My company has clients that we are going to do security audit for.
One client is for the security auditing of their network and web server.
Another one is for the security of a database CD-Rom.
So, my company would need the client companies to sign a release form (basically authorizing the audit), just to cover our rear. Now I really wouldn’t want a 20 page junk that nobody understands either. I wouldn’t want to throw off the client as too paranoid and catchy.
So, I’m looking for some samples for both of the above cases (network audit and cd-rom audit)(or the one that is in use) that are less than one page long. Human readable. Yet, cover our rear enough that should hold up in court.
I will also accept answers that point me to the right URL. However I wouldn’t accept very general answers like “cert.org” site. Well, unless, you manage to know a URL that is buried deep within their site that I can at least use as a template or a guide.
Thanks pals. I appreciate it.
PS: Usually I rate the answers very promptly (within a week).