Sie sind auf Seite 1von 10

ECSA/LPT

EC Council
EC-Council

Module XXXXVI
Ethics of a Licensed
Penetration Tester

What Makes a Licensed


Penetration Tester?
LPTs constantly analyze their work.
LPTs approach the work in an effort to improve it.
LPTs do not pride on being so indispensable to the project.
project
LPTs learn from their successes and mistakes, and from others.
They motivate, complement and reward the team members on doing a good job.
LPTs understand not only what to do and what not to do, but why things are done a
certain way.
way
LPTs understand the goal of the project and work toward the goal and not merely
following orders.
LPTs are capable of solving problems or work toward a solution.
EC-Council

Copyright by EC-Council
All Rights Reserved. Reproduction is Strictly Prohibited

Modus Operandi
Being a good Licensed Penetration Tester is not about your technical
skill set; it is about how you do it.
it
LPTs are committed to quality.

They are first person to arrive to work and last person to leave.
LPTs are very well organized and use professional calendaring tool to
organize their schedule.
LPTs write down the tasks they need to accomplish, track them, and
cross them off when theyy are finished.

EC-Council

Copyright by EC-Council
All Rights Reserved. Reproduction is Strictly Prohibited

Preparation
LPTs always
y carryy a p
pen and notepad
p to take notes.
LPTs carry voice recorder and record their findings.
LPTs record all activities.
LPTs share information with others and work as a team.
LPTs always ask questions and are not afraid to say I dont know.
LPTs use all available resources to identifyy the best p
practices to employ
p y
in their work and their project.
EC-Council

Copyright by EC-Council
All Rights Reserved. Reproduction is Strictly Prohibited

Evolving as a Licensed
Penetration Tester
Technologies evolve and change.
You must keep your career alive by constantly updating your area of knowledge
and skill set.
You should
h ld llook
k outside
id your workplace
k l
to expand
d your k
knowledge.
l d
Read books, journals, and trade magazines.
Attend conferences, workshops, and training.
Visit various security websites and forums.
forums
Join various security groups and discuss current security related topics.
Visit libraries and bookstores.
EC-Council

Copyright by EC-Council
All Rights Reserved. Reproduction is Strictly Prohibited

Dress Code
As a Licensed Penetration Tester, dress code is very
iimportant.

Always wear a tie and look professional at all times.


times

You are a professional, so dressing appropriately is


important.

Wear full sleeved shirts


shirts, preferably white
white.

Carry a pen,
pen paper
paper, and notepad
notepad.
EC-Council

Copyright by EC-Council
All Rights Reserved. Reproduction is Strictly Prohibited

Example: Licensed Penetration


Tester Dress Code

EC-Council

Copyright by EC-Council
All Rights Reserved. Reproduction is Strictly Prohibited

LPT Audited Logos


LPTs are authorized
LPT
h i d to use these
h
llogos to notify
if that
h the
h web
b sites
i
and
d
networks are thoroughly audited by an LPT.

This site is tested and certified by a Licensed Penetration Tester. The


"LPT Audited" mark appears only when a website's security meets the
highest security scanning standards of EC-Council's
EC Council s LPT Methodology.
Methodology

EC-Council

Copyright by EC-Council
All Rights Reserved. Reproduction is Strictly Prohibited

Example: LPT Audited Logos

EC-Council

Copyright by EC-Council
All Rights Reserved. Reproduction is Strictly Prohibited

All the Best as an LPT!

EC-Council

Copyright by EC-Council
All Rights Reserved. Reproduction is Strictly Prohibited

Das könnte Ihnen auch gefallen