Key services
From system security assessments to red teaming — the core of what we do.
System security assessments
We independently assess the security posture of your information systems, identify the key risks and provide recommendations for improving the resilience of your environment.
Application penetration testing
In-depth application testing uncovers genuinely exploitable vulnerabilities — the ones automated scanners miss. We carry out comprehensive penetration tests of all types of application following OWASP methodologies.
Cyber incident response
If you have fallen victim to a cyber attack, we can help with expert advice and forensic analysis.
Red Teaming
Has your company outgrown conventional penetration testing, and do you want to test your real readiness for targeted attacks?
DoS/DDoS resilience testing
Controlled simulation of volumetric, protocol and application layer attacks. We establish the load at which services begin to degrade and where the limits of the existing protection lie.
Source code security review
We identify vulnerabilities directly in the program code. Static analysis with Fortify by OpenText and our own tools is complemented by manual review of security-critical parts of the application.
Targeted phishing simulations
We test how well prepared your employees are to recognise and respond appropriately to phishing attacks and other forms of social engineering.
Consulting and training
We help management and key stakeholders understand cyber risks, current trends and the impact of information security on the business.
Information security
Information security management systems to ISO 27001, business continuity to ISO 22301, GDPR compliance, IT risk management and IT audit.
- Our goal in a project is not merely to run a security assessment, simulate an attack and hand over a report, but to improve the security and resilience of your ICT environment.
- On any project we can, if you wish, work together with your SOC team, measure how effectively your security controls detect activity, and prepare recommendations for improving the detection of attack techniques.
- All security assessments and penetration tests are agreed in advance in terms of both schedule and methodology, and are carried out in a controlled, previously agreed manner.