How a Pentest Works
Typical duration: 2–4 weeks from kick-off to debrief
Scoping & Kick-off
We define goals, scope, and timeframe together.
Testing & Exploitation
Our specialists attack – manually and tool-assisted.
Reporting
You receive a detailed report with management summary and technical details.
Debrief
We discuss the results and measures together.
Our Methodology
Your Company Under the Microscope
We gather publicly available information about your company — exactly as an attacker would. This includes employee data, email addresses, technical details, and targeted phishing attempts.
We check whether your systems detect leaked data and report phishing attempts — and deliver awareness recommendations with measurable results.
The First Break-In
We try to break into your systems from the outside — through your website, email server, VPN, or other services accessible from the internet.
We test whether your monitoring detects the intrusion attempt — and deliver the detection rules if it doesn't.
Exploiting Weak Points
We test your web applications and interfaces for weaknesses — can we access data we shouldn't see? Can we manipulate functionality?
We check whether your WAF and logging systems detect the attacks — and deliver specific rules for your SIEM environment.
Spreading Through Your Network
From an initial foothold, we try to move through your internal network — just like a real attacker searching for your most important data.
We test whether lateral movement is detected — and deliver Sigma rules and network segmentation recommendations.
Attacking Your Cloud
We examine your cloud environment for misconfigurations and try to access data or services that aren't sufficiently protected.
We check your cloud logging and alerting for gaps — and deliver cloud-specific detection rules and hardening recommendations.
Simulating Targeted Threats
We simulate real attack scenarios from known hacker groups — tailored to your industry. We specifically test whether your systems detect these threats.
We measure your SOC's detection rate against real TTPs — and deliver missing detection rules for every gap.
The Real Thing — Simulated
We simulate a complete attack on your organization — from initial research to accessing critical systems, without prior knowledge of your infrastructure.
We assess your team's detection, response, and containment — and deliver a complete detection improvement plan.
Prepared When It Counts
We walk through realistic attack scenarios with your team — ransomware, data breaches, system outages — and test your ability to respond.
We evaluate your emergency plans and escalation paths — and deliver a tested playbook with clear responsibilities.