Hello hackersploit community,
I have a nooby question, I plan to start providing pentesting services to some clients, I’m following the NIST SP 800-115 but does not go much in depth with the pre-engagement part, like ROE meetings, kick off meeting, scoping, legal considerations etc… what has been your experience with these topics with your clients and how do you usually approach it, do you guys have a checklist?