Congratulations on joining ACME Widgets Inc as the senior security specialist. On your first week, the CISO invites you to an urgent meeting. He has just read about a MAJOR Vulnerability discovered in Apache web servers. The vulnerability is of an RCE type and may allow threat actors to compromise the servers and gain ROOT access. Since ACME uses Apache web-servers he is concerned.The CISO also mentioned that it has been a while since they last performed a penetration test on the environment and, as such, he is very worried and would like you to bring in a 3rd party to conduct a PT as soon as possible.ACME would need to go to RFP to find the best vendor for this project.What are some of the parameters you would need to consider in order to write the RFP and choose the best vendor for the job? Some of the questions you might want to consider are:
Type of assessment needed (PT/VA/Health checks)?Black/White/Grey Box methodology?



Answer :

Other Questions