The Role of Pentesting and Continuous Validation | Dan DeCloss | WWHF 2023 @WildWestHackinFest
The Role of Pentesting and Continuous Validation | Dan DeCloss | WWHF 2023  @WildWestHackinFest
Uploaded June 2024 | Updated September 2026, 2 weeks ago
๐Ÿ”— Join us in-person and virtually at our Wild West Hackin' Fest: information security conferences โ€” wildwesthackinfest.com

We all know that delivering the final pentest report isnโ€™t the end of the road. It's really just the beginning โ€” and it should be. Annual pentests are becoming a thing of the past in favor of strategies that involve shorter iterative cycles of testing, remediation, and validation. So where does pentesting fit into a continuous validation paradigm? This talk will overlay the pentesting and continuous validation life cycles to show how pentesters can deliver more value post engagement and set the stage for their organizations or clients to conduct more frequent, more productive pentests.

Dan DeCloss, the founder and CTO of PlexTrac, has over 17 years of experience in cybersecurity. Dan started his career in the Department of Defense and then moved on to the private sector where he worked for various companies including Telos, Veracode, Mayo Clinic, and Anthem. Danโ€™s background is in application security and penetration testing, involving hacking networks, websites, and mobile applications for clients. Prior to PlexTrac, Dan was the director of cybersecurity for Scentsy where he and his team built the security program out of its infancy into a best-in-class program.

Dan has a masterโ€™s degree in Computer Science from the Naval Postgraduate School with an emphasis in Information Security. Additionally, Dan holds the OSCP and CISSP certifications. Dan has a passion for helping everyone understand cybersecurity at a practical level, ensuring that focus is on the right work to reduce risk. Dan can be reached on LinkedIn at linkedin.com/in/ddecloss or on X (Twitter) @wh33lhouse

///Black Hills Infosec Socials
Twitter: twitter.com/BHinfoSecurity
Mastodon: https://infosec.exchange/@blackhillsinfosec
LinkedIn: linkedin.com/company/antisyphon-training
Discord: discord.gg/ffzdt3WUDe

///Black Hills Infosec Shirts & Hoodies
spearphish-general-store.myshopify.com/collections/bhis-shirt-collections

///Black Hills Infosec Services
Active SOC: blackhillsinfosec.com/services/active-soc
Penetration Testing: blackhillsinfosec.com/services
Incident Response: blackhillsinfosec.com/services/incident-response

///Backdoors & Breaches - Incident Response Card Game
Backdoors & Breaches: backdoorsandbreaches.com
Play B&B Online: play.backdoorsandbreaches.com

///Antisyphon Training
Pay What You Can: antisyphontraining.com/pay-what-you-can
Live Training: antisyphontraining.com/course-catalog
On Demand Training: antisyphontraining.com/on-demand-course-catalog
Antisyphon Discord: discord.gg/antisyphon
Antisyphon Mastodon: https://infosec.exchange/@Antisy_Training

///Educational Infosec Content
Black Hills Infosec Blogs: blackhillsinfosec.com/blog
Wild West Hackin' Fest YouTube: youtube.com/wildwesthackinfest
Antisyphon Training YouTube: youtube.com/antisyphontraining
Active Countermeasures YouTube: youtube.com/activecountermeasures
Threat Hunter Community Discord: discord.gg/threathunter

Join us at the annual information security conference in Deadwood, SD (in-person and virtually) โ€” Wild West Hackin' Fest: wildwesthackinfest.com
The Role of Pentesting and Continuous Validation | Dan DeCloss | WWHF 2023A Post Incident Case Study for SMB Response Teams | Amanda BerlinHacks Hackers Hate  Built In Bins to Bunk BaddiesMind Over Malware: Harnessing Psychology to Fortify Cybersecurity  | Jenn FerrerasWeb Application Authorization: Taming the Perfect Storm | Tim TomesWorkshop: Automating Attacks | Alex Martirosyan | WWHF 2023Tool Shed Demo: ELROND | Ben Smith | WWHF 2023Large Language Models: Disinformation and the Future of Work | Heather  Lawrence | WWHF 2023Unintentional Hackers: Students as the Weakest (and Wildest) Link | Jacob ThompsonThe Hackening: Lessons Learned Compromising MSPs! | Matt Lee, Jason SlagleTrust Me, Im a Shortcut: New LNK Abuse Methods | Wietze BeukemaLost Underground | Ray and Mike Felch | WWHF 2023
Wild West Hackin Fest |

The Role of Pentesting and Continuous Validation | Dan DeCloss | WWHF 2023

SHARE TO X SHARE TO REDDIT SHARE TO FACEBOOK WALLPAPER