123ArticleOnline Logo
Welcome to 123ArticleOnline.com!
ALL >> Technology,-Gadget-and-Science >> View Article

Strategies For Physical Penetration Testing Outlined In New Isaca Resource

Profile Picture
By Author: Madhulina
Total Articles: 519
Comment this article
Facebook ShareTwitter ShareGoogle+ ShareTwitter Share

Physical penetration testing is often overlooked when it comes to security, despite a 28 percent increase in physical security incidents in both 2021 and 2022. Security professionals can gain a deeper understanding in a new ISACA resource, Physical Penetration Testing: The Most Overlooked Aspect of Security, which shares an overview of physical penetration testing, the significance of physical security, and an exploration of the methodologies and tools employed by physical penetration testers.

Physical penetration testing is designed to identify weaknesses in the physical security controls of an organization and simulate how a real attacker would try to gain access to restricted areas of information. The paper outlines different testing methods, including:
• Social engineering
• Physical/technical bypass
• Destructive vs. nondestructive testing
• Advanced persistent threats

Professionals can also learn about how organizations and testing firms decide on which test they use based on factors such as budget, scope of the engagement, and inside information provided by the organization. ...
... The publication explores these various testing types, including:
• Red team
• Black box
• White box
• Gray box
• Due diligence assessment (walkthrough)

“Technological advancements and variability in where organizational work is performed increases the difficulty securing sensitive data and assets. Enterprises cannot overlook the risks associated with physical access,” says Jon Brandt, Director, Professional Practices and Innovation at ISACA. “Physical security predates information security and while it may remain overshadowed by cyberthreats, the benefits of physical penetration testing are numerous and will strengthen any organization’s overall security posture.”

While there are advantages to physical penetration testing such as regulatory compliance, personnel safety, and data protection, there are also several challenges: cost, time, legal and ethical considerations, armed guard misunderstandings, off-limits areas/assets, and personnel who may not have the right skills for penetration testing. The paper shares strategies for overcoming challenges that an organization may encounter.

To download a complimentary copy of Physical Penetration Testing: The Most Overlooked Aspect of Security, visit www.isaca.org/resources/white-papers/2023/physical-penetration-testing. ISACA members have access to an accompanying CPE quiz.

This resource joins other ISACA content and guidance which can be found here.

###

About ISACA

ISACA® (www.isaca.org) is a global community advancing individuals and organizations in their pursuit of digital trust. For more than 50 years, ISACA has equipped individuals and enterprises with the knowledge, credentials, education, training and community to progress their careers, transform their organizations, and build a more trusted and ethical digital world. ISACA is a global professional association and learning organization that leverages the expertise of its more than 165,000 members who work in digital trust fields such as information security, governance, assurance, risk, privacy and quality. It has a presence in 188 countries, including 225 chapters worldwide. Through its foundation One In Tech, ISACA supports IT education and career pathways for underresourced and underrepresented populations.

Total Views: 199Word Count: 438See All articles From Author

Add Comment

Technology, Gadget and Science Articles

1. Aumovio Makes Successful Stock Market Debut
Author: Lochan Kaushik

2. Scraping Starbucks Coffee Trend Data For Gen Z
Author: Den Rediant

3. How A Bldc Fan With Light Enhances Home Décor And Functionality?
Author: Vikash Sharma

4. Uv Laser Marking Machine For Glass Wine Glasses
Author: Kate Green

5. Web Scraping Shopee Data For E-commerce Insights
Author: REAL DATA API

6. React.js State: A Complete Guide
Author: jatin

7. Manage Sales & Leasing With Our Advanced Real Estate Erp
Author: Focus Softnet

8. Shopee Data Scraping For Effective Business Growth Strategy
Author: Retail Scrape

9. Magicbricks And 99acres Data Scraping
Author: Actowiz Solutions

10. Real-time Shopee Product Data Scraping For Market Research
Author: REAL DATA API

11. Roi Of Professional Avatar Development: Why Quality Matters In The Metaverse
Author: LBM Solution

12. How Can Humanizing Ai Improve The Lives Of The Elderly?
Author: ada red

13. Edge Security Market Share Analysis By Offering Type
Author: Shreya

14. Scraping Real-time Grocery Prices Across Usa Platforms
Author: Den Rediant

15. Mongodb Aggregation Pipeline Optimization Guide For Mern Stack
Author: Mukesh Ram

Login To Account
Login Email:
Password:
Forgot Password?
New User?
Sign Up Newsletter
Email Address: