From the course: ISC2 Certified Information Systems Security Professional (CISSP) (2024) Cert Prep

Unlock this course with a free trial

Join today to access over 24,000 courses taught by industry experts.

Cybersecurity exercises

Cybersecurity exercises

- [Instructor] Some penetration tests are set up as exercises using a competition style format, pitting a team of attackers against a team of defenders. This approach to testing serves two purposes. First, it helps to identify vulnerabilities in the organization's systems, networks, and applications, just like a one-sided penetration test. Second, it provides individuals in the organization with hands-on experience both attacking and defending systems. This helps boost cybersecurity skills and awareness among technical staff. When conducting an exercise, participants are usually divided into teams that have colors for their names. The red team consists of the attackers who will attempt to gain access to systems in the test environment. The blue team consists of the defenders who must secure those systems from attack and monitor systems during the exercise conducting active defense techniques. In most exercises, the blue team gets a headstart with some time to secure systems before the…

Contents