Title: Penetration Testing for Grown-Ups
Presenter: Ivan Arce, CTO and Co-Founder
Date: Feb. 9, 2009
Location: The Catamaran Resort Hotel and Spa, San Diego, CA
Event Information: http://www.isoc.org/isoc/conferences/ndss/09/
Abstract:
Penetration testing is over 30 years old yet for the most part of its history has been deemed a costly, obscure and narrowly focused security practice delivered as craftsmanship of limited value by very technically skilled security teams. The appearance in the early 2000s of commercial penetration testing software, open source tools and more formalized methodologies signaled the trend towards industrialization and more widespread adoption of the practice.
This growing adoption of penetration testing software and methodologies and their underlying philosophy imply a shift in the way of doing and thinking about security at the operational and tactical levels. To transcend the perception of being simply a "badness-o-meter" and leap to the more respectable status of key component of one's overall security strategy numerous technical, scientific and epistemological dilemmas must be addressed and, hopefully, solved.
In this talk Arce will go over the past decade's evolution of penetration testing, the current challenges and opportunities and the open and unexplored territory that grown-up security practitioners will face in the next decade.











