Ethical Hackers Wear Computing’s ‘White Hat’

“Ethical hacker” sounds like an oxymoron, but the role of these “white hat” security experts is crucial to keeping computer systems safe..

These elite professionals are hired to attempt to break into a system to discover vulnerabilities and propose solutions before malicious hackers exploit the weakness to the detriment of the organization. The EC-Council describes an ethical hacker as “an individual… who can be trusted to undertake an attempt to penetrate networks and/or computer systems using the same methods and techniques as a malicious hacker.”

In large organizations, penetration testing, another term often used — some claim wrongly — for ethical hacking, is done regularly. The idea is to stay one step ahead of “black hat” hackers who are constantly attempting to break into networks and systems. Whether they do it for the sense of adventure – so-called “gray hat” hackers – or to steal or destroy data or hold it hostage in exchange for ransom, these hackers are committing a crime.

Catching them is not easy. Many intrusions come from overseas; some are state-sponsored. Even when they are domestic, hackers are usually skilled enough to cover their tracks well enough to go unapprehended. The best may even go undetected until the damage is done.

That’s why the work of ethical hackers is so important, prevention being the best cure.

Increasingly, organizations are hiring or contracting security professionals with one of the two most common certifications in penetration testing. Both require candidates to take an extensive exam.

CompTIA, the computer trade organization, offers a nearly three-hour long test with up to 85 questions. The CompTIA PenTest+ is a combination of multiple choice and performance questions based around simulations.

The Certified Ethical Hacker test of the EC-Council is 4 hours long and all multiple-choice. Unlike the CompTIA test, the certifying organization, EC-Council, requires candidates to first take the organization’s training program or provide proof of two years of work experience in information security.

Both organizations require holders to earn continuing education credits over a three-year period in order to retain their certification.

The two organizations compete fiercely for candidates, with each claiming their certification is better and more thorough.

EC-Council even argues that penetration testing is not the same as ethical hacking, arguing that “in many organizations ethical hackers are not even involved in penetration testing teams or processes.”

Which is best? As with most certifications in IT, both sides have their proponents. For a relatively even-handed approach, here’s a link to a Medium article discussing both. Spoiler alert: It gives the nod to the CEH certification largely because it’s been around longer and is accepted as a DoD 8570 Baseline Certification.

From an employer’s perspective, both certifications mean the candidate has been tested by a credible outside organization and found to be capable of providing that dose of prevention so critical to today’s cybersecurity.

March Jobs Report: Unexpected Strength
General Interest

March Jobs Report: Unexpected Strength

#WeAreGreenKey: Spotlight on Lucas Leitenberger
Architecture + Engineering

#WeAreGreenKey: Spotlight on Lucas Leitenberger

Biotech vs. Techbio: A Nexus of Biology and Tech
General Interest

Biotech vs. Techbio: A Nexus of Biology and Tech

Cancer Vaccines: A New Hope
General Interest

Cancer Vaccines: A New Hope

Navigating Quarterly Reviews with Confidence
General Interest

Navigating Quarterly Reviews with Confidence

#WeAreGreenKey: Spotlight on Meryl Schoen
General Interest Professional Support

#WeAreGreenKey: Spotlight on Meryl Schoen

Mastering Hiring Algorithms as a Candidate
General Interest

Mastering Hiring Algorithms as a Candidate

Tips for Creating Effective Corporate Videos for Social Media
General Interest

Tips for Creating Effective Corporate Videos for Social Media

The Power of Video on Corporate Social Media
General Interest

The Power of Video on Corporate Social Media

#WeAreGreenKey: Spotlight on Antonia Piazza
General Interest

#WeAreGreenKey: Spotlight on Antonia Piazza

Strategies for Equitable Employee Development
General Interest

Strategies for Equitable Employee Development

Anthropic Unveils Claude 3: Redefining AI Chatbots with Enhanced Capabilities
Information Technology

Anthropic Unveils Claude 3: Redefining AI Chatbots with Enhanced Capabilities

#WeAreGreenKey: Spotlight on Mike Bosco
Accounting + Finance General Interest

#WeAreGreenKey: Spotlight on Mike Bosco

Marketing Strategies: 2024 Trends and Strategies for Success
General Interest

Marketing Strategies: 2024 Trends and Strategies for Success

The Essence of Marketing Strategy: Driving Business Success (Part II)
General Interest

The Essence of Marketing Strategy: Driving Business Success (Part II)

The Essence of Marketing Strategy: Driving Business Success
General Interest

The Essence of Marketing Strategy: Driving Business Success

Mastering Task Prioritization for Stress Reduction
General Interest

Mastering Task Prioritization for Stress Reduction

Crafting the Future: Delving into AI as a College Major
General Interest Information Technology

Crafting the Future: Delving into AI as a College Major

Mary-Kate Bula Selected as Assistant Coach of the USA Women’s Flag Football National Team
General Interest Pharma

Mary-Kate Bula Selected as Assistant Coach of the USA Women’s Flag Football National Team

Leveraging LinkedIn Polls: A Strategic Tool for Business Insights
General Interest

Leveraging LinkedIn Polls: A Strategic Tool for Business Insights

Latest Blog Posts
View All Posts
March Jobs Report: Unexpected Strength

March Jobs Report: Unexpected Strength

Despite economists’ forecasts of a slowdown in job growth and a weakening labor market due to 11 anticipated interest rate...
Read More
#WeAreGreenKey: Spotlight on Lucas Leitenberger

#WeAreGreenKey: Spotlight on Lucas Leitenberger

Welcome back to #WeAreGreenKey, where we shine a spotlight on our powerhouse recruiting team.  We recently met up with Lucas...
Read More
Biotech vs. Techbio: A Nexus of Biology and Tech

Biotech vs. Techbio: A Nexus of Biology and Tech

In the dynamic world of scientific innovation, two terms have emerged as guiding lights: Biotech and Techbio. These terms encapsulate...
Read More