Vulnerability assessment and impact analysis: Ability to read vulnerability reports, assess severity and business impact, and recommend or validate remediation steps; experience with vulnerability scanners (e.g., Nessus, Qualys). Pentesting / ethical hacking familiarity: Familiarity with pentesting tools, techniques, and reports (e.g., Nmap, Burp Suite, Metasploit); interest in offensive security approaches and the ability to interpret pentest findings to support remediation.