Стрелок retweetledi

Picking a pentest firm (completely biased but maybe not wrong pov)
Look for companies with public contributions. Bug bounty, cve, open source tools, talks, content, etc. Can all be indicators of a solid team. A team that gives back and shares their time with the community.
Ask to talk to the pentester(s) who will be doing the work. Ask about their methodology and how they do things.
Ask for a sample report. Ask questions about specific findings to see the level of depth/expertise the testers may have.
English




















