7種主要的安全測(cè)試類型是:
1.漏洞掃描:自動(dòng)軟件針對(duì)已知的漏洞掃描系統(tǒng)。
2.安全掃描:手動(dòng)或自動(dòng)識(shí)別網(wǎng)絡(luò)和系統(tǒng)弱點(diǎn)的技術(shù)。
3.滲透測(cè)試:滲透測(cè)試是關(guān)于安全測(cè)試的,它有助于識(shí)別系統(tǒng)中的漏洞。
4.風(fēng)險(xiǎn)評(píng)估:包括對(duì)系統(tǒng)中可能的風(fēng)險(xiǎn)進(jìn)行分析。風(fēng)險(xiǎn)分為低、中、高三種。
5.安全審計(jì):完成對(duì)系統(tǒng)和應(yīng)用程序的檢查,以檢測(cè)漏洞。
6.道德黑客:為檢測(cè)系統(tǒng)中的缺陷而非個(gè)人利益而對(duì)系統(tǒng)進(jìn)行的黑客攻擊。
7.態(tài)勢(shì)評(píng)估:將安全掃描、道德黑客和風(fēng)險(xiǎn)評(píng)估結(jié)合起來(lái),以顯示組織的總體安全態(tài)勢(shì)。
英文:The seven main types of security testing as per Open Source Security Testing methodology manual are:
1.Vulnerability Scanning: Automated software scans a system against known vulnerabilities.
2.Security Scanning:Manual or automated technique to identify network and system weaknesses.
3.Penetration testing: Penetration testing is on the security testing which helps in identifying vulnerabilities in a system.
4.Risk Assessment: It involves analysis of possible risk in the system. Risks are classified as Low, Medium and High.
5.Security Auditing:Complete inspection of systems and applications to detect vulnerabilities.
6.Ethical hacking:Hacking done on a system to detect flaws in it rather than personal benefits.
7.Posture Assessment:This combines Security scanning, Ethical Hacking and Risk Assessments to show an overall security posture of an organization.
更多關(guān)于網(wǎng)絡(luò)安全培訓(xùn)的問題,歡迎咨詢千鋒教育在線名師。千鋒教育擁有多年IT培訓(xùn)服務(wù)經(jīng)驗(yàn),采用全程面授高品質(zhì)、高體驗(yàn)培養(yǎng)模式,擁有國(guó)內(nèi)一體化教學(xué)管理及學(xué)員服務(wù),助力更多學(xué)員實(shí)現(xiàn)高薪夢(mèng)想。