Infrastructure Penetration Testing
Within the discipline of infrastructure pentest, there are two subcategories:
- External Pentest: The network’s security posture is determined from the outside by investigating Internet facing assets, such as network devices, network ports and firewalls, and web applications.
- Internal Pentest: The network’s security posture is evaluated by attempting to compromise the network from the inside. The internal party will typically be an insider or a malicious entity having breached the company’s external perimeter.