Image
 
Latest Additions
 
EH-Net Login
Welcome Guest.






Lost Password?
No account yet? Register
Who's Online
We have 21 guests and 1 member online
EH-Net Donations

Enter Amount:
$

Google Ads
EH-Net News Feeds
Latest Additions
Book Recommendations





 
Advertisement

You are here: Home arrow Forum
Ethical Hacker Community Forums
January 09, 2009, 06:40:12 AM *
Welcome, Guest. Please login or register.
Did you miss your activation email?

Login with username, password and session length
News: ChicagoCon 2009 - May 4 - 9. Boot Camps & an Ethical Hacking Conf. www.chicagocon.com
 
  Home Help Calendar Login Register  
  Show Posts
Pages: [1]
1  Ethical Hacking Discussions and Related Certifications / Other / Re: Pen Testing as a business on: August 29, 2008, 01:06:28 PM
  I asked this question because in the course of a contracting position I spoke to a couple of guys who said they did pen testing.  We didn't get into their exact business model, but they were operating in rural parts of the US and the context of the conversations led me to believe that they were loners.

  I've seen comments before this thread about the field becoming more specialized, so I expect these guys are only able to do this because they are in the sticks.

  Yeah, a one-person shop probably could only service very small businesses.  Just try and sell them on the idea, and then try to get paid. 

  Guess I need to find out who's offering pen testing services around here (Rochester, NY).
2  Ethical Hacking Discussions and Related Certifications / Other / Re: Pen Testing as a business on: August 28, 2008, 09:59:35 AM
Hmm, I see what you mean, Dale.  Just looking at the ASV requirements, it looks doable until you get to the experience requirements.  It begins to look like you need several people doing the pen testing and at least one person keeping track of whether you can recertify next year.  Probably a lot to chew on for a one-person operation.
3  Ethical Hacking Discussions and Related Certifications / Other / Pen Testing as a business on: August 28, 2008, 08:57:05 AM
  Let's say you want to do pen testing as an independent contractor.  I would think this is a general plan:

  Set up a business structure as a corp or perhaps LLC.  Do the right thing about getting an accountant, paying franchise taxes, keeping personal and business money separate.  It all costs money and raises overhead, but will be critical if there are any legal problems down the road.  Also makes it possible to subcontract from larger firms who can't deal with individuals and DBA's.

  Liability insurance.  Looks like risky business.  How much?  A million? More?  (Ouch...)

  It looks like not your basic nine-to-five kind of job.  Nobody's going to want you to try to knock over their network during THEIR business hours.

  PCI compliance looks like a good place to look for clients.  Who would you talk to in your area to find out how to get into that area?

  What else?
Pages: [1]
Powered by MySQL Powered by PHP Powered by SMF 1.1.7 | SMF © 2006-2007, Simple Machines LLC
Joomla Bridge by JoomlaHacks.com
Valid XHTML 1.0! Valid CSS!
Page created in 0.059 seconds with 22 queries.
 
Sponsors

cwnp_moto__120x90.gif

Polls
How many security events including conferences and training do you attend a year:
 
Support EH-Net


Support EH-Net by
Buying all of your
Amazon items using
the search bar above.

cbtnuggets_logo_125.jpg
Try CBT Nuggets Free!
Recent Forum Topics
Vote For EH-Net

progenic.com
Click here to Vote!

binarica.com
Binarica Logo

Add to Technorati Favorites
technorati fave

 
         
Advertisement

© 2009 The Ethical Hacker Network
Joomla! is Free Software released under the GNU/GPL License.