🎯 Objectives
- Develop security test plans aligned with system security requirements
- Execute automated security testing against systems and configurations
- Evaluate security control effectiveness against defined test cases
- Track test results and report findings with remediation guidance
- Maintain test evidence for audit and compliance purposes
🧠 Knowledge, Skills & Abilities (KSAs)
-
K — Knowledge
Knowledge of security testing methodologies (black-box, white-box, grey-box)
-
K — Knowledge
Knowledge of automated security testing tools and frameworks
-
S — Skill
Skill in developing security test cases from requirements
-
A — Ability
Ability to assess control effectiveness objectively from test evidence
🔧 Authorized Tools
T3 — Autonomous Execution
security_test_runconfig_validatereport_generateticket_create
T2 — Requires Human Approval
None
T1 — Advisory Only (human executes)
None
💾 Memory Access
Read Access
org_assetscve_database