Red teaming the red team
Who is red teaming the red team? There are two aspects and reasons why, at some point, especially in a large organization, you must consider engaging in pen testing the red team. Some reasons for this are as follows:
- Prolonged internal group discussions and exposure, including purple teaming, create a groupthink mindset, and assessments from another team can help highlight new threats. Engaging with peers can help to highlight deficiencies and improve the program.
- What about assets, tools, and the general collateral that is collected over the course of multiple years? Are they properly secured and safeguarded? The intelligence a red team aggregates over the course of its existence might be quite significant, and testing protection and monitoring mechanisms can help mature the program.
There is another benefit for red teamers, which is to reverse roles so that the attacker is the one being attacked. This is done to give us a better understanding...