I performed web-application testing, source-code reviews, internal and external infrastructure assessments, Active Directory reviews and cloud-configuration assessments, alone and in teams. OWASP Top 10 and MITRE ATT&CK informed methodology; the environment and agreed scope determined the relevant tests.
Viewed
Growing MSSP with Offensive Services
Assessment scope and methodology
Testing application exposure and restricted Windows environments
Return to the full story ←