Re: Pen testing training / certification

From: Dale Moews (dale.moews_at_verizonwireless.com)
Date: 01/30/04

  • Next message: Ranjeet Shetye: "Re: TCP Header manipulation of the protocol field"
    Date: 30 Jan 2004 20:56:12 -0000
    To: pen-test@securityfocus.com
    
    
    ('binary' encoding is not supported, stored as-is) In-Reply-To: <4017106E.3000808@infostruct.net>

    >Subject: Pen testing training / certification
    >
    >I am considering the OPST certification from ReDvolution Technologies.
    >It is based on the Open Source Security Testing Methodology Manual -
    >OSSTMM (http://www.isecom.org/projects/osstmm.shtml).
    >
    >Has anyone taken their applied penetration testing course
    >(http://www.thinkingred.com/index.php?module=ContentExpress&func=print&ceid=23&redi=training_sub2.jpg)?
    >
    >
    >I would appreciate hearing about your experiences. Thank you.
    >
    >Gideon
    >
    >Gideon T. Rasmussen
    >CISSP, CFSO, CFSA, SCSA
    >Boca Raton, FL
    >gideon@infostruct.net

    I cannot speak to the quality of instruction from ReDvolution, but I took the course when it was offered by Dyad Security. And I can say that the course was well worth the money spent. The amount of information gleaned from the experience was incredible and the instructor was awesome. Anyone that has a chance to take this course, I would highly recommend it. Especially when taught by Dyad Security.

    You may feel that you are well versed in the art of pen-testing, but I've found from my own experience that seldom do testers have a well-defined methodology to doing their work. This is exactly what you will gain from this course. And by following this methodology, it will only aid to validate the entire security arena. By this I mean that a pen-test by one company should produce the same/similar results from another company. So customers won't perceive our work as "hit and miss". Just my two cents.

    Dale Moews
    IT Security
    Verizon Wireless

    ---------------------------------------------------------------------------
    ----------------------------------------------------------------------------


  • Next message: Ranjeet Shetye: "Re: TCP Header manipulation of the protocol field"

    Relevant Pages

    • SF new interview announcement: Open source security testing methodology
      ... talk about the upcoming revision 3.0 of the Open Source Security Testing ... He discusses why we need a testing methodology, ...
      (Security-Basics)
    • Re: Pen testing training / certification
      ... The instructors are very knowledgable and their talent for keeping the atmosphere in the class light is excellent!! ... For the extra tools, I've learned that they are putting together a class for just Security Tools. ... >It is based on the Open Source Security Testing Methodology Manual - ...
      (Pen-Test)
    • Re: Pen testing training / certification
      ... >I am considering the OPST certification from ReDvolution Technologies. ... >It is based on the Open Source Security Testing Methodology Manual - ...
      (Pen-Test)
    • Pen testing training / certification
      ... It is based on the Open Source Security Testing Methodology Manual - ... OSSTMM. ... Gideon T. Rasmussen ...
      (Pen-Test)