PCI Data Security Standard – Penetration Testing Guidance 3.12 3.12.1 3.12.3 Security Assessment
This guidance is intended for entities that are required to conduct a penetration test.
This guidance is intended for entities that are required to conduct a penetration test.
This is a link to avaliable SANS penetration testing courses.
This example policy from the USDA can be referenced for how they handle identifying, assessing, prioritizing, and monitoring the progress of corrective efforts for security vulnerabilities.
In this YouTube video the plan of action and milestones (POA&M) document is introduced and explained.