IT security audits may be characterized according to the degree of information the testers and the administrators of the systems in scope have when the tests are carried out. The OSSTMM defines reversal as the audit type where the testers have full knowledge about the systems to be tested prior to the audit whereas the administrators of the tested systems are not aware of the security audit. The OSSTMM also refers to this type of test as Red Team exercise.