Identification of the pentester profile desired by Brazilian companies

Authors

DOI:

https://doi.org/10.51359/2317-0115.2023.260729

Keywords:

pentest, penetration testing, requirements, skills, abilities

Abstract

The field of computer security has been evolving so rapidly that it has been difficult to identify the main requirements demanded of professionals in this area. This study identifies the most important skills for conducting penetration tests on computer systems. Current solutions for mapping the desirable characteristics of a pentester are limited. This work proposes an automated solution for collecting and classifying these characteristics. The relevance of the collected requirements is established based on the mention, influence, and importance of each identified competency. The results show that Brazilian companies prefer certified professionals with expertise in networks and specialization in mobile applications or web systems. Fluency in English is also essential.

References

AKAMAI. https://www.akamai.com/pt/resources/state-of-the-internet/slipping-through-the-security-gaps-the-rise-of-application-and-api-attacks. Relatório SOTI de apps e APIs. 2023.

ANTHONY JNR, B. Managing digital transformation of smart cities through enterprise architecture-a review and research agenda. Enterprise Information Systems. V15. N.3 p. 299-331. 2021.

BISWAS, R.; BISWAS, R. Disruptive change from robotics, industrial automation and the digital economy. Emerging markets megatrends. p. 135-147. 2018.

BRIN, S.; PAGE, L. Reprint of: The anatomy of a large-scale hypertextual web search engine. Computer networks. V56. N.18 p. 3825-3833. 2012.

CALANCA, F.; SAYFULLINA, L.; MINKUS, L.; WAGNER, C.; MALMI, E. Responsible team players wanted: an analysis of soft skill requirements in job advertisements. EPJ Data Science. V8. N.1 p. 1-20. 2019.

CETIC.BR. https://cetic.br/pt/publicacao/resumo-executivo-pesquisa-sobre-o-uso-das-tecnologias-de-informacao-e-comunicacao-nos-domicilios-brasileiros-tic-domicilios-2020 Pesquisa TIC domicílios. 2020.

CHERVEN, K. Network graph analysis and visualization with Gephi. 2013.

DE SILVA, R.; RUPASINGHE, T. D.; APEAGYEI, P. A collaborative apparel new product development process model using virtual reality and augmented reality technologies as enablers. International Journal of Fashion Design, Technology and Education. V12. N.1 p. 1-11. 2019.

DUTRA, T. N. A.; CARVALHO, A. V. O profissional da informação e as habilidades exigidas pelo mercado de trabalho emergente. Encontros Bibli: revista eletrônica de biblioteconomia e ciência da informação. V11. N.22 p. 178-194. 2006.

EDUARDO, M.; AFANASEV, V.; ZHUSTEC. https://github.com/vifreefly/kimuraframework Kimurai. 2023.

ESTADÃO. https://www.estadao.com.br/economia/negocios/ciberseguranca-salario-cursos-ti/. Demanda por

cibersegurança faz salário disparar e multiplica cursos de TI. 2022.

FUNDAÇÃO GETÚLIO VARGAS. https://portal.fgv.br/noticias/pandemia-acelerou-processo-transformacao-digital-empresas-brasil-revela-pesquisa. Pandemia acelerou processo de transformação digital das empresas no Brasil. 2022.

GABOR, D.; BROOKS, S. The digital revolution in financial inclusion: international development in the fintech era. New political economy. V22. N.4 p. 423-436. 2017.

GARDINER, A.; AASHEIM, C.; RUTNER, P.; WILLIAMS, S. Skill requirements in big data: A content analysis of job advertisements. Journal of Computer Information Systems. V58. N.4 p. 374-384. 2018.

GIORDANO, A.; PAGANO, A. The Chinese policy of highly-qualified human capital: a strategic factor for global competition in innovation. Transition Studies Review. V19. p. 325-337. 2013.

GOLDSMITH, A.; SALEHUDDIN MOHD ZAHARI, M. Hospitality education in Malaysia: Filling the skill gap. International Journal of Contemporary Hospitality Management. V6. N.6 p. 27-31. 1994.

HOSU, I.; IANCU, I. Digital entrepreneurship and global innovation. IGI Global. 2016.

ISC2. https://www.isc2.org//-/media/ISC2/Research/2022-WorkForce-Study/ISC2-Cybersecurity-Workforce-Study.ashx. Cybersecurity Workforce Study. 2022.

TOBIAS, L. https://github.com/leonardobotrel/Perfil-pentester. Identificação do perfil de pentester desejado pelas empresas brasileiras. 2023.

TAMER, C.; VIANA, C.; SOARES, L. A.; LIMA, M. Perfil do profissional cont{'a}bil demandado pelo mercado de trabalho: um estudo no norte do Brasil. Revista Universo Contábil. V9. N.3 p. 143-162. 2013.

TONELLI, A. C. d. S. https://repositorio.ufsc.br/handle/123456789/197895. O perfil atual do profissional de controladoria requerido pelas empresas brasileiras. 2019.

WORTMANN, F.; FLÜCHTER, K. Internet of things: technology and value added. Business & Information Systems Engineering. V57. p. 221-224. 2015.

Published

2023-12-29