What is the difference between “Security Testing” and “Penetration Testing”?

While the terms a seem similar and in a certain way they are because they both test the integrity of the application “Security Testing” is and umbrella terms for all forms of testing done on an application to test whether the data that is in the system has the necessary protections (is it encrypted, can it be accessed by incorrect logins, etc. “Penetration testing” on the other hand is a specific secutiry test technique which is a black-box testing technique done to determine whether the system or network is protected from malicious sources. These are primaily to see if the network or system if susceptible to DDOS attacks, or whether there are open ports on the network that can be used to access server information, etc.