Defining the Scope of the Assessment

Defining the scope of the assessment is one of the most important parts of the assessment project. At some point, you are going to be meeting with management to start the discussions of the “how” and “why” of the assessment. Before this meeting ever begins, you’re probably going to have some idea as to what is driving this event. Vulnerability assessments usually don’t happen in a vacuum, so it’s important to understand the business reasons behind it. These can include due diligence, compliance with state or federal laws, a breach in security, or other factors.

Knowing why this assessment is occurring is going to help you get a much better idea of what management is looking for and how much support there ...

Get Inside Network Security Assessment: Guarding Your IT Infrastructure now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.