Sample Auditing and Penetration Test Reports

The General Auditing Report Format

This is an example of the format that a final report might take.

A Sample Security Policy Audit Interview

This is used to verify the understanding of, and compliance with, a current security policy.

The Sample Enterprise Audit

This report corresponds to a site audit.

The Sample Network Audit

This report corresponds to a network audit.

The Sample Host Audit

This report corresponds to a host audit.

A Home Office Sample Report

A report of a miniature enterprise.

A Sample Penetration Report

This is a report built by general consensus from the penetration testing community.

Some Suggestions for a Commercial Approach

A rough draft of a commercial report, with suggestions for various styles of assessment.


shrdlu AT deaddrop DOT org

Last modified: Sat Oct 30 22:59:39 PDT 2004