This contract will list all the necessary information to allow you and the consultants that work for you to conduct and execute the penetration testing activities. The following shows a sample contract with these titles:
- The contract brief description
- Your main contacts and the main client contacts
- How confidential information is going to be exchanged
- Different penetration testing activities with details
- Limits of responsibility in case of something bad happening
- Finally, the signature of the contract
Web Application Penetration Test Agreement:
For [Client Company Name]
[Date]
Contents:
- Description
- Contacts
- Exchange of confidential information
- Web Application Intrusion Test
- Code review
- Infrastructure security test
- Information Gathering
- Limits of responsibility
- Signatures
Description:
This document describes the application penetration testing activities...