Pentest Interview Questions (Junior / Senior / Principal)

22,827
0
Published 2021-02-01
This video shows you a ton of penetration test interview questions that are commonly asked during a job interview. Go and check out all the questions and make sure to have answers ready for all of them before your next interview!

Timeline:
00:00 Intro
02:11 Pentest Interview Questions for a Junior
05:13 Pentest Interview Questions for a Senior
08:44 Pentest Interview Questions for a Principal
12:33 Pentest Questions for Everyone

🔗 Pentest Interview Questions by Daniel Miessler - danielmiessler.com/study/infosec_interview_questio…

💡 If you have any questions or want to request a new video about a special topic, feel free to leave me a comment. You can also contact me on all of my social medias below.

💖 I need your help. Subscribe to this channel, link and retweet my videos and share them with your friends. This going to help make this project more sustainable in the long-run.

👕 If you fancy some swag, make sure to check out teespring.com/stores/hacksplained-hacking-store


💙 Last but not least: Subscribe to my Twitter channels twitter.com/hacksplained & twitter.com/PascalSec, and support me on Patreon www.patreon.com/hacksplained or www.buymeacoffee.com/hacksplained

All Comments (21)
  • @rafinrahmanchy
    I would like to add some more question *Explain the OWASP Top 10 *How many phases are there in Pentest and what are them? *Black Box, White Box and Grey Box Pentesting *Explain the CIA triad *Differences between Security Engineer, Security Analyst and Security Architecture *Differences between a Red Team and a Blue Team *Difference between Pentester and Red Teamer *What is CVSS? *Difference between CVE and CWE *Difference between Security Testing and Penetration Testing *Which pentest methodology/standard(OWASP, OSSTM, NIST, ISSAF) do you follow? *Difference between attack vector and attack surface *Difference between Penetration Testing and Vulnerability Assessment
  • @frkangungor
    You are a gift to us. Thanks for everything.
  • some of them asked to me: what is a TCP 3 way handshake? what are the different flags of TCP? You have an email which looks suspicious,how do you determine that it is a phishing mail? what is data exfiltration? once you have the ports and services listed out,where do you go to check out the exploits for that app/service(in Kali linux and outside Kali linux) different types of XSS and differences between them explain any one the OWASP TOP 10 attack in detail
  • @ghaithsaffo
    I'm surprised about how good this video is, it's way too underated, I hesitated to click on the video because of the views, but never mind that. This video is super helpful
  • @hacklearndaily
    Thanks for this video, this make so much sense now after giving my first interview.
  • @the-beagle888
    I’m a big fan of your videos, you’re an excelent professional and youtuber. I really like your explanations about web security and pentesting. Thank you a lot 😊
  • @mosk53
    dude don't giving the answers was a great idea, it helps learning a lot
  • @SuperMuha2
    Great video! Really loved how informative it was. One question though: What’s the best way to exercise with an experienced interviewer to kind of simulate 1-on-1 a real interview? I think this would be a huge help to many people.
  • @lIlIllll1
    Great video! I have my first pentesting interview this week im quiet nervous!
  • Knowing the answer to these questions will immediately boost our confidence in the next interview, Inshallah. I was curious to know if pen testers are required to interact with customers when they work for a pen testing company ? If yes, how often?
  • How would technical part of the interview be like? Can you talk about it ?
  • @okami4683
    I've failed to get through several practical interviews - they set up a VM that I remote into, with a faux network and ask me to fill in a worksheet. I have the ability to do those things with time, but they usually only a lot about an hour. You gotta practice this stuff to pass these interviews. So, set up your own lab, or find one online to practice with. After practicing, I went through another interview process. Got through the first with HR, then the second with the IT manager (just asking about situations, terms, etc), and finally, the dreaded practical before an interview with the final hiring manager. This is usually where I screwed up. But after practicing this stuff, I was ready and could complete it all.
  • @linxploit
    Please post the questions in the comment or Description
  • @cloufish7790
    Hah, even though I probably can answer every one of Junior questions, its no use in the economic-pandemic crisis, because there's no junior positions... :/