Security Analyst vs Hacker
Hi
When I was explaining to my friend about the approach of Security Analyst for Security testing of an Application in an organization & Hackers approach for the same application, I got the following in my mind about their fundamental differences/perspectives.
| Security Analyst |
Hacker |
| Tries to close all the doors |
Tries to expose one open door |
| time/budget constraint |
No time/No budget constraint |
| has to know all security issues |
expertise required in one attack |
| resource constraint |
unlimited resources |
| tools constraint |
unlimited tools |
| building defenses |
finding holes |