Re: Research on penetration testing?

From: Gareth Davies (gareth.davies@mynetsec.com)
Date: Tue Dec 14 2004 - 01:11:56 EST


Rishi Pande wrote:

>I do not know if you would like your research to be more technically
>oriented, but here is an idea for research on the soft-side of pen-testing.
>In particular, the costs of pen-tests and estimates of average cost savings
>from a pen-test would be useful research.
>Good luck!
> Rishi
>
>
>
I would agree with this if you wish to follow a less technical line.

The ROSI problem (Return on Security Investment).

How to sell penetration testing and vulnerability assessment, cost
savings and so on.

Cheers

-- 
Gareth Davies
Manager - Security Practice
Network Security Solutions MSC Sdn. Bhd.
Suite E-07-21, Block E, Plaza Mont' Kiara, No. 2 Jalan Kiara,
Mont’ Kiara, 50480
Kuala Lumpur, Malaysia 
Phone: +603-6203 5303
www.mynetsec.com


This archive was generated by hypermail 2.1.7 : Sat Apr 12 2008 - 10:54:10 EDT