1
1

00:00:00,180  -->  00:00:01,380
<v ->In this section of the course,</v>
2

2

00:00:01,380  -->  00:00:03,240
we're going to learn how to perform an analysis
3

3

00:00:03,240  -->  00:00:05,190
of your application assessments.
4

4

00:00:05,190  -->  00:00:06,180
Now, in this section,
5

5

00:00:06,180  -->  00:00:08,220
we're going to again be working in domain two,
6

6

00:00:08,220  -->  00:00:09,420
vulnerability management,
7

7

00:00:09,420  -->  00:00:12,690
with a focus on objectives 2.1 and 2.2.
8

8

00:00:12,690  -->  00:00:15,240
Objective 2.1 state that given a scenario,
9

9

00:00:15,240  -->  00:00:16,470
you must be able to implement
10

10

00:00:16,470  -->  00:00:18,960
vulnerability scanning methods and concepts.
11

11

00:00:18,960  -->  00:00:21,660
And objective 2.2 states that given a scenario,
12

12

00:00:21,660  -->  00:00:22,740
you must be able to analyze
13

13

00:00:22,740  -->  00:00:25,170
output from vulnerability assessment tools.
14

14

00:00:25,170  -->  00:00:26,880
Now, as we begin this section,
15

15

00:00:26,880  -->  00:00:27,840
we need to discuss
16

16

00:00:27,840  -->  00:00:29,850
the various types of software assessment methods
17

17

00:00:29,850  -->  00:00:31,500
that we're going to be able to utilize.
18

18

00:00:31,500  -->  00:00:33,510
We'll focus on different tools and techniques
19

19

00:00:33,510  -->  00:00:36,000
such as reverse engineering, dynamic analysis,
20

20

00:00:36,000  -->  00:00:37,650
the use of web application scanners,
21

21

00:00:37,650  -->  00:00:39,270
the use of Burp Suite as a tool,
22

22

00:00:39,270  -->  00:00:41,820
and the use of the OWASP ZAP tool.
23

23

00:00:41,820  -->  00:00:43,590
Then I'm going to perform a demonstration
24

24

00:00:43,590  -->  00:00:45,240
to conduct an analysis of the output
25

25

00:00:45,240  -->  00:00:46,740
of a web application assessment
26

26

00:00:46,740  -->  00:00:48,450
and show you what that looks like.
27

27

00:00:48,450  -->  00:00:50,100
Finally, we're going to take a short quiz
28

28

00:00:50,100  -->  00:00:52,170
to see what you learned during this section of the course
29

29

00:00:52,170  -->  00:00:54,150
and review each of those quiz questions fully
30

30

00:00:54,150  -->  00:00:56,580
to ensure you can explain why the right answers were right.
31

31

00:00:56,580  -->  00:00:59,160
So let's start analyzing application assessments
32

32

00:00:59,160  -->  00:01:00,660
in this section of the course.
