June 2017
Intermediate to advanced
258 pages
6h 9m
English
Risk plays a huge role in a penetration test, but it also plays a big role in how the company proceeds after the test is complete. I have seen instances where only the medium-to-high-risk rated events were looked at. Therefore, it is really important to clearly define your risk rating scale and explain each of the different levels thoroughly. You never want to leave any risk level open for interpretation, as this could lead to confusion and, possibly, the wrong remediation path for the customer.
The criticality levels and how they are defined are open to interpretation. You can create your own or use the ones that have already been defined.
Read now
Unlock full access