Active and Passive Testing (Jarot S. Suroso)

Kuisioner dan wawancara mungkin bekerja dengan baik untuk mengidentifikasi pelanggaran kebijakan atau kelemahan proses, tetapi untuk benar-benar mengevaluasi kerentanan teknis di lingkungan anda, anda perlu melakukan pengujian keamanan. Berikut beberapa alat yang paling umum digunakan :

  • Nessus (free and commercial versions available)
  • NMap (free)
  • ISS
  • Retina
  • Nexpose
  • Foundscan
  • Qualys
  • Core Impact
  • AppScan
  • WebInspect

Ruang lingkup active passive testing dapat sangat bervariasi tergantung pada masalah yang di hadapi perusahaan. Berikut adalah tipe-tipe assesment:

  • Enterprise vulnerability assessment (active)
  • Penetration testing analysis (active)
  • Wireless securityassessment (active)
  • Blackbox application testing (active)
  • Malicious threat assessment (passive)
  • Internet reconnaissance (passive)
  • Application code security review (passive)
  1. My Name is Student Christian Kardor from Liberia West Africa write to know about the 2020 Academy School Year that was interrupted by the COVID-19. About the re-opening of its Academy Calendar