Home
Calendar
Certifications
Columns
Features
Forum
Resources
Vitals
Latest Additions
April 2013 Free Giveaway Sponsor - eLearnSecurity
Human Intelligence to Navigate the Security Data Deluge
February 2013 Free Giveaway Winner of SANS CyberCon Training
Interview: Bugcrowd Founders on Herding Ninjas for Crowdsourced Bug Bounties
Network Forensics: The Tree in the Forest
March 2013 Free Giveaway Sponsor - Mile2
Book Review: Violent Python
February 2013 Free Giveaway Sponsor - SANS
Holiday 2012 Free Giveaway Winner of Metasploit Pro by Rapid7
Course Review: SANS FOR408 Computer Forensic Investigations – Windows In-Depth
The Security Consulting Sugar High
Tutorial: Fun with SMB on the Command Line
Interview: Ilia Kolochenko, CEO of High-Tech Bridge
October 2012 Free Giveaway Winner of LearningGate Training
The Broken: Assessing Corporate Security in 2012 to Make a Better 2013
EH-Net Login
Welcome Guest.
Username:
Password:
Remember me
Lost Password?
No account yet?
Register
Who's Online
We have 36 guests online
Free Business and Tech Magazines and eBooks
You are here:
Home
Resources
Career Central
Question about penetration testing specialties
EH-Net
May 21, 2013, 11:37:00 AM
Welcome,
Guest
. Please
login
or
register
.
Did you miss your
activation email?
1 Hour
1 Day
1 Week
1 Month
Forever
Login with username, password and session length
News
: Go back to The Ethical Hacker Network Online Magazine
Home Page
Home
Help
Calendar
Login
Register
EH-Net
>
Resources
>
Career Central
(Moderator:
don
) >
Question about penetration testing specialties
Pages: [
1
]
Go Down
« previous
next »
Print
Author
Topic: Question about penetration testing specialties (Read 5320 times)
0 Members and 1 Guest are viewing this topic.
TAnarchy
Newbie
Offline
Posts: 5
Question about penetration testing specialties
«
on:
December 30, 2012, 06:29:50 PM »
Hello, hopefully this is the right part of the forum to post this. I am trying to learn more about a career in penetration testing. I was wondering, do testers tend to specialize in either Network penetration testing or Application penetration testing, or do they tend to do both?
Thank you
Logged
hayabusa
Hero Member
Offline
Posts: 1631
Re: Question about penetration testing specialties
«
Reply #1 on:
December 30, 2012, 07:45:03 PM »
There are folks that go one direction or another, and there are folks who are more rounded and do both. I'd suggest, at least initially, that you explore both, but focus your time in whichever area is your 'strong suit', then, once you get a feel for things, decide whether to be a generalist, or continue to focus in a specific area.
I consider myself a solid / strong generalist, but I have no issue teaming with folks whom I know are specialists in a given realm, if it means that A.) I'm free to focus on certain areas for a given test, and B.) the overall result can be more detailed and 'all inclusive' for certain engagements.
Hope that makes sense.
Logged
~ hayabusa ~
"All men can see these tactics whereby I conquer, but what none can see is the strategy out of which victory is evolved." - Sun Tzu, 'The Art of War'
OSCE, OSCP , GPEN, C|EH
H1t M0nk3y
Hero Member
Offline
Posts: 864
Re: Question about penetration testing specialties
«
Reply #2 on:
December 31, 2012, 07:43:02 AM »
Welcome TAnarchy to EH.net!
I agree with Hayabusa, you should start with both and maybe do like I did, learn more and more in "layers". What I mean by that is to learn the basic of both and once you are starting to understand what you are talking about, go a little more deeper in both, then do this again and again and again.
I personally believe that a very good network penetration tester who has no clue what SQL Injection is, then this person is a poor pentester. On the other hand, someone who knows a lot about application vulnerabilities but has no idea what a reverse proxy is, may not be able to test or leverage vulnerabilities in his applications.
So to me, you must know both to be good at either of them...
Logged
OSCP, GPEN, GWAPT, GSEC, CEH, CISSP
TAnarchy
Newbie
Offline
Posts: 5
Re: Question about penetration testing specialties
«
Reply #3 on:
January 01, 2013, 10:13:07 AM »
Thank you for your answers and Happy New Year. I am currently an (web) application developer considering moving into security, so the application side is much easier for me to understand but I'll definitely try to learn the basics of both.
Logged
H1t M0nk3y
Hero Member
Offline
Posts: 864
Re: Question about penetration testing specialties
«
Reply #4 on:
January 01, 2013, 07:27:14 PM »
I am also a Web Application Developer (Java) and I started about 5 years ago studying information security.
I could probably give you a few hints...
My path was:
1- GSEC (very good certification to learn the basic)
2- CEH (also a good base, bore "attack-oriented" than GSEC)
3- Worked -- A LOT -- on OSCP, but didn't pass the exam. Learn a lot of new things. PWB is the best course I have ever taken. Worth every penny.
4- GPEN (quite easy after having worked on OSCP...)
5- CISSP (A must have to work, but the worse exam I have ever written...)
6- GWAPT (My first web application certification, because I already knew a lot on the subject and wanted a cert to back my experience)
But my goal is to be a pentester, not a manager. So you may feel that a different path would be better for you. But to me, GSEC than OSCP will give you a strong base in information security, regardless which "specialization" you choose.
Keep posting your questions on this forum, we are lucky to have experts in every field!
Logged
OSCP, GPEN, GWAPT, GSEC, CEH, CISSP
ziggy_567
Sr. Member
Offline
Posts: 361
Re: Question about penetration testing specialties
«
Reply #5 on:
January 02, 2013, 10:38:17 AM »
In my limited experience, the level of specialization required of a pentester is directly proportional to the size of the consulting firm you work for. The bigger the firm, the more specialization you can have. Smaller firms tend to need consultants that can do a lot of things well.
Logged
--
Ziggy
eCPPT - GSEC - GCIH - GCUX - RHCE - SCSecA - Security+ - Network+
Cyber.spirit
Sr. Member
Offline
Posts: 351
The World is sick, Save your mind...
Re: Question about penetration testing specialties
«
Reply #6 on:
January 02, 2013, 01:26:12 PM »
As a pentester it is better to learn both but i prefer to learn net pentesting first then app pentesting
Logged
ICS Academy Network Security Certified
amolarakh
Newbie
Offline
Posts: 2
Re: Question about penetration testing specialties
«
Reply #7 on:
January 02, 2013, 03:57:35 PM »
Hi there,
This is Amol Here,
I done CEH,RHCE,RHCA,RHCSS. Having 8 years exp in Linux Security & Application Security.
Though this is my first post, I am member of EH from 2007.
According to me
Pentester is Professional Entity which knows everything about Network/Infrastructure/Application/Physical Security for a client. And knows nothing about that client for outsider.
Logged
Amidamaru
Newbie
Offline
Posts: 14
Re: Question about penetration testing specialties
«
Reply #8 on:
February 11, 2013, 08:49:14 AM »
With some time ago I've got an interview for a pentesting position into NZ.
Two younger and nice guys discussed with me in one and a half hour different technical aspects and attacking vector details from Wifi until OWASP Top 10.
Later on I found that one from them is well known into underground world and he works mainly as a freelancer.
However, at some point I asked them how much do their care about certifications and they let me know that into the pen-testing world all it matters is to gain root into the systems, whatever you have or have not specific certification.
The interview ends with the invite to proof my skills into their virtual lab which it seems for me the very fair method to get eventually the job.
I'm not a natural born hacker or something and I needed / I need to learn all the time. I'm not good or bad but but just guided by Edison motto:
"Genius means 1% inspiration and 99% effort"...more or less
Bottom line, in my opinion, you should learn from pleasure and if this learning activity can gets you some paper too then why not?
Logged
"A genius is one percent inspiration and ninety nine percent perspiration." Thomas EDISON
H1t M0nk3y
Hero Member
Offline
Posts: 864
Re: Question about penetration testing specialties
«
Reply #9 on:
February 11, 2013, 09:24:45 AM »
Quote
Bottom line, in my opinion, you should
learn from pleasure
and if this learning activity can gets you some paper too then why not?
And for many of us, "pleasure" turned to "pain" before going back to "pleasure" again...
All jokes aside, Amidamaru is right: if you don't love it, you can't spend the required effort into it. You just need to go one bite at a time. You're interested in wifi? Have fun for a few weeks exploring that. Then switch your interest on whatever interests you at that time. I think it's a nice way of not getting overwelm by all the materials that needs to be learn...
Logged
OSCP, GPEN, GWAPT, GSEC, CEH, CISSP
impelse
Hero Member
Offline
Posts: 565
Re: Question about penetration testing specialties
«
Reply #10 on:
February 11, 2013, 10:55:56 AM »
Quote from: H1t M0nk3y on February 11, 2013, 09:24:45 AM
Quote
Bottom line, in my opinion, you should
learn from pleasure
and if this learning activity can gets you some paper too then why not?
And for many of us, "pleasure" turned to "pain" before going back to "pleasure" again...
All jokes aside, Amidamaru is right: if you don't love it, you can't spend the required effort into it. You just need to go one bite at a time. You're interested in wifi? Have fun for a few weeks exploring that. Then switch your interest on whatever interests you at that time. I think it's a nice way of not getting overwelm by all the materials that needs to be learn...
It is true, you became overwelm with a lot of fields in security, one bit at the time.
Logged
CCNA, Security+, 70-290, 70-291
CCNA Security
Taking Hackingdojo training
Website:
http://blog.thehost1.com/
MaXe
Hero Member
Offline
Posts: 669
I've just upgraded myself to a cyborg muahahaa!!1
Re: Question about penetration testing specialties
«
Reply #11 on:
February 11, 2013, 08:51:22 PM »
Quote from: TAnarchy on December 30, 2012, 06:29:50 PM
Hello, hopefully this is the right part of the forum to post this. I am trying to learn more about a career in penetration testing. I was wondering, do testers tend to specialize in either Network penetration testing or Application penetration testing, or do they tend to do both?
Often they specialize in application (i.e. program) security or web application security, where network security is another part as well. There are of course, those who specialize in network security only, but they are often security engineers and not penetration testers, unless they attack the protocols themselves.
In my current job, we have people in those 3 fields, plus other mandatory fields for everyone, such as but not limited to wireless security, physical security (social engineering), PCI (that's another team), etc.
So yeah, I forgot to mention people specialize in PCI as well, but that's not penetration testing though, even though some parts of it is related somewhat when you have to check whether a client is in PCI scope or not.
Quote from: amolarakh on January 02, 2013, 03:57:35 PM
According to me
Pentester is Professional Entity which knows everything about Network/Infrastructure/Application/Physical Security for a client. And knows nothing about that client for outsider.
It is impossible to know "everything". No matter how many years, no matter how much experience you got, there will always be old, perhaps extremely old, new, or very new things, even current things you will not know about.
I often see people extremely skilled in application security (reverse engineering, buffer overflows, heap overflows, dep, rop, aslr, etc), who are brilliant in this field, but lacks knowledge in web application security. (Often crucial and specialist understanding of how everything can be tied together, including many of the possible attack vectors. Knowing the most basic ways can be taught to anyone, even non-hackers.)
Logged
I'm an InterN0T'er
Pages: [
1
]
Go Up
Print
« previous
next »
Jump to:
Please select a destination:
-----------------------------
EH-Net
-----------------------------
=> Calendar Of Events
===> ChicagoCon 2007
===> ChicagoCon 2008s
===> ChicagoCon 2008f
===> ChicagoCon 2009s
=> Ethical Hacktivism
=> News Items and General Discussion About EH-Net
===> Greetings
=> Special Events
-----------------------------
Ethical Hacking Discussions and Related Certifications
-----------------------------
=> General Certification
===> Networking
===> OS
===> Security
=> Compliance, Regulations & Standards
=> Control Systems
=> Cyber Warfare
=> Forensics
===> CCE / MCCE - (Master) Certified Computer Examiner
===> CHFI - Computer Hacking Forensic Investigator
===> EnCE - EnCase® Certified Examiner
===> GCFA - GIAC Certified Forensics Analyst
=> Hardware
=> Incident Response
===> CSIH - Computer Security Incident Handler
===> GCIH - GIAC Certified Incident Handler
=> Malware
===> Advisories
=> Mobile
=> Network Pen Testing
===> CEH - Certified Ethical Hacker
===> CPTC - Certified Penetration Testing Consultant
===> CPTE - Certified Penetration Testing Engineer
===> CSTA - Certified Security Testing Associate
===> eCPPT - eLearnSecurity Certified Professional Penetration Tester
===> ECSA - EC-Council Certified Security Analyst
===> GPEN - GIAC Certified Penetration Tester
===> OSCP - Offensive Security Certified Professional
=> Physical Security
=> Programming
=> Social Engineering
=> Web Applications
=> Wireless
===> CWNP Certs
===> GAWN - GIAC Assessing Wireless Networks
===> OSWP - Offensive Security Wireless Professional
=> Other
-----------------------------
Columns
-----------------------------
=> Editor-In-Chief
=> Andress
=> Gates
=> Haddix
=> Hadnagy
=> Heffner
=> Hoffman
=> Linn
=> RichM
=> Murray
=> J. Peltier
=> Weidman
=> Wilson
-----------------------------
Features
-----------------------------
=> /root
=> Book Reviews
=> Opinions
=> Skillz
===> Examples
===> May 06 - Star Hacks, Episode V: The Empire Hacks Back
===> July 06 - Hack Bill!
===> Sept 06 - Netcat in the Hat
===> Nov 06 - Hitch-Hackers Guide to the Galaxy
===> Dec 06 - A Christmas (Hacking) Story
===> Feb 07 - Charlottes Web Site
===> April 07 - Microsoft Office Space
===> June 07 - Serenity Hack
===> Oct 07 - Worst. Ethical. Hacker. Challenge. Ever.
===> Dec 07 - Frosty the Snow Crash
===> March 2008 - It Happened One Friday
===> Oct 2008 - Scooby Doo and the Crypto Caper
===> Dec 08 - Santa Claus Is Hacking to Town
===> Feb 2009 - Brady Bunch Boondoggle
===> July 2009 - Prison Break
===> October 2009 - SSHliders
===> December 2009 - Miracle on Thirty-Hack Street
===> December 2010 - The Nightmare Before Charlie Browns Christmas
-----------------------------
Resources
-----------------------------
=> Career Central
===> Looking For Work
===> Looking To Hire
=> Links to cool sites.
=> Mass Media
=> News from the Outside World
=> Tools
=> Tutorials
===> Tutorial Requests
Loading...
Exclusive Deal
SANSFIRE 2013
June 15 - 22
5% Off
w/ Code
:
EHN_5
SANS Deals 4 EH-Netters
5% OFF
Any
SANS Course
in Any Format!
Coupon Code:
EHN_5
Including
SANS Rocky Mountain 2013
&
SANS Boston 2013
Polls
Compared to this year, 2013 will be:
Great!
Better.
About the same.
Little worse.
FUBAR!
Recent Forum Topics
Programming
: Finished Python Course in Codecademy now what?
(12) by
3xban
Network Pen Testing
: AIX Vulnerability Assessments
(1) by
3xban
General Certification
: CPT Practical Submission
(1) by
UNIX
OSCP - Offensive Security Certified Professional
: Failed my first attempt at the OSCP exam
(94) by
azmatt
Tools
: Social-Engineer Toolkit (SET) Version 5.0 “The Wild West” Released
(2) by
m0wgli
Malware
: EICAR?
(3) by
UKSecurityGuy
Advisories
: HTB23154: Multiple Vulnerabilities in Exponent CMS
(0) by
AndyP
Advisories
: HTB23153: Multiple Vulnerabilities in Jojo CMS
(0) by
AndyP
Advisories
: HTB23151: Cross-Site Request Forgery (CSRF) in UMI.CMS
(0) by
AndyP
Tutorials
: Need guidance
(8) by
r0ckm4n
OSCP - Offensive Security Certified Professional
: Class Scheduled 6/8 - Linux n00b
(7) by
Taemyks
OSCP - Offensive Security Certified Professional
: OSCP exam scheduled
(6) by
gbhat
Incident Response
: LinkedIn Forensics
(0) by
AFENTIS_Forensics
General Certification
: Red Team/Blue Team
(1) by
ajohnson
Career Central
: Starter cert?
(3) by
Grendel
Network Pen Testing
: Beginner Ethical Hacker
(1) by
m0wgli
Web Applications
: Nessus and Nikto
(4) by
Seen
Network Pen Testing
: Cracking salted MD5 hash
(4) by
n37sh@rk
CEH - Certified Ethical Hacker
: Passed my C|EH
(3) by
n37sh@rk
Mass Media
: EC-council hacked, irony at his best?
(0) by
j0rDy
Web Applications
: SQL Injection into an INSERT statement.
(6) by
eyenit0
Network Pen Testing
: Solution for sipXtapi INVITE Message CSeq Field Header Remote Overflow
(1) by
m0wgli
Web Applications
: dns
(2) by
H1t M0nk3y
Other
: BSides Boston
(0) by
3xban
Career Central
: InfoSec in Central, FL
(2) by
tturner
Web Applications
: Web vulnerability scanner
(4) by
H1t M0nk3y
EH-Net News Feeds
Latest Additions
Privacy Notice
for TDCC & All Properties
© 2013 The Ethical Hacker Network
Joomla!
is Free Software released under the GNU/GPL License.