August 2000
Intermediate to advanced
800 pages
21h 5m
English
To most management, the most important part of penetration testing deals specifically with how the results are condensed into plans to rectify security holes. Concise technical detail is imperative here because it helps you explain specific problems and possible solutions. This is the reason you went on this big chase, and it should be the real meat of a follow-up report.
The other important thing to remember is that good reporting is key in procuring a new security budget and the chance to continue to perform regularly scheduled follow-up audits.
This portion of the chapter explains what should appear in a report and what should be left out. First, I help you define the levels of threat a hole could pose to your organization. ...