<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: How to get a job in a pen test team</title>
	<atom:link href="http://snakeoillabs.com/wordpress/2006/01/26/how-to-get-a-job-in-a-pen-test-team/feed/" rel="self" type="application/rss+xml" />
	<link>http://snakeoillabs.com/wordpress/2006/01/26/how-to-get-a-job-in-a-pen-test-team/</link>
	<description>Random acts of hackery, geekery and skullduggery</description>
	<lastBuildDate>Mon, 08 Nov 2010 21:03:05 +0000</lastBuildDate>
	<generator>http://wordpress.org/?v=2.9.2</generator>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
		<item>
		<title>By: SnakeOil Labs &#38;#187; Thoughts from the Interview Room</title>
		<link>http://snakeoillabs.com/wordpress/2006/01/26/how-to-get-a-job-in-a-pen-test-team/comment-page-1/#comment-2462</link>
		<dc:creator>SnakeOil Labs &#38;#187; Thoughts from the Interview Room</dc:creator>
		<pubDate>Fri, 17 Feb 2006 20:38:04 +0000</pubDate>
		<guid isPermaLink="false">http://snakeoillabs.com/wordpress/2006/01/26/how-to-get-a-job-in-a-pen-test-team/#comment-2462</guid>
		<description>[...] I had an interesting comment from James in an earlier post about penetration testing teams. There were a lot of questions in there so I thought I&#8217;d write a response as a new post. We&#8217;re still hiring by the way, so if you&#8217;re looking to join a fledgling security consultancy on the sharp edge of the &#8216;verse, you could do worse than get in touch (yes I know that it&#8217;s the blog for snakeoillabs page but it&#8217;ll get to me). [...]</description>
		<content:encoded><![CDATA[<p>[...] I had an interesting comment from James in an earlier post about penetration testing teams. There were a lot of questions in there so I thought I&#38;#8217;d write a response as a new post. We&#38;#8217;re still hiring by the way, so if you&#38;#8217;re looking to join a fledgling security consultancy on the sharp edge of the &#38;#8216;verse, you could do worse than get in touch (yes I know that it&#38;#8217;s the blog for snakeoillabs page but it&#38;#8217;ll get to me). [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: James</title>
		<link>http://snakeoillabs.com/wordpress/2006/01/26/how-to-get-a-job-in-a-pen-test-team/comment-page-1/#comment-2461</link>
		<dc:creator>James</dc:creator>
		<pubDate>Thu, 16 Feb 2006 23:12:29 +0000</pubDate>
		<guid isPermaLink="false">http://snakeoillabs.com/wordpress/2006/01/26/how-to-get-a-job-in-a-pen-test-team/#comment-2461</guid>
		<description>Assuming your&#039;ve finished hiring - what questions did you ask your interviewee&#039;s? Did you get them to demo anything? It&#039;s intresting to hear from an HR side of things - whats your take the techie tester and the &#039;technical sales&#039; kind of pen tester? Often it&#039;s good to have a non uber geek on your customers site to act as a contact while doing external audits - what sort of ratio does you company have of these?

It&#039;s an intesting industry with some very different extremes isn&#039;t it.</description>
		<content:encoded><![CDATA[<p>Assuming your&#8217;ve finished hiring &#8211; what questions did you ask your interviewee&#8217;s? Did you get them to demo anything? It&#8217;s intresting to hear from an HR side of things &#8211; whats your take the techie tester and the &#8216;technical sales&#8217; kind of pen tester? Often it&#8217;s good to have a non uber geek on your customers site to act as a contact while doing external audits &#8211; what sort of ratio does you company have of these?</p>
<p>It&#8217;s an intesting industry with some very different extremes isn&#8217;t it.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: James</title>
		<link>http://snakeoillabs.com/wordpress/2006/01/26/how-to-get-a-job-in-a-pen-test-team/comment-page-1/#comment-2460</link>
		<dc:creator>James</dc:creator>
		<pubDate>Thu, 16 Feb 2006 11:43:16 +0000</pubDate>
		<guid isPermaLink="false">http://snakeoillabs.com/wordpress/2006/01/26/how-to-get-a-job-in-a-pen-test-team/#comment-2460</guid>
		<description>&lt;!-- spamk    : Used HTTP_VIA header. --&gt;
&lt;!-- spamk    : Comment on old post. --&gt;
&lt;!-- spamk    : CAPTCHA:sent-0-times:1140093797 --&gt;
&lt;!-- spamk    : KARMA: -3 --&gt;
&lt;!-- spamk    : Treatment: captcha --&gt;
Assuming you&#039;ve finished interviewing - what question did you ask your candiates? Did you ask them to demo anything? IMHO often non-techie people are better client facing, and are often useful as an on-site contact when conducting assessments (as long as they have a basic understanding) but then you get into the world of how much you pay them, are they less/more/or the same in terms of revenue as your techies that dream shellcode. What sort of makeup is you pen test team - 1/2 and 1/2 or is it more like a pen test team and a external technical sales guy?

Intresting to see it from a HR point of view..</description>
		<content:encoded><![CDATA[<p><!-- spamk    : Used HTTP_VIA header. --><br />
<!-- spamk    : Comment on old post. --><br />
<!-- spamk    : CAPTCHA:sent-0-times:1140093797 --><br />
<!-- spamk    : KARMA: -3 --><br />
<!-- spamk    : Treatment: captcha --><br />
Assuming you&#8217;ve finished interviewing &#8211; what question did you ask your candiates? Did you ask them to demo anything? IMHO often non-techie people are better client facing, and are often useful as an on-site contact when conducting assessments (as long as they have a basic understanding) but then you get into the world of how much you pay them, are they less/more/or the same in terms of revenue as your techies that dream shellcode. What sort of makeup is you pen test team &#8211; 1/2 and 1/2 or is it more like a pen test team and a external technical sales guy?</p>
<p>Intresting to see it from a HR point of view..</p>
]]></content:encoded>
	</item>
</channel>
</rss>
