Technical Assurance & Offensive Security
Penetration Testing
Infrastructure, web, API, mobile and cloud testing with findings you can act on.
The situation
What the client receives
Schedule of deliverables
- External and internal infrastructure testing
- Web application and API testing (OWASP Top 10 / API Top 10 / ASVS)
- Mobile application testing
- Cloud configuration and privilege-escalation testing
- Wireless and physical-adjacent testing where scoped
- Executive summary, technical report and free retest of remediated findings
Frameworks and standards
Assessment is carried out against named references, so a conclusion can be traced back to the requirement it was measured against.
- OWASP ASVS / WSTG / API Top 10
- PTES
- OSSTMM
- MITRE ATT&CK
- CVSS v4.0
Related services
Discuss this engagement
Tell us about the estate or application in scope and the rules of engagement and we will set out the scope, the method and the reporting format.