RE: Volunteer pen testing

From: Chuck Fullerton (chuckf69_at_ceinetworks.com)
Date: 12/15/04

  • Next message: rzaluski: "RE: Respuesta: Penetration Testing Methodologies"
    To: "Matt Bellizzi" <matt.bellizzi@nokia.com>, <pen-test@securityfocus.com>
    Date: Tue, 14 Dec 2004 21:53:05 -0500
    
    

    Matt,

    Just an FYI. Just because your not getting paid doesn't mean you shouldn't
    have a contract and NDA. These protect YOU as much as the Client. Make
    sure you go through the proper contracting and scope setting steps to ensure
    it as legit. Remember, you need your "Get out of jail free" card..

    Chuck F.

    -----Original Message-----
    From: Matt Bellizzi [mailto:matt.bellizzi@nokia.com]
    Sent: Tuesday, December 14, 2004 5:05 PM
    To: pen-test@securityfocus.com
    Subject: Volunteer pen testing

    Hey folks

    Just wanted to bounce an idea off on this list. Lately I've been
    thinking of doing some charity work. However I generally avoid
    physical labor. The idea has entered my brain to provide pen
    testing/security audit services to non profits. I am by no means a
    pet test expert. Although I do have solid networking/security skills
    (I'm a QA engineer for IPSec VPNs and firewalls). Obviously for a non
    profit to be eligible they would either need a constant-on connection or
    a co-located host. Just thought it would be a fun way to learn more
    about pen testing, help the community and helping organizations that are
    generally straped for cash.


  • Next message: rzaluski: "RE: Respuesta: Penetration Testing Methodologies"

    Relevant Pages

    • Re: Building Contract. Please help.
      ... we do think the client has cohersed us into doing ... <pasting of contract wording> ... This quotation is a fixed price for the works to completion. ... Central pendant light fitting. ...
      (uk.legal)
    • Re: Please help. I am being sued through a court. How do I respond?
      ... had offered to prepare a standard JCT building contract but did ... The client provided the drawings, ... actual costs by ensuring that a full vehicle would ... site-manager and, crucially, the job had a supervising Architect, ...
      (uk.legal)
    • Re: Doc always seems to be on vacation on previously proposed paydays
      ... Well, December 1st came, no pay. ... I'm told that they are having trouble with the client paying them. ... at this point I do start threatening lawsuits and finally around mid-February I get paid and they say they no longer have the account. ... They finally tell us that the client is looking at bringing in another company to "compete" for the contract renewal. ...
      (sci.med.transcription)
    • Re: Please help. I am being sued through a court. How do I respond?
      ... |> had offered to prepare a standard JCT building contract but did ... The client provided the drawings, ... The supervising architect was ... |> costs, ...
      (uk.legal)
    • Re: General OOA/D/P issues
      ... If you want to snip stuff back in do so. ... >> contravene the contract already in place. ... > Client and whoever provides the service. ... internal class Mouth: IConsumer ...
      (comp.object)