving pen test problems
Penetration testing is by no means an exact science. Each test tends to be unique, and numerous problems can occur due to the nature of the tests themselves. Equally common are process and political challenges, which may result from lack of proper communication or coordination between solution providers and organizations.

Our article, “How to do penetration testing: Overcoming problems and concerns” covers some of the most common issues that arise during pen tests, and provides guidance on how best to overcome them.

This was first published in December 2011