Book Image

Testing Practitioner Handbook

By : Renu Rajani
Book Image

Testing Practitioner Handbook

By: Renu Rajani

Overview of this book

The book is based on the author`s experience in leading and transforming large test engagements and architecting solutions for customer testing requirements/bids/problem areas. It targets the testing practitioner population and provides them with a single go-to place to find perspectives, practices, trends, tools, and solutions to test applications as they face the evolving digital world. This book is divided into five parts where each part explores different aspects of testing in the real world. The first module explains the various testing engagement models. You will then learn how to efficiently test code in different life cycles. The book discusses the different aspects of Quality Analysis consideration while testing social media, mobile, analytics, and the Cloud. In the last module, you will learn about futuristic technologies to test software. By the end of the book, you will understand the latest business and IT trends in digital transformation and learn the best practices to adopt for business assurance.
Table of Contents (56 chapters)
Testing Practitioner Handbook
Credits
About the Author
Acknowledgement
About the Reviewer
www.PacktPub.com
Customer Feedback
Preface
Index

Specific metrics to be reported in dashboard


To ensure that security monitoring and reporting is carried out objectively, there is a need for dashboard to be periodically presented and reviewed. A typical security dashboard should cover key metrics pertaining to business and financial, risk coverage, vulnerability, patch, incident, and change management.

Financial/business metrics include the following things:

  • Information security budget as % of IT budget

  • Financial losses (direct and indirect) caused by security breaches

  • Impact of damage to reputation and trust

  • Cost of (loss due to) data breaches, exposed user credentials, information leakage, and so on

  • Impact of business disruptions caused by security incidents

Risk and security coverage includes the given things:

  • Risk assessment coverage (% covered against overall applications and against critical applications)

  • Security testing coverage (% covered against overall applications and against critical applications)

Vulnerability management includes the...