Social Engineering Testing - SET
Test Objectives
In social engineering testing we attempt to reveal weaknesses in corporate policies, staff training, and individual awareness. E3 offers multiple types of social engineering testing, either as a standalone service or incorporated within the scope of penetration testing.
We have three broad categories of testing.
In-person scenarios
Over the phone (vishing)
Email or electronic (phishing)
All social engineering testing is intended to evaluate whether employees are properly trained to prevent unauthorized access to sensitive information and act in a way that does not put the organization at risk of exploitation. These simulations help heighten staff member awareness to potential real-world threats. Social engineering simulations are clearly designed to evaluate the institution as a whole and not to single out individual employee performance.