360 Advanced
360 Advanced Penetration Testing Services Overview
Pages
27
Time to read
22 mins
Publication
Language
English
Pages
27
Time to read
22 mins
Publication
Language
English
This document is a guide detailing the penetration testing services offered by 360 Advanced. It outlines a four-phase approach to penetration testing: Planning, Discovery, Attack, and Documentation, with an optional phase for remediations and re-testing. The methodology is based on the NIST SP 800-115 Technical guide and includes standards such as the Pen Test Execution Standard and the OWASP Testing Guides. The guide describes various services, including Vulnerability Scanning, External and Internal Network Penetration Testing, and both unauthenticated and authenticated testing for web and mobile applications. Additionally, it explains the attack phase, where vulnerabilities are exploited, and the documentation phase, where findings are reported. The guide also states that remediations and re-testing are part of the procedures, ensuring clients have up to 90 days for remediation efforts. It emphasizes that penetration testing is a point-in-time service with defined rules of engagement.