The executive summary contains the complete summarization of the report in a standard and nontechnical text that focuses on providing knowledge to the senior employees of the company. It contains the following information:
- The scope of the penetration test: This section includes the type of tests performed and the systems that were tested. All the IP ranges that were tested are also listed in this section. Moreover, this section also contains severity information about the test.
- Objectives: This section will define how the test will be able to help the target organization, what the benefits of the test will be, and so on.
- Assumptions made: If the scope of the test calls for an internal assessment, the assumption would ...