Publications

A collection of articles and thought leadership pieces I’ve authored on penetration testing, red teaming, and information security.


Penetration Testing Strategy

How a Penetration Test Builds Customer Trust & Strengthens ISO 42001 Certification

October 2025 | Understanding how security assessments complement AI management system certifications and demonstrate security commitment to customers.

Need a Penetration Test? Here’s What to Do Next

June 2024 | A practical guide for organizations deciding to pursue penetration testing, covering vendor selection, scoping, and preparation.

5 Steps to Prepare for Your Penetration Test

August 2024 | Essential preparation steps to maximize the value of your penetration test engagement and ensure smooth execution.


Red Team & Advanced Testing

Penetration Testing vs. Red Teaming

January 2024 | Breaking down the key differences between traditional penetration testing and red team engagements, and when to use each approach.

What You Need to Know About Internal Network Penetration Tests

April 2025 | Deep dive into internal network assessments, including scope considerations, common findings, and preparation requirements.


Phishing & Social Engineering

Phishing Smarter: Fewer Tech Controls, More Insights

August 2024 | Rethinking phishing assessments to focus on human behavior insights rather than purely technical metrics.


Industry Perspectives

6 Problems Penetration Testers Face and How We’re Solving Them

September 2025 | Candid look at common challenges in the penetration testing industry and innovative approaches to address them.


For more content, visit my Schellman author page or check out my video content.