From the course: CompTIA PenTest (PT0-002) Cert Prep

Unlock this course with a free trial

Join today to access over 23,200 courses taught by industry experts.

Impact and constraints

Impact and constraints

- Remember that you're doing a lot more than just simply running some penetration tests. You are conducting a penetration testing engagement, a whole project, so there's a lot more than just running the tests. That's kind of the easy part. What you want to do, in addition to everything else we've already talked about, is make sure that you set the expectations. What is the impact of this penetration testing exercise and what are restrictions that you have to live within? The impact is going to be the result of the testing exercises. For example, every time you find a vulnerability, you want to report that to the client. Now, of course, in the communication section, you want to determine whether you report immediately or whether you just save it till the end, and it depends on the severity, but you want to agree on how you communicate. That's part of the impact. Plus, the other part of impact is the remediation activities. You want your pen test to instruct the client how they respond…

Contents