From the course: CompTIA CySA+ (CS0-002) Cert Prep: 4 Software and Systems Security

Unlock the full course today

Join today to access over 22,600 courses taught by industry experts or purchase this course individually.

Penetration test reporting

Penetration test reporting

From the course: CompTIA CySA+ (CS0-002) Cert Prep: 4 Software and Systems Security

Start my 1-month free trial

Penetration test reporting

- [Narrator] At the conclusion of a penetration test, the testers must develop reports that communicate their results to management. Most testers consider this phase to be nowhere near as fun as the exploitation phase, but it is absolutely critical to the success of the test. After all, if you don't clearly communicate the results of your test, the organization won't be able to take the necessary actions to improve security, and that was the entire point of doing the penetration test in the first place. Penetration testing reports provide managers and technical staff with the information that they need to correct vulnerabilities discovered during the test. A good penetration testing report includes coverage of three major areas. First, the report should explain what occurred during the test. This includes narrative detail that explains both the testing techniques and the results that were achieved. This is normally done as…

Contents