Difference between revisions of "Threat-Led Penetration Testing"

From Open Risk Manual
(Created page with "== Definition == '''Threat-Led Penetration Testing'''. (TLPT) [also known as Red Team Testing] A controlled attempt to compromise the cyber resilience of an entity by simulat...")
(No difference)

Revision as of 11:23, 25 February 2020

Definition

Threat-Led Penetration Testing. (TLPT) [also known as Red Team Testing] A controlled attempt to compromise the cyber resilience of an entity by simulating the tactics, techniques and procedures of real-life threat actors. It is based on targeted threat intelligence and focuses on an entity’s people, processes and technology, with minimal foreknowledge and impact on operations.


Reference

  • G-7 Fundamental Elements