{"id":9209,"date":"2020-10-12T07:00:36","date_gmt":"2020-10-12T05:00:36","guid":{"rendered":"https:\/\/www.cyberfero.com\/?p=9209"},"modified":"2023-01-06T00:15:31","modified_gmt":"2023-01-05T23:15:31","slug":"standard-iso-27001-richiede-un-pentest","status":"publish","type":"post","link":"https:\/\/www.cyberfero.com\/it\/standard-iso-27001-richiede-un-pentest\/","title":{"rendered":"Standard ISO 27001 richiede un Pentest?"},"content":{"rendered":"\t\t<div data-elementor-type=\"wp-post\" data-elementor-id=\"9209\" class=\"elementor elementor-9209\" data-elementor-post-type=\"post\">\n\t\t\t\t\t\t<section class=\"elementor-section elementor-top-section elementor-element elementor-element-74f981c7 elementor-section-boxed elementor-section-height-default elementor-section-height-default\" data-id=\"74f981c7\" data-element_type=\"section\" data-e-type=\"section\">\n\t\t\t\t\t\t<div class=\"elementor-container elementor-column-gap-default\">\n\t\t\t\t\t<div class=\"elementor-column elementor-col-100 elementor-top-column elementor-element elementor-element-33b1c28b\" data-id=\"33b1c28b\" data-element_type=\"column\" data-e-type=\"column\">\n\t\t\t<div class=\"elementor-widget-wrap elementor-element-populated\">\n\t\t\t\t\t\t<div class=\"elementor-element elementor-element-36acbd1 elementor-widget elementor-widget-text-editor\" data-id=\"36acbd1\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"text-editor.default\">\n\t\t\t\t\t\t\t\t\t<pre>Tempo di lettura: 4 min<\/pre><br>\t\t\t\t\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-6d9e6ac1 elementor-widget elementor-widget-text-editor\" data-id=\"6d9e6ac1\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"text-editor.default\">\n\t\t\t\t\t\t\t\t\t<p>Una domanda legittima che spesso ci si pone e&#8217; se il Penetration Test sia necessario per la conformita&#8217; allo standard <a href=\"https:\/\/it.wikipedia.org\/wiki\/ISO\/IEC_27001\">ISO 27001<\/a>. Per comprendere appieno la risposta, bisogna chiarire cosa si intende con questi termini e capire la relazione tra tutte le componenti del meccanismo di certificazione.<\/p>\r\n<h2>Standard ISO 27001<\/h2>\r\n<p>Una norma tecnica, impropriamente chiamata anche standard, e&#8217; un documento che descrive le specifiche che un certo oggetto \/ ente \/ entita&#8217; deve rispettare per poter essere certificato. In generale, <strong>una norma descrive i requisiti di materiali, prodotti, servizi, attivita&#8217;, processi, terminologia, metodologie e altri aspetti<\/strong> che riguardano l&#8217;oggetto della norma stessa. In parole molto semplici, le norme sono regole che regolamentano quasi ogni cosa offrendo degli standard costruttivi e metodologici.<\/p>\r\n<p>Lo standard ISO 27001 (ISO\/IEC 27001:2013) e&#8217; la norma internazionale che <strong>descrive le <em>best practice<\/em> per un ISMS,&nbsp;<\/strong><i>Information Security Management System<\/i> (Sistema di Gestione della Sicurezza delle Informazioni, SGSI, in italiano). Seppur seguire la norma non sia obbligatorio, e&#8217; necessario per ottenere una certificazione a garanzia della sicurezza logica, fisica e organizzativa.<\/p>\r\n<p>Ottenere <strong>una certificazione ISO 27001&nbsp;permette di dimostrare che la tua azienda sta seguendo le <em>best practice<\/em> sulla sicurezza delle informazioni<\/strong> e fornisce un controllo indipendente e qualificato. La sicurezza e&#8217; garantita essere in linea con lo standard internazionale e gli obiettivi aziendali.<\/p>\r\n<p>Di grande importanza per lo standard ISO 27001 e&#8217; l&#8217;allegato A &#8220;Control objective and controls&#8221;, che contiene i 133 controlli a cui &nbsp;l&#8217;azienda interessata deve attenersi.&nbsp;<\/p>\r\n<h2>Vulnerability Assessment e Penetration Test<\/h2>\r\n<p>Quando si esegue un&#8217;<a href=\"\/?page_id=8606\">analisi delle vulnerabilita&#8217;<\/a> (o Vulnerability Assessment) sulla rete e sui sistemi informatici, <strong>si mira a identificare tutte le vulnerabilita&#8217; tecniche presenti<\/strong> nei sistemi operativi e nei software. Alcuni esempi di vulnerabilita&#8217; possono essere SQL Injection, XSS, CSRF, password deboli, ecc. <strong>L&#8217;individuazione delle vulnerabilita&#8217; indica che esiste un rischio riconosciuto per la sicurezza<\/strong> a causa di un problema di un qualche tipo. Non dice se e&#8217; possibile o meno sfruttare la vulnerabilita&#8217;. Per scoprirlo, e&#8217; necessario effettuare un <a href=\"\/?p=8621\">Penetration Test<\/a> (o pentest).<\/p>\r\n<p>Per spiegare quanto detto sopra, immaginate di avere un&#8217;applicazione web vulnerabile all&#8217;SQL Injection che potrebbe consentire ad un malintenzionato di eseguire operazioni nel database. Una VA identifica tale vulnerabilita&#8217;, vale a dire che <em>potrebbe essere possibile accedere al database<\/em>. In seguito alla valutazione della vulnerabilita&#8217;, <strong>se viene effettuato un pentest e la vulnerabilita&#8217; puo&#8217; essere sfruttata, si dimostrerebbe l&#8217;esistenza del rischio<\/strong>.&nbsp;<\/p>\r\n<p>Per rispettare il controllo A.12.6.1 dell&#8217;allegato A della norma ISO 27001, e&#8217; necessario impedire lo sfruttamento delle vulnerabilita&#8217; tecniche. Tuttavia, <strong>la decisione su come procedere spetta a voi. E&#8217;, quindi, necessario eseguire un Pentest? Non necessariamente.<\/strong><\/p>\r\n<p>Dopo l&#8217;analisi delle vulnerabilita&#8217;, potremmo riparare e sistemare le debolezze ed eliminare il rischio prima di eseguire un pentest. Quindi, <strong>ai fini della conformita&#8217; allo standard ISO 27001 si puo&#8217; ottenere il risultato richiesto semplicemente eseguendo la valutazione della vulnerabilita&#8217;<\/strong> e risolvendo i potenziali problemi che si sono riscontrati.<\/p>\r\n<p>Detto questo, <strong>raccomandiamo vivamente di effettuare un Penetration Test completo per esser davvero sicuri del rispetto della norma<\/strong>. Puo&#8217; aiutarvi a dare priorita&#8217; ai problemi e vi dira&#8217; quanto sono vulnerabili i vostri sistemi.<\/p>\r\n<h2>Rivolgersi a professionisti<\/h2>\r\n<p>Esistono sul mercato diverse soluzioni per svolgere pentest. Sono software che possono agevolare il lavoro e facilitare il test, ma se azionati da personale inesperto, possono anche creare dei problemi. e&#8217; possibile che la rete ne risulti rallentata e i computer sensibilmente meno reattivi, fino anche a possibili crash di uno o piu&#8217; dei sistemi coinvolti.<\/p>\r\n<p>Puntando alla certificazione per lo standard ISO 27001, <strong>e&#8217; meglio non fare gli eroi e assicurarsi <em>davvero<\/em> che i controlli siano rispettati<\/strong>. Richiedere l&#8217;intervento di professionisti del settore, serve proprio a <strong>minimizzare i rischi e assicurarsi che il processo sia svolto in modo impeccabile<\/strong>.&nbsp;<\/p>\r\n<p><strong>SOD offre un servizio di verifica delle vulnerabilita&#8217; e pentest affidandosi ad hacker etici professionisti.<\/strong> Dopo un primo colloquio, le varie fasi del processo sono eseguite per verificare e testare le potenziali minacce. E&#8217; possibile anche richiedere che la verifica delle vulnerabilita&#8217; sia svolta con regolarita&#8217; per verificare la sicurezza dei sistemi.&nbsp;<\/p>\r\n<p>Richiedi <a href=\"\/?page_id=272\">informazioni specifiche<\/a>, oppure visita <a href=\"\/?page_id=8606\">la pagina dedicata<\/a>. Per ulteriori informazioni sulle nostre certificazioni, e&#8217; possibile visitare <a href=\"\/?page_id=2496\">l&#8217;apposita pagina<\/a>.<\/p>\r\n<p style=\"text-align: center;\">[btnsx id=&#8221;2929&#8243;]<\/p>\r\n<p><span style=\"text-decoration: underline;\"><strong>Link utili:<\/strong><\/span><\/p>\r\n<p><a href=\"\/?p=8649\" rel=\"noopener noreferrer\" target=\"_blank\" class=\"LinkSuggestion__Link-sc-1mdih4x-2 dcwLhi\">Sicurezza: pentest e verifica delle vulnerabilita&#8217;<\/a><\/p>\r\n<p>&nbsp;<\/p>\t\t\t\t\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-f70cf62 elementor-button-warning elementor-align-center elementor-widget elementor-widget-button\" data-id=\"f70cf62\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"button.default\">\n\t\t\t\t\t\t\t\t\t\t<a class=\"elementor-button elementor-button-link elementor-size-lg\" href=\"mailto:sales@cyberfero.com\">\n\t\t\t\t\t\t<span class=\"elementor-button-content-wrapper\">\n\t\t\t\t\t\t<span class=\"elementor-button-icon\">\n\t\t\t\t<svg aria-hidden=\"true\" class=\"e-font-icon-svg e-fas-mail-bulk\" viewBox=\"0 0 576 512\" xmlns=\"http:\/\/www.w3.org\/2000\/svg\"><path d=\"M160 448c-25.6 0-51.2-22.4-64-32-64-44.8-83.2-60.8-96-70.4V480c0 17.67 14.33 32 32 32h256c17.67 0 32-14.33 32-32V345.6c-12.8 9.6-32 25.6-96 70.4-12.8 9.6-38.4 32-64 32zm128-192H32c-17.67 0-32 14.33-32 32v16c25.6 19.2 22.4 19.2 115.2 86.4 9.6 6.4 28.8 25.6 44.8 25.6s35.2-19.2 44.8-22.4c92.8-67.2 89.6-67.2 115.2-86.4V288c0-17.67-14.33-32-32-32zm256-96H224c-17.67 0-32 14.33-32 32v32h96c33.21 0 60.59 25.42 63.71 57.82l.29-.22V416h192c17.67 0 32-14.33 32-32V192c0-17.67-14.33-32-32-32zm-32 128h-64v-64h64v64zm-352-96c0-35.29 28.71-64 64-64h224V32c0-17.67-14.33-32-32-32H96C78.33 0 64 14.33 64 32v192h96v-32z\"><\/path><\/svg>\t\t\t<\/span>\n\t\t\t\t\t\t\t\t\t<span class=\"elementor-button-text\">Contattaci<\/span>\n\t\t\t\t\t<\/span>\n\t\t\t\t\t<\/a>\n\t\t\t\t\t\t\t\t<\/div>\n\t\t\t\t\t<\/div>\n\t\t<\/div>\n\t\t\t\t\t<\/div>\n\t\t<\/section>\n\t\t\t\t<\/div>\n\t\t","protected":false},"excerpt":{"rendered":"<p>Tempo di lettura: 4 min Una domanda legittima che spesso ci si pone e&#8217; se il Penetration Test sia necessario per la conformita&#8217; allo standard ISO 27001. Per comprendere appieno la risposta, bisogna chiarire cosa si intende con questi termini e capire la relazione tra tutte le componenti del meccanismo di certificazione. Standard ISO 27001 Una norma tecnica, impropriamente chiamata&#8230;<\/p>\n","protected":false},"author":4,"featured_media":9215,"comment_status":"open","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_acf_changed":false,"_uf_show_specific_survey":0,"_uf_disable_surveys":false,"footnotes":""},"categories":[7917],"tags":[7536,7535,6738,7531],"class_list":["post-9209","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-penetration-test","tag-dati","tag-iso27001","tag-pentest","tag-sicurezza"],"acf":[],"yoast_head":"<!-- This site is optimized with the Yoast SEO Premium plugin v24.2 (Yoast SEO v27.7) - https:\/\/yoast.com\/product\/yoast-seo-premium-wordpress\/ -->\n<title>Standard ISO 27001 richiede un Pentest? - Cyberfero<\/title>\n<meta name=\"description\" content=\"Rispettare lo standard ISO 27001 \u00e8 necessario disporre di un sistema a prova di attacco, il pentest \u00e8, quindi, necessario o si pu\u00f2 evitare?\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/www.cyberfero.com\/it\/standard-iso-27001-richiede-un-pentest\/\" \/>\n<meta property=\"og:locale\" content=\"it_IT\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Standard ISO 27001 richiede un Pentest?\" \/>\n<meta property=\"og:description\" content=\"Rispettare lo standard ISO 27001 \u00e8 necessario disporre di un sistema a prova di attacco, il pentest \u00e8, quindi, necessario o si pu\u00f2 evitare?\" \/>\n<meta property=\"og:url\" content=\"https:\/\/www.cyberfero.com\/it\/standard-iso-27001-richiede-un-pentest\/\" \/>\n<meta property=\"og:site_name\" content=\"Cyberfero\" \/>\n<meta property=\"article:publisher\" content=\"https:\/\/www.facebook.com\/Cyberfero\" \/>\n<meta property=\"article:author\" content=\"https:\/\/www.facebook.com\/piergiorgio.venuti\/\" \/>\n<meta property=\"article:published_time\" content=\"2020-10-12T05:00:36+00:00\" \/>\n<meta property=\"article:modified_time\" content=\"2023-01-05T23:15:31+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/www.cyberfero.com\/wp-content\/uploads\/2020\/08\/Starndard-iso-27001-scaled.jpg\" \/>\n\t<meta property=\"og:image:width\" content=\"2560\" \/>\n\t<meta property=\"og:image:height\" content=\"1707\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/jpeg\" \/>\n<meta name=\"author\" content=\"Piergiorgio Venuti\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:creator\" content=\"@gigasec.org\" \/>\n<meta name=\"twitter:site\" content=\"@secureod\" \/>\n<meta name=\"twitter:label1\" content=\"Scritto da\" \/>\n\t<meta name=\"twitter:data1\" content=\"Piergiorgio Venuti\" \/>\n\t<meta name=\"twitter:label2\" content=\"Tempo di lettura stimato\" \/>\n\t<meta name=\"twitter:data2\" content=\"4 minuti\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\\\/\\\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\\\/\\\/www.cyberfero.com\\\/it\\\/standard-iso-27001-richiede-un-pentest\\\/#article\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/www.cyberfero.com\\\/it\\\/standard-iso-27001-richiede-un-pentest\\\/\"},\"author\":{\"name\":\"Piergiorgio Venuti\",\"@id\":\"https:\\\/\\\/www.cyberfero.com\\\/it\\\/#\\\/schema\\\/person\\\/c9978fe787ffd526866e6b45a97a14ba\"},\"headline\":\"Standard ISO 27001 richiede un Pentest?\",\"datePublished\":\"2020-10-12T05:00:36+00:00\",\"dateModified\":\"2023-01-05T23:15:31+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\\\/\\\/www.cyberfero.com\\\/it\\\/standard-iso-27001-richiede-un-pentest\\\/\"},\"wordCount\":711,\"commentCount\":0,\"publisher\":{\"@id\":\"https:\\\/\\\/www.cyberfero.com\\\/it\\\/#organization\"},\"image\":{\"@id\":\"https:\\\/\\\/www.cyberfero.com\\\/it\\\/standard-iso-27001-richiede-un-pentest\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/www.cyberfero.com\\\/wp-content\\\/uploads\\\/2020\\\/08\\\/Starndard-iso-27001-scaled.jpg\",\"keywords\":[\"dati\",\"ISO27001\",\"pentest\",\"sicurezza\"],\"articleSection\":[\"Penetration Test\"],\"inLanguage\":\"it-IT\",\"potentialAction\":[{\"@type\":\"CommentAction\",\"name\":\"Comment\",\"target\":[\"https:\\\/\\\/www.cyberfero.com\\\/it\\\/standard-iso-27001-richiede-un-pentest\\\/#respond\"]}]},{\"@type\":\"WebPage\",\"@id\":\"https:\\\/\\\/www.cyberfero.com\\\/it\\\/standard-iso-27001-richiede-un-pentest\\\/\",\"url\":\"https:\\\/\\\/www.cyberfero.com\\\/it\\\/standard-iso-27001-richiede-un-pentest\\\/\",\"name\":\"Standard ISO 27001 richiede un Pentest? - Cyberfero\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/www.cyberfero.com\\\/it\\\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\\\/\\\/www.cyberfero.com\\\/it\\\/standard-iso-27001-richiede-un-pentest\\\/#primaryimage\"},\"image\":{\"@id\":\"https:\\\/\\\/www.cyberfero.com\\\/it\\\/standard-iso-27001-richiede-un-pentest\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/www.cyberfero.com\\\/wp-content\\\/uploads\\\/2020\\\/08\\\/Starndard-iso-27001-scaled.jpg\",\"datePublished\":\"2020-10-12T05:00:36+00:00\",\"dateModified\":\"2023-01-05T23:15:31+00:00\",\"description\":\"Rispettare lo standard ISO 27001 \u00e8 necessario disporre di un sistema a prova di attacco, il pentest \u00e8, quindi, necessario o si pu\u00f2 evitare?\",\"breadcrumb\":{\"@id\":\"https:\\\/\\\/www.cyberfero.com\\\/it\\\/standard-iso-27001-richiede-un-pentest\\\/#breadcrumb\"},\"inLanguage\":\"it-IT\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\\\/\\\/www.cyberfero.com\\\/it\\\/standard-iso-27001-richiede-un-pentest\\\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"it-IT\",\"@id\":\"https:\\\/\\\/www.cyberfero.com\\\/it\\\/standard-iso-27001-richiede-un-pentest\\\/#primaryimage\",\"url\":\"https:\\\/\\\/www.cyberfero.com\\\/wp-content\\\/uploads\\\/2020\\\/08\\\/Starndard-iso-27001-scaled.jpg\",\"contentUrl\":\"https:\\\/\\\/www.cyberfero.com\\\/wp-content\\\/uploads\\\/2020\\\/08\\\/Starndard-iso-27001-scaled.jpg\",\"width\":2560,\"height\":1707,\"caption\":\"Standard ISO 27001\"},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\\\/\\\/www.cyberfero.com\\\/it\\\/standard-iso-27001-richiede-un-pentest\\\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\\\/\\\/www.cyberfero.com\\\/it\\\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"Standard ISO 27001 richiede un Pentest?\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\\\/\\\/www.cyberfero.com\\\/it\\\/#website\",\"url\":\"https:\\\/\\\/www.cyberfero.com\\\/it\\\/\",\"name\":\"Cyberfero\",\"description\":\"Managed Security Service Provider\",\"publisher\":{\"@id\":\"https:\\\/\\\/www.cyberfero.com\\\/it\\\/#organization\"},\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\\\/\\\/www.cyberfero.com\\\/it\\\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"it-IT\"},{\"@type\":[\"Organization\",\"Place\",\"ProfessionalService\"],\"@id\":\"https:\\\/\\\/www.cyberfero.com\\\/it\\\/#organization\",\"name\":\"Cyberfero s.r.l.\",\"url\":\"https:\\\/\\\/www.cyberfero.com\\\/it\\\/\",\"logo\":{\"@id\":\"https:\\\/\\\/www.cyberfero.com\\\/it\\\/standard-iso-27001-richiede-un-pentest\\\/#local-main-organization-logo\"},\"image\":{\"@id\":\"https:\\\/\\\/www.cyberfero.com\\\/it\\\/standard-iso-27001-richiede-un-pentest\\\/#local-main-organization-logo\"},\"sameAs\":[\"https:\\\/\\\/www.facebook.com\\\/Cyberfero\",\"https:\\\/\\\/x.com\\\/secureod\",\"https:\\\/\\\/www.instagram.com\\\/cyber_fero\\\/\",\"https:\\\/\\\/www.linkedin.com\\\/company\\\/cyberfero\",\"http:\\\/\\\/www.pinterest.com\\\/cyberfero\",\"https:\\\/\\\/www.youtube.com\\\/user\\\/secureod\"],\"address\":{\"@id\":\"https:\\\/\\\/www.cyberfero.com\\\/it\\\/standard-iso-27001-richiede-un-pentest\\\/#local-main-place-address\"},\"telephone\":[\"+39 0522 1685330\"],\"openingHoursSpecification\":[{\"@type\":\"OpeningHoursSpecification\",\"dayOfWeek\":[\"Monday\",\"Tuesday\",\"Wednesday\",\"Thursday\",\"Friday\"],\"opens\":\"09:00\",\"closes\":\"18:30\"},{\"@type\":\"OpeningHoursSpecification\",\"dayOfWeek\":[\"Saturday\",\"Sunday\"],\"opens\":\"00:00\",\"closes\":\"00:00\"}],\"email\":\"info@cyberfero.com\",\"faxNumber\":\"+39 0522 015371\",\"areaServed\":\"Italia\",\"vatID\":\"03058120357\",\"taxID\":\"03058120357\",\"priceRange\":\"$$$\",\"currenciesAccepted\":\"\u20ac\",\"paymentAccepted\":\"paypal, bonifico bancario\"},{\"@type\":\"Person\",\"@id\":\"https:\\\/\\\/www.cyberfero.com\\\/it\\\/#\\\/schema\\\/person\\\/c9978fe787ffd526866e6b45a97a14ba\",\"name\":\"Piergiorgio Venuti\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"it-IT\",\"@id\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/088f17cc68e9d75df19d2ab3d997b3b60c2585831cf6968d481594e94c826ebb?s=96&d=mm&r=g\",\"url\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/088f17cc68e9d75df19d2ab3d997b3b60c2585831cf6968d481594e94c826ebb?s=96&d=mm&r=g\",\"contentUrl\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/088f17cc68e9d75df19d2ab3d997b3b60c2585831cf6968d481594e94c826ebb?s=96&d=mm&r=g\",\"caption\":\"Piergiorgio Venuti\"},\"description\":\"Company Owner at Cyberfero s.r.l.\",\"sameAs\":[\"https:\\\/\\\/www.cyberfero.com\",\"https:\\\/\\\/www.facebook.com\\\/piergiorgio.venuti\\\/\",\"linkedin.com\\\/in\\\/ing-piergiorgio-venuti-9a51077\",\"https:\\\/\\\/x.com\\\/@gigasec.org\",\"https:\\\/\\\/www.youtube.com\\\/user\\\/secureod?feature=masthead-dropdown\"],\"url\":\"https:\\\/\\\/www.cyberfero.com\\\/it\\\/author\\\/piergiorgio-venuti\\\/\"},{\"@type\":\"PostalAddress\",\"@id\":\"https:\\\/\\\/www.cyberfero.com\\\/it\\\/standard-iso-27001-richiede-un-pentest\\\/#local-main-place-address\",\"streetAddress\":\"Via Statuto, 3\",\"addressLocality\":\"Reggio Emilia\",\"postalCode\":\"42121\",\"addressRegion\":\"Italia\",\"addressCountry\":\"IT\"},{\"@type\":\"ImageObject\",\"inLanguage\":\"it-IT\",\"@id\":\"https:\\\/\\\/www.cyberfero.com\\\/it\\\/standard-iso-27001-richiede-un-pentest\\\/#local-main-organization-logo\",\"url\":\"https:\\\/\\\/www.cyberfero.com\\\/wp-content\\\/uploads\\\/2024\\\/05\\\/Color-logo-no-background.png\",\"contentUrl\":\"https:\\\/\\\/www.cyberfero.com\\\/wp-content\\\/uploads\\\/2024\\\/05\\\/Color-logo-no-background.png\",\"width\":3163,\"height\":922,\"caption\":\"Cyberfero s.r.l.\"}]}<\/script>\n<meta name=\"geo.placename\" content=\"Reggio Emilia\" \/>\n<meta name=\"geo.region\" content=\"Italia\" \/>\n<!-- \/ Yoast SEO Premium plugin. -->","yoast_head_json":{"title":"Standard ISO 27001 richiede un Pentest? - Cyberfero","description":"Rispettare lo standard ISO 27001 \u00e8 necessario disporre di un sistema a prova di attacco, il pentest \u00e8, quindi, necessario o si pu\u00f2 evitare?","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/www.cyberfero.com\/it\/standard-iso-27001-richiede-un-pentest\/","og_locale":"it_IT","og_type":"article","og_title":"Standard ISO 27001 richiede un Pentest?","og_description":"Rispettare lo standard ISO 27001 \u00e8 necessario disporre di un sistema a prova di attacco, il pentest \u00e8, quindi, necessario o si pu\u00f2 evitare?","og_url":"https:\/\/www.cyberfero.com\/it\/standard-iso-27001-richiede-un-pentest\/","og_site_name":"Cyberfero","article_publisher":"https:\/\/www.facebook.com\/Cyberfero","article_author":"https:\/\/www.facebook.com\/piergiorgio.venuti\/","article_published_time":"2020-10-12T05:00:36+00:00","article_modified_time":"2023-01-05T23:15:31+00:00","og_image":[{"width":2560,"height":1707,"url":"https:\/\/www.cyberfero.com\/wp-content\/uploads\/2020\/08\/Starndard-iso-27001-scaled.jpg","type":"image\/jpeg"}],"author":"Piergiorgio Venuti","twitter_card":"summary_large_image","twitter_creator":"@gigasec.org","twitter_site":"@secureod","twitter_misc":{"Scritto da":"Piergiorgio Venuti","Tempo di lettura stimato":"4 minuti"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/www.cyberfero.com\/it\/standard-iso-27001-richiede-un-pentest\/#article","isPartOf":{"@id":"https:\/\/www.cyberfero.com\/it\/standard-iso-27001-richiede-un-pentest\/"},"author":{"name":"Piergiorgio Venuti","@id":"https:\/\/www.cyberfero.com\/it\/#\/schema\/person\/c9978fe787ffd526866e6b45a97a14ba"},"headline":"Standard ISO 27001 richiede un Pentest?","datePublished":"2020-10-12T05:00:36+00:00","dateModified":"2023-01-05T23:15:31+00:00","mainEntityOfPage":{"@id":"https:\/\/www.cyberfero.com\/it\/standard-iso-27001-richiede-un-pentest\/"},"wordCount":711,"commentCount":0,"publisher":{"@id":"https:\/\/www.cyberfero.com\/it\/#organization"},"image":{"@id":"https:\/\/www.cyberfero.com\/it\/standard-iso-27001-richiede-un-pentest\/#primaryimage"},"thumbnailUrl":"https:\/\/www.cyberfero.com\/wp-content\/uploads\/2020\/08\/Starndard-iso-27001-scaled.jpg","keywords":["dati","ISO27001","pentest","sicurezza"],"articleSection":["Penetration Test"],"inLanguage":"it-IT","potentialAction":[{"@type":"CommentAction","name":"Comment","target":["https:\/\/www.cyberfero.com\/it\/standard-iso-27001-richiede-un-pentest\/#respond"]}]},{"@type":"WebPage","@id":"https:\/\/www.cyberfero.com\/it\/standard-iso-27001-richiede-un-pentest\/","url":"https:\/\/www.cyberfero.com\/it\/standard-iso-27001-richiede-un-pentest\/","name":"Standard ISO 27001 richiede un Pentest? - Cyberfero","isPartOf":{"@id":"https:\/\/www.cyberfero.com\/it\/#website"},"primaryImageOfPage":{"@id":"https:\/\/www.cyberfero.com\/it\/standard-iso-27001-richiede-un-pentest\/#primaryimage"},"image":{"@id":"https:\/\/www.cyberfero.com\/it\/standard-iso-27001-richiede-un-pentest\/#primaryimage"},"thumbnailUrl":"https:\/\/www.cyberfero.com\/wp-content\/uploads\/2020\/08\/Starndard-iso-27001-scaled.jpg","datePublished":"2020-10-12T05:00:36+00:00","dateModified":"2023-01-05T23:15:31+00:00","description":"Rispettare lo standard ISO 27001 \u00e8 necessario disporre di un sistema a prova di attacco, il pentest \u00e8, quindi, necessario o si pu\u00f2 evitare?","breadcrumb":{"@id":"https:\/\/www.cyberfero.com\/it\/standard-iso-27001-richiede-un-pentest\/#breadcrumb"},"inLanguage":"it-IT","potentialAction":[{"@type":"ReadAction","target":["https:\/\/www.cyberfero.com\/it\/standard-iso-27001-richiede-un-pentest\/"]}]},{"@type":"ImageObject","inLanguage":"it-IT","@id":"https:\/\/www.cyberfero.com\/it\/standard-iso-27001-richiede-un-pentest\/#primaryimage","url":"https:\/\/www.cyberfero.com\/wp-content\/uploads\/2020\/08\/Starndard-iso-27001-scaled.jpg","contentUrl":"https:\/\/www.cyberfero.com\/wp-content\/uploads\/2020\/08\/Starndard-iso-27001-scaled.jpg","width":2560,"height":1707,"caption":"Standard ISO 27001"},{"@type":"BreadcrumbList","@id":"https:\/\/www.cyberfero.com\/it\/standard-iso-27001-richiede-un-pentest\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/www.cyberfero.com\/it\/"},{"@type":"ListItem","position":2,"name":"Standard ISO 27001 richiede un Pentest?"}]},{"@type":"WebSite","@id":"https:\/\/www.cyberfero.com\/it\/#website","url":"https:\/\/www.cyberfero.com\/it\/","name":"Cyberfero","description":"Managed Security Service Provider","publisher":{"@id":"https:\/\/www.cyberfero.com\/it\/#organization"},"potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/www.cyberfero.com\/it\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"it-IT"},{"@type":["Organization","Place","ProfessionalService"],"@id":"https:\/\/www.cyberfero.com\/it\/#organization","name":"Cyberfero s.r.l.","url":"https:\/\/www.cyberfero.com\/it\/","logo":{"@id":"https:\/\/www.cyberfero.com\/it\/standard-iso-27001-richiede-un-pentest\/#local-main-organization-logo"},"image":{"@id":"https:\/\/www.cyberfero.com\/it\/standard-iso-27001-richiede-un-pentest\/#local-main-organization-logo"},"sameAs":["https:\/\/www.facebook.com\/Cyberfero","https:\/\/x.com\/secureod","https:\/\/www.instagram.com\/cyber_fero\/","https:\/\/www.linkedin.com\/company\/cyberfero","http:\/\/www.pinterest.com\/cyberfero","https:\/\/www.youtube.com\/user\/secureod"],"address":{"@id":"https:\/\/www.cyberfero.com\/it\/standard-iso-27001-richiede-un-pentest\/#local-main-place-address"},"telephone":["+39 0522 1685330"],"openingHoursSpecification":[{"@type":"OpeningHoursSpecification","dayOfWeek":["Monday","Tuesday","Wednesday","Thursday","Friday"],"opens":"09:00","closes":"18:30"},{"@type":"OpeningHoursSpecification","dayOfWeek":["Saturday","Sunday"],"opens":"00:00","closes":"00:00"}],"email":"info@cyberfero.com","faxNumber":"+39 0522 015371","areaServed":"Italia","vatID":"03058120357","taxID":"03058120357","priceRange":"$$$","currenciesAccepted":"\u20ac","paymentAccepted":"paypal, bonifico bancario"},{"@type":"Person","@id":"https:\/\/www.cyberfero.com\/it\/#\/schema\/person\/c9978fe787ffd526866e6b45a97a14ba","name":"Piergiorgio Venuti","image":{"@type":"ImageObject","inLanguage":"it-IT","@id":"https:\/\/secure.gravatar.com\/avatar\/088f17cc68e9d75df19d2ab3d997b3b60c2585831cf6968d481594e94c826ebb?s=96&d=mm&r=g","url":"https:\/\/secure.gravatar.com\/avatar\/088f17cc68e9d75df19d2ab3d997b3b60c2585831cf6968d481594e94c826ebb?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/088f17cc68e9d75df19d2ab3d997b3b60c2585831cf6968d481594e94c826ebb?s=96&d=mm&r=g","caption":"Piergiorgio Venuti"},"description":"Company Owner at Cyberfero s.r.l.","sameAs":["https:\/\/www.cyberfero.com","https:\/\/www.facebook.com\/piergiorgio.venuti\/","linkedin.com\/in\/ing-piergiorgio-venuti-9a51077","https:\/\/x.com\/@gigasec.org","https:\/\/www.youtube.com\/user\/secureod?feature=masthead-dropdown"],"url":"https:\/\/www.cyberfero.com\/it\/author\/piergiorgio-venuti\/"},{"@type":"PostalAddress","@id":"https:\/\/www.cyberfero.com\/it\/standard-iso-27001-richiede-un-pentest\/#local-main-place-address","streetAddress":"Via Statuto, 3","addressLocality":"Reggio Emilia","postalCode":"42121","addressRegion":"Italia","addressCountry":"IT"},{"@type":"ImageObject","inLanguage":"it-IT","@id":"https:\/\/www.cyberfero.com\/it\/standard-iso-27001-richiede-un-pentest\/#local-main-organization-logo","url":"https:\/\/www.cyberfero.com\/wp-content\/uploads\/2024\/05\/Color-logo-no-background.png","contentUrl":"https:\/\/www.cyberfero.com\/wp-content\/uploads\/2024\/05\/Color-logo-no-background.png","width":3163,"height":922,"caption":"Cyberfero s.r.l."}]},"geo.placename":"Reggio Emilia","geo.region":"Italia"},"_links":{"self":[{"href":"https:\/\/www.cyberfero.com\/it\/wp-json\/wp\/v2\/posts\/9209","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.cyberfero.com\/it\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.cyberfero.com\/it\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.cyberfero.com\/it\/wp-json\/wp\/v2\/users\/4"}],"replies":[{"embeddable":true,"href":"https:\/\/www.cyberfero.com\/it\/wp-json\/wp\/v2\/comments?post=9209"}],"version-history":[{"count":4,"href":"https:\/\/www.cyberfero.com\/it\/wp-json\/wp\/v2\/posts\/9209\/revisions"}],"predecessor-version":[{"id":15478,"href":"https:\/\/www.cyberfero.com\/it\/wp-json\/wp\/v2\/posts\/9209\/revisions\/15478"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.cyberfero.com\/it\/wp-json\/wp\/v2\/media\/9215"}],"wp:attachment":[{"href":"https:\/\/www.cyberfero.com\/it\/wp-json\/wp\/v2\/media?parent=9209"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.cyberfero.com\/it\/wp-json\/wp\/v2\/categories?post=9209"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.cyberfero.com\/it\/wp-json\/wp\/v2\/tags?post=9209"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}