Publisher's Note: Products purchased from Third Party sellers are not guaranteed by the publisher for quality, authenticity, or access to any online entitlements included with the product.Cutting-edge social engineering testing techniques"Provides all of the core areas and nearly everything [you] need to know about the fundamentals of the topic."--
SlashdotConduct ethical social engineering tests to identify an organization's susceptibility to attack. Written by a global expert on the topic,
Social Engineering in IT Security discusses the roots and rise of social engineering and presents a proven methodology for planning a test, performing reconnaissance, developing scenarios, implementing the test, and accurately reporting the results. Specific measures you can take to defend against weaknesses a social engineer may exploit are discussed in detail. This practical guide also addresses the impact of new and emerging technologies on future trends in social engineering.
- Explore the evolution of social engineering, from the classic con artist to the modern social engineer
- Understand the legal and ethical aspects of performing a social engineering test
- Find out why social engineering works from a victim's point of view
- Plan a social engineering test--perform a threat assessment, scope the test, set goals, implement project planning, and define the rules of engagement
- Gather information through research and reconnaissance
- Create a credible social engineering scenario
- Execute both on-site and remote social engineering tests
- Write an effective social engineering report
- Learn about various tools, including software, hardware, and on-site tools
- Defend your organization against social engineering attacks
Sharon Conheady is the Director of Social Engineering & penetration testing at First Defence Information Scurity in the UK. Conheady holds a degree in Computer Science from Trinity College Dublin and a MSC in Information Security from Westminster University. Prior to joining First Defense, she served as a Professional Services Director at the vulnerability management firm Outpost24, after serving several years as a penetration tester with Ernst & young. Conheady leads social engineering training seminars and has spoken around the world about social engineering at conferences that include Deepsec, Recon, CONFidence, ISSE, ISF, and SANS Secure Europe.