PENETRATION TESTING
> OBJECTIVES
Measure the complete exposition of an infrastructure and/or a web application to the internet (including vulnerabilities).
> METHODOLOGY
This service uses the complete security approach of a customer's infrastructure towards the internet. It uses both automated and manual techniques to determine the security level of an internet presence point.
The following area are all covered by a penetration testing approach :
- Network Surveying
- Access Control Testing
- System Services Identification
- Document Grinding
- Vulnerability Research and Verification
- Routing
- Intrusion Detection System Testing
- Containment Measures Testing
- Denial of Service Testing (optional)
Optionaly, web application or web services can also be tested. In this area, the logic of the application itself is tested :
- Internet Application Testing
- Password Cracking
- Trusted Systems Testing
Those steps cover the entire scope of an internet presence point.
> BENEFITS
The customer has a complete view of its security regarding its internet presence.
|