How do they match: Penetration Testers

  • Information Technology Security Tester
  • Information Security Analyst
  • Information Security Assessor

  • Evaluate network system security by conducting simulated internal and external cyberattacks using adversary tools and techniques. Attempt to breach and exploit critical systems and gain access to sensitive information to assess system security.

  • Configure information systems to incorporate principles of least functionality and least access.
  • Discuss security solutions with information technology teams or management.
  • Evaluate vulnerability assessments of local computing environments, networks, infrastructures, or enclave boundaries.
  • Investigate security incidents, using computer forensics, network forensics, root cause analysis, or malware analysis.
  • Test the security of systems by attempting to gain access to networks, Web-based applications, or computers.

  • Develop computer or information security policies or procedures.
  • Develop computer or information systems.
  • Search files, databases or reference materials to obtain needed information.
  • Stay informed about current developments in field of specialization.
  • Test computer system operations to ensure proper functioning.