From the course: Performing a Technical Security Audit and Assessment

Unlock the full course today

Join today to access over 22,600 courses taught by industry experts or purchase this course individually.

Conduct the assessment

Conduct the assessment

From the course: Performing a Technical Security Audit and Assessment

Start my 1-month free trial

Conduct the assessment

- You've done the planning and now comes the moment of truth: actually conducting the assessment. Luckily, the written assessment plan provides the blueprint which all parties should know and follow to complete the security tests. In fact, if there's any reason to make changes to the final authorized plan, permission should be obtained in writing from the original signers. Ideally, security tasks will be conducted in accordance to the assessment plan without any issues or incidents. However, problems can occur. Tests may cause a system outage or a security attack can be discovered in progress. When something like this happens, the team conducting the assessment must know how to react. A well-written assessment plan will describe which actions to take and whom to contact in the event of these contingencies. When in doubt though, the assessor in charge should follow standard escalation procedures to notify the appropriate personnel that there's a problem. Other potential roadblocks to…

Contents