CompTIA PenTest+: Governance, Risk, & Compliance
CompTIA PenTest+
| Intermediate
- 14 videos | 1h 20m 21s
- Includes Assessment
- Earns a Badge
Penetration testing (pen testing) is often a multi-step process involving many parties. It is important for testers to recognize the importance of scoping, as well as the organizational and customer requirements and demands. In this course, you will explore common pre-engagement activities for penetration testers, including scope definition, regulations such as the Payment Card Industry Data Security Standard (PCI DSS) and General Data Protection Regulation (GDPR), frameworks and standards, and rules of engagement. Then you will examine target selection, assessment types, and agreement types, like Terms of Service (ToS), service-level, and confidentiality and nondisclosure. Next, you will discover key elements of the shared responsibility model. Finally, investigate legal and ethical considerations including authorization letters, mandatory reporting requirements, and risk to the penetration tester. This course is one of a collection that helps prepare learners for the CompTIA PenTest+ (PT0-003) certification exam.
WHAT YOU WILL LEARN
-
Discover the key concepts covered in this courseProvide an overview of the pci dss, including principles and requirementsOutline the principles of the gdpr including requirements and risk of non-complianceDefine target lists such as wireless networks, domain, and physical locationsProvide an overview of assessment types including web, network, mobile, cloud, application programming interface (api), application, and wirelessProvide an overview of tos agreements, including examples of and risks associated with tos agreementsDefine slas and describe when to use them
-
Outline key components of confidentiality and nondisclosure agreementsProvide an overview of the details that should be included in a penetration testing sowList the benefits of defining a master service agreement prior to penetration testingDescribe how to use approval forms to document the permission to attackProvide an overview of the shared responsibility model, including typical service provider and customer responsibilities, benefits, and best practicesOutline legal and ethical considerations, including authorization letters, mandatory reporting requirements, and risk to the penetration testerSummarize the key concepts covered in this course
IN THIS COURSE
-
1m 9sIn this video, we will discover the key concepts covered in this course. FREE ACCESS
-
7m 28sAfter completing this video, you will be able to provide an overview of the PCI DSS, including principles and requirements. FREE ACCESS
-
6m 42sUpon completion of this video, you will be able to outline the principles of the GDPR including requirements and risk of non-compliance. FREE ACCESS
-
7m 38sAfter completing this video, you will be able to define target lists such as wireless networks, domain, and physical locations. FREE ACCESS
-
6m 33sUpon completion of this video, you will be able to provide an overview of assessment types including web, network, mobile, cloud, application programming interface (API), application, and wireless. FREE ACCESS
-
6m 19sAfter completing this video, you will be able to provide an overview of ToS agreements, including examples of and risks associated with ToS agreements. FREE ACCESS
-
6m 44sIn this video, we will define SLAs and describe when to use them. FREE ACCESS
-
6m 19sUpon completion of this video, you will be able to outline key components of confidentiality and nondisclosure agreements. FREE ACCESS
-
6m 25sAfter completing this video, you will be able to provide an overview of the details that should be included in a penetration testing SOW. FREE ACCESS
-
6m 16sUpon completion of this video, you will be able to list the benefits of defining a master service agreement prior to penetration testing. FREE ACCESS
-
6m 7sAfter completing this video, you will be able to describe how to use approval forms to document the permission to attack. FREE ACCESS
-
6m 14sUpon completion of this video, you will be able to provide an overview of the shared responsibility model, including typical service provider and customer responsibilities, benefits, and best practices. FREE ACCESS
-
5m 41sAfter completing this video, you will be able to outline legal and ethical considerations, including authorization letters, mandatory reporting requirements, and risk to the penetration tester. FREE ACCESS
-
47sIn this video, we will summarize the key concepts covered in this course. FREE ACCESS
EARN A DIGITAL BADGE WHEN YOU COMPLETE THIS COURSE
Skillsoft is providing you the opportunity to earn a digital badge upon successful completion on some of our courses, which can be shared on any social network or business platform.
Digital badges are yours to keep, forever.