How an engagement starts
No online checkout. No automated pentest. No customer portal to configure. Just a straightforward process from enquiry to results.
Request
You submit a short form describing your organization and objectives. This does not authorize any testing.
Scope
A short conversation to understand your environment, concerns, and objectives, and agree an appropriate scope — what's included, what's excluded, and how deep to go.
Proposal
You receive a straightforward, itemized proposal: objective, scope, exclusions, methodology, deliverables, timing, price and assumptions. No surprises.
Authorize
We agree written scope, authorization and Rules of Engagement — covering the authorized organization, target scope, exclusions, testing window, allowed and prohibited techniques, emergency contact, data handling and confidentiality. Testing never starts before this is signed.
Assess
Discovery, analysis, human validation, and — where authorized — attack-path investigation, carried out against the agreed scope and timeline.
Report
You receive the full report: executive summary, asset overview, validated findings with evidence, attack paths if identified, prioritized remediation, and assessment limitations.
Review
A live debrief call with the person who did the work — to walk through findings, answer questions, and discuss remediation priorities.
Start with a no-obligation request
We review your environment and objectives, agree an appropriate scope, and provide a straightforward proposal.