Image
 
linkedin_logo.png rss_logo.jpg
twitter_logo.png youtube_logo.jpg
Latest Additions
 
EH-Net Login
Welcome Guest.






Lost Password?
No account yet? Register
Who's Online
We have 44 guests and 1 member online
 
Free Business and Tech Magazines and eBooks

You are here: Home arrow Ethical Hacking Discussions and Related Certificationsarrow Network Pen Testingarrow CPTE - Certified Penetration Testing Engineerarrow How useful is this for a real world penetration tester?
EH-Net
May 21, 2013, 05:29:30 AM *
Welcome, Guest. Please login or register.
Did you miss your activation email?

Login with username, password and session length
News: Go back to The Ethical Hacker Network Online Magazine Home Page
 
   Home   Help Calendar Login Register  
Pages: [1]   Go Down
  Print  
Author Topic: How useful is this for a real world penetration tester?  (Read 10409 times)
0 Members and 1 Guest are viewing this topic.
galaril
Newbie
*
Offline Offline

Posts: 5


View Profile
« on: December 25, 2007, 10:37:10 PM »

I am a an security professional in the financial institution space and am interested in the CPTS. In my work I am involved in risk assessments and also alot of penetration testing including web app vulnerability scanning. I looking to take the course by Mile2 to get more structured exposer to alot of the tools especially the main ones like NMAP,Nesses, password crackers etc. . I have heard some differnt things such as the CPTS focus a lot on the manual exploit techniques such as creating your own scripts  inPERL or soemthing like that. In my position most of our projects don't allow a ton of time to work on these more time consuming manual procedures and we have to rely mostly on scanning tools and analysis the output. Does the CPTS fit this type of purpose well? Does the course even go into analysis of the otput at all? Or is it primarily jsut show you how to install ,configure and run multiple tools?
I have also looked at the SANS GIAC couses like the Certified networkand system auditor course or the GCIH. GCIH has alot of info but I haven't heard too much on the GSNA.
Logged
LSOChris
Guest
« Reply #1 on: December 26, 2007, 05:42:44 AM »

did you look at the objectives?
Logged
galaril
Newbie
*
Offline Offline

Posts: 5


View Profile
« Reply #2 on: December 26, 2007, 08:42:03 PM »

Yes, and to be honest it is marketing material from Miles2 I am trying to get actual insight from people who have taken these courses.
Logged
LSOChris
Guest
« Reply #3 on: December 26, 2007, 09:09:48 PM »

the OBJECTIVES shouldnt be marketing hype they are the objectives.  the rest, well maybe.

http://www.mile2.com/Certified_Penetration_Testing_Specialist_CPTS.html

if you have the budget, you're better off with a SANS course over CEH or CPTS especially since it looks like you are doing more compliance scanning than real penetration testing the GCIH is a good place to start.

'The world does not need any more "ethical hackers". What is needed is more people who know the six steps for properly handling an incident' - Ed Skoudis

-Chris
« Last Edit: December 26, 2007, 09:16:38 PM by ChrisG » Logged
galaril
Newbie
*
Offline Offline

Posts: 5


View Profile
« Reply #4 on: December 27, 2007, 12:10:10 AM »

Thnaks for the info Chris and I not sure where the scanning that we do falls as far as being compliance scanning or real pen testing. All I know is my firm sells this service as pen testing though it is generally related to a larger project scope such as annual compliance etc. Also, a good protion of it is application vulnerability testing but in any case I am going to take the GCIH course. I forgot to mention that for me taking the exam and getting the actual certification is secondary to the course and the knowledge learned from the course and it's material. So for example I doubt I would ever really care to take the CPTS exam though I would probably take SANS CERT test just ecause they are well respected.
Logged
ligallama
Newbie
*
Offline Offline

Posts: 1


View Profile
« Reply #5 on: February 05, 2008, 09:21:11 AM »

hi to all,
Am interesting on penetration test specialist,
but I cant afford the training costs.and its real my desire to know this interesting course i ever seen.
I did cisco CCNA,CCDA,CCNP and pix firewall advanced four year back
and i didnt practice to my office becouse they dont have much complex networking.
but they focus to pen tester.And i feel like I can fit to this rather than finding someone else from outside the company.

so anybody who will be able to support me with all tools,technics and related materials,I will appriciate.

Am waiting for any body.

with best regards
ralph
Logged
bigwhiff
Newbie
*
Offline Offline

Posts: 14


View Profile
« Reply #6 on: February 05, 2008, 02:16:47 PM »

Hi,

I would strongly recommend the GCIH exam and class structure over the CEH.  With limited study you can complete the CEH after the GCIH class you couldn't pass the GCIH after a CEH. At least not with limited effort.

-Jack
Logged

Jack Campbell
CCNP CCDP GCIH GHTQ C|EH
http://secauditor.wordpress.com
Pages: [1]   Go Up
  Print  
 
Jump to:  

Powered by MySQL Powered by PHP Powered by SMF 1.1.18 | SMF © 2013, Simple Machines
Joomla Bridge by JoomlaHacks.com
Valid XHTML 1.0! Valid CSS!
Page created in 0.088 seconds with 23 queries.
 
Exclusive Deal

sansfire13_245x90_cw90.jpg
SANSFIRE 2013
June 15 - 22

5% Off w/ Code: EHN_5

SANS Deals 4 EH-Netters
5% OFF Any SANS Course in Any Format!
Coupon Code: EHN_5 Including SANS Rocky Mountain 2013 & SANS Boston 2013
Polls
Compared to this year, 2013 will be:
 
Recent Forum Topics
EH-Net News Feeds
Latest Additions
 
         
Free Business and Tech Magazines and eBooks

© 2013 The Ethical Hacker Network
Joomla! is Free Software released under the GNU/GPL License.