Ethical Hackers Wear Computing’s ‘White Hat’

“Ethical hacker” sounds like an oxymoron, but the role of these “white hat” security experts is crucial to keeping computer systems safe..

These elite professionals are hired to attempt to break into a system to discover vulnerabilities and propose solutions before malicious hackers exploit the weakness to the detriment of the organization. The EC-Council describes an ethical hacker as “an individual… who can be trusted to undertake an attempt to penetrate networks and/or computer systems using the same methods and techniques as a malicious hacker.”

In large organizations, penetration testing, another term often used — some claim wrongly — for ethical hacking, is done regularly. The idea is to stay one step ahead of “black hat” hackers who are constantly attempting to break into networks and systems. Whether they do it for the sense of adventure – so-called “gray hat” hackers – or to steal or destroy data or hold it hostage in exchange for ransom, these hackers are committing a crime.

Catching them is not easy. Many intrusions come from overseas; some are state-sponsored. Even when they are domestic, hackers are usually skilled enough to cover their tracks well enough to go unapprehended. The best may even go undetected until the damage is done.

That’s why the work of ethical hackers is so important, prevention being the best cure.

Increasingly, organizations are hiring or contracting security professionals with one of the two most common certifications in penetration testing. Both require candidates to take an extensive exam.

CompTIA, the computer trade organization, offers a nearly three-hour long test with up to 85 questions. The CompTIA PenTest+ is a combination of multiple choice and performance questions based around simulations.

The Certified Ethical Hacker test of the EC-Council is 4 hours long and all multiple-choice. Unlike the CompTIA test, the certifying organization, EC-Council, requires candidates to first take the organization’s training program or provide proof of two years of work experience in information security.

Both organizations require holders to earn continuing education credits over a three-year period in order to retain their certification.

The two organizations compete fiercely for candidates, with each claiming their certification is better and more thorough.

EC-Council even argues that penetration testing is not the same as ethical hacking, arguing that “in many organizations ethical hackers are not even involved in penetration testing teams or processes.”

Which is best? As with most certifications in IT, both sides have their proponents. For a relatively even-handed approach, here’s a link to a Medium article discussing both. Spoiler alert: It gives the nod to the CEH certification largely because it’s been around longer and is accepted as a DoD 8570 Baseline Certification.

From an employer’s perspective, both certifications mean the candidate has been tested by a credible outside organization and found to be capable of providing that dose of prevention so critical to today’s cybersecurity.

#WeAreGreenKey: Spotlight on Brad Martin
Architecture + Engineering General Interest

#WeAreGreenKey: Spotlight on Brad Martin

Green Key Unlocked: Mastering your Healthcare Interview
General Interest Healthcare

Green Key Unlocked: Mastering your Healthcare Interview

Is Covid-19 Back or Are We Just Seeing a Surge in Cases?
General Interest Healthcare Pharma

Is Covid-19 Back or Are We Just Seeing a Surge in Cases?

Strategic Networking: A Secret Weapon in Job Searching
Accounting + Finance Architecture + Engineering Financial Services General Interest Healthcare Human Resources Information Technology Legal Support Marketing Technology Pharma Professional Support

Strategic Networking: A Secret Weapon in Job Searching

#WeAreGreenKey: Spotlight on Justin Nadelman
General Interest Green Key News Information Technology Leadership + Management

#WeAreGreenKey: Spotlight on Justin Nadelman

Navigating the Tech Interview Maze: A Guide to Success
General Interest Information Technology

Navigating the Tech Interview Maze: A Guide to Success

Green Key Unlocked: How to Succeed in Payroll Management
Accounting + Finance General Interest Human Resources Leadership + Management

Green Key Unlocked: How to Succeed in Payroll Management

#WeAreGreenKey: Spotlight on Jenny Rehkugler
Accounting + Finance General Interest

#WeAreGreenKey: Spotlight on Jenny Rehkugler

Handling Mistakes & Failure in the Workplace
General Interest Worklife

Handling Mistakes & Failure in the Workplace

How to Support Those Affected by Hawai’i Wildfires 
Green Key News

How to Support Those Affected by Hawai’i Wildfires 

#WeAreGreenKey: Spotlight on Halle Sarfin
Green Key News Professional Support

#WeAreGreenKey: Spotlight on Halle Sarfin

Advantages of Offering Exit Interviews
General Interest Human Resources

Advantages of Offering Exit Interviews

Tracking Metrics: Learning & Development
General Interest Leadership + Management Worklife

Tracking Metrics: Learning & Development

#WeAreGreenKey: Spotlight on Leanna Gallagher
Green Key News Human Resources

#WeAreGreenKey: Spotlight on Leanna Gallagher

How to Beat the Summer Productivity Slump
General Interest Leadership + Management Worklife

How to Beat the Summer Productivity Slump

Questions to Ask When Hiring a Recruiter
General Interest Leadership + Management Worklife

Questions to Ask When Hiring a Recruiter

#WeAreGreenKey: Spotlight on Chianté Vidal
Architecture + Engineering Green Key News

#WeAreGreenKey: Spotlight on Chianté Vidal

Celebrating 10 Years of GKR in Rockville
Green Key News Leadership + Management Professional Support

Celebrating 10 Years of GKR in Rockville

Internal Mobility: Retaining Top Talent
General Interest

Internal Mobility: Retaining Top Talent

Green Key Unlocked: The Future of Telemedicine & Virtual Healthcare
General Interest Healthcare Information Technology

Green Key Unlocked: The Future of Telemedicine & Virtual Healthcare

Latest Blog Posts
View All Posts
#WeAreGreenKey: Spotlight on Brad Martin

#WeAreGreenKey: Spotlight on Brad Martin

What I find the most rewarding is the fulfilment of seeing someone take that next step in their career while...
Read More
Green Key Unlocked: Mastering your Healthcare Interview

Green Key Unlocked: Mastering your Healthcare Interview

Staying in the same vein as preparing for success in a tech interview, let’s take a look at how to...
Read More
Is Covid-19 Back or Are We Just Seeing a Surge in Cases?

Is Covid-19 Back or Are We Just Seeing a Surge in Cases?

With the recent increase in hospitalizations and Covid-19 cases across the U.S. the question of How to protect ourselves and...
Read More