Group Purchasing
Group Purchasing

Performance of authorised tests to identify vulnerabilities in networks, applications, and systems. Findings support remediation planning and risk reduction across the enterprise.

Similar Roles

Incident Management (USUP)

Skills Framework for the Information Age

Co-ordination of detection, response, and recovery activities across teams and systems. Emphasis is placed on minimising impact, restoring services, and maintaining clear communication during disruptions.

Explore learning path

Strategic Planning (ITSP)

Skills Framework for the Information Age

Development of long-term technology roadmaps that support enterprise goals and capability development. Focus includes alignment of IT investments with business outcomes.

Explore learning path

Digital Forensics (DGFS)

Skills Framework for the Information Age

Retrieval and interpretation of data from devices and networks to support incident response, compliance investigations, and legal cases. Work focuses on evidence integrity, validated methods, and attacker attribution.

Explore learning path

Risk Management (BURM)

Skills Framework for the Information Age

Analysis of threats, vulnerabilities, and potential impacts to support prioritised risk mitigation. Outputs inform investment decisions and align cyber risk with business tolerance levels.

Explore learning path

Infrastructure Design (IFDN)

Skills Framework for the Information Age

Planning and design of secure, scalable, and resilient infrastructure across on-premise, cloud, and hybrid environments. Design outputs meet both current and future business needs.

Explore learning path

Offensive Cyber Operations (OCEP)

Skills Framework for the Information Age

Execution of controlled cyber operations that emulate threat actor behaviour to evaluate organisational defences. Operations are used to identify weaknesses and enhance preparedness.

Explore learning path

Cybercrime Investigation (CRIM)

Skills Framework for the Information Age

Collection, preservation, and analysis of digital evidence to trace cybercrime and support prosecution efforts. Technical artefacts are translated into admissible findings in collaboration with legal and law enforcement teams.

Explore learning path

Governance (GOVN)

Skills Framework for the Information Age

Development of frameworks that align technology use with business objectives and regulatory requirements. Focus areas include policy design, risk controls, and enterprise accountability structures.

Explore learning path

Need More Guidance About Cyber Roles?

There are numerous different roles in cybersecurity and where you fit depends on your interest level. SANS New to Cyber offers courses, certifications, and free resources for anyone interested in getting started in cybersecurity.