How do they match: Penetration Testers

  • Information Security Analyst
  • Information Security Assessor
  • Information Technology Security Tester

  • Evaluate network system security by conducting simulated internal and external cyberattacks using adversary tools and techniques. Attempt to breach and exploit critical systems and gain access to sensitive information to assess system security.

  • Configure information systems to incorporate principles of least functionality and least access.
  • Develop and execute tests that simulate the techniques of known cyber threat actors.
  • Discuss security solutions with information technology teams or management.
  • Identify new threat tactics, techniques, or procedures used by cyber threat actors.
  • Write audit reports to communicate technical and procedural findings and recommend solutions.

  • Develop computer or information security policies or procedures.
  • Develop computer or information systems.
  • Discuss design or technical features of products or services with technical personnel.
  • Examine records or other types of data to investigate criminal activities.
  • Prepare technical or operational reports.
  • Prepare scientific or technical reports or presentations.
  • Search files, databases or reference materials to obtain needed information.
  • Stay informed about current developments in field of specialization.