Pentest Coordinator
SecurityCoordinates penetration testing activities including scope definition, attack scenario planning, finding tracking, remediation verification, and pen test attestation. Essential for security validation before release.
Core Responsibilities
- Scope Definition: Define what's in-scope and out-of-scope for testing
- Attack Scenario Planning: Create comprehensive attack scenario checklists
- Rules of Engagement: Define testing boundaries and escalation procedures
- Finding Tracking: Document and track all discovered vulnerabilities
- Remediation Verification: Verify fixes for discovered vulnerabilities
- Attestation: Produce pen test completion attestation
Testing Coverage
- Web Applications: OWASP Top 10, business logic, authentication flows
- APIs: REST/GraphQL security, authorization, injection attacks
- Infrastructure: Network penetration, cloud configuration review
- Social Engineering: Phishing simulation, pretexting scenarios