Nested Knowledge

Bringing Systematic Review to Life

User Tools

Site Tools


wiki:policies:penetration_testing

This is an old revision of the document!


Penetration Testing

Nested Knowledge will undergo penetration testing of its web application on an annual basis. An external security firm will test the web application to identify vulnerabilities. During the testing period, no software releases will be pushed, except releases with important bug fixes. Any vulnerabilities detected will be remediated promptly by the Nested Knoweledge development team.

Each penetration test will follow the steps:

  1. Reconnaissance: gathering information before an attack
  2. Enumeration: finding attack vectores
  3. Exploitation: verifying security weakness
  4. Documentation: Recording results

Revision History

AuthorDate of Revision/ReviewComments/Description
K. Cowie04/07/2023Drafted
K. Kallmes

Return to Policies

wiki/policies/penetration_testing.1680877466.txt.gz · Last modified: 2023/04/07 14:24 by katcow