Security-testing knowledge kit

Security-testing, also called penetration testing, is a very specialized profession. The testing results and the quality of the security testing may vary without proper guidance, training, and tools. It's suggested to have an internal security-testing knowledge portal, which can include the security-testing guidelines, best practices, instructions, tools, and the training environment. An Open Web Application Security Project (OWASP) security-testing knowledge kit can be used to build such a knowledge portal. The following table gives an overview example of what the whole security-testing knowledge kit should cover:

Security-testing kit

Purpose

Security-testing plan templates

The testing plan defines ...

Get Hands-On Security in DevOps now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.