Thursday, April 16, 2020

What pen testing skills do IT pros need today

Here’s how I look at it; the best lockpickers are often locksmiths. This is because they’re intimate with their craft and know both the how, and more importantly, why locks can be manipulated to fail. I find that the best penetration testers have some sort of background or training from the operations or development side.

I’ve seen some people spin their wheels, finding vulnerabilities in environments where an adversary would have a hard time getting into in the first place. An administrator would know this, and that’s where background knowledge is key. Some of the best security-conscious people I’ve worked with aren’t even on a security team, and that’s perfectly fine, because that means that they’re defending at a lower level.

With all of this said, if I were to name specifics, Python and PowerShell skills are very popular nowadays, but I can do a lot with Bash and Linux knowhow, and often in less time.

Familiarity with networking and operating systems is also a must and are basic skills that all penetration testers should have.

Pen testing across multiple disciplines is often ideal, but because there are so many facets to IT, it’s unrealistic to be a rock star at everything. I highly encourage people to pick one thing they want to be good at and run with it.

Cyber security and protecting our nations digital infrastructure has become an all-hands responsibility. Our state and local government elected leaders and public managers have a vital leadership role to play and perhaps it all starts with a better understanding of the issues, polices, and required resources.
More Info: jobs for a+ certification

No comments:

Post a Comment