217k views
3 votes
When creating your written report of findings after completing a penetration test, you should provide a high-level synopsis of the test and the results Typically, this is the first section of the report and is intended for less-technical audiences. . It should be written in a manner that conveys all of the important conclusions of the report in a clear manner that is written in layman's terms. A tester should explain what was discovered in plain language and describe the risks to the business in terms that the client will understand.

User Elisse
by
7.0k points

1 Answer

1 vote

Final answer:

When creating a written report of findings after completing a penetration test, it is important to provide a high-level synopsis of the test and the results. This section, often called the Discussion or Conclusion, should be written in layman's terms and provide clear explanations of the discovered vulnerabilities and risks to the business. Recommendations and proper citations are also necessary components of the report.

Step-by-step explanation:

When creating a written report of findings after completing a penetration test, you should include a high-level synopsis of the test and the results. This section, often called the Discussion or Conclusion, is intended for less-technical audiences and should be written in layman's terms. It should provide clear and concise explanations of what was discovered, the risks to the business, and important conclusions of the report.

In the report, you should also include a section called Recommendations, where you explain what actions should be taken in response to the findings. Additionally, a References and bibliography section should be included to list all the sources cited in the report.

User AVee
by
7.9k points