Creating and managing organizations

NAVIGATION  Organizations

What is an organization?

In vPenTest, organizations refer to the clients you are running assessments for.

EXAMPLE  If you are an MSP who wants to run an assessment for your client ABC Inc., you will create an organization named ABC Inc. in the vPenTest portal before scheduling an assessment for the organization.

Creating an organization

IMPORTANT  When creating an organization, it’s important to populate as many details as possible. Details such as the organization’s domain name can be used for open source intelligence (OSINT) gathering.

Follow these steps to create an organization:

  1. From the left navigation menu, click Organizations.
  2. On the List of Organizations page, click New Organization.
  3. In the New Organization window, fill in the organization information in each tab, detailed below. Be sure to click each tab to complete all fields before clicking Save, which closes the window, creates the organization, and automatically opens the organization profile page for further configuration.

NOTE  The option to edit these organization details after creation is available from the Action column on the List of Organizations page. Click the Action drop-down menu for the organization and select Edit Organization. Alternatively, click Edit in the Profile Details tab on the organization profile page, detailed in the next section.

Organization settings

Details

Field Description
Full Name Enter the full name of the organization.
Short Name Enter the abbreviation or short version of the organization name, which will be used in final reports generated after a penetration test. If no short name exists, enter the full organization name.
Industry From the drop-down menu, select your client's industry category. Industry information will be used for comparisons of security threats and vulnerabilities.
Timezone From the drop-down menu, select your client's time zone.
Domain Enter your client's web domain, which will be used for open source intelligence gathering during a penetration test (for example, employee names, relevant metadata harvested, and so forth).

To add more than one domain, click Add a Domain. To remove a domain, click the minus sign next to the domain.

NOTE  You must enter at least one domain in order to create the organization.

Set auto purge policy Optionally, turn on this toggle to set the number of days vPenTest will keep the assessment data and reports for this organization before automatically purging the data from the platform. Enter a value of at least 1 day.

Entering a value of 9 or fewer days produces a warning notification indicating that the data cannot be recovered following the brief interval you have configured.

Optionally, turn on the Apply to existing reports toggle to apply the auto-purge policy you have configured to reports that have already been generated.

For more details about global and organization-level automatic purge policy configurations, refer to Data retention and purge options.

Authorized vPenTest Agent Emails

Review the note provided in this tab. Optionally, enter an alias to associate an agent to this organization's profile. This alias serves as an authorized vPenTest agent email address for internal assessments. If you plan to conduct internal assessments, providing an alias as opposed to memorizing a UUID generated by the agents may be useful.

NOTE  This value must be unique per organization to ensure the agent is registered only with the intended organization.

EXAMPLE  You could create the alias vpentest@organizationa.com for organization A and vpentest@organizationb.com for organization B. When you register an agent, you'll simply provide these email addresses for the respective organizations, and vPenTest will automatically associate the agents to the appropriate organizations.

To add more than one alias, click Add organization email. To remove an alias, click Remove.

Integrations

This tab displays active integrations in the vPenTest account and provides the option to connect this organization to the integration. From the Organization Mapping column, you can map the organization to its corresponding organization in the integrated product, enabling seamless data synchronization.

You can manage integrations in vPenTest from the API Integrations tab on the Global Settings page. For a list of available integrations, refer to Integrations.

Permissions

Select these options according to your preferences.

Managing an organization profile

An organization profile page exists for each organization (titled in the format Organization Profile - [Full Name]), which allows you to manage the organization's data and activity.

To open the organization profile page for a certain organization, complete the following steps:

  1. From the left navigation menu, click Organizations.
  2. On the List of Organizations page, click the organization name link in the Full Name column. Alternatively, in the Action column, click the Action drop-down menu for the organization and select Manage Organization Profile.

Organization profile tabs

Expand the following drop-down sections for descriptions of the tabs available on the organization profile page.

Scheduling an assessment for an organization

The option to schedule an assessment for an organization is available on both the List of Organizations page and the organization profile page. To learn how to schedule an assessment, refer to Scheduling an assessment.