Assessment
Penetration testing and social engineering, run against the same objective, so you see the technical path and the human path to the same asset.
Home / Services
Services
Our services are as real world as you can get. Each one is delivered under written authorisation, to an agreed scope and stop condition, and each produces evidence your engineers and your auditors can use.
At a glance
| Service | The question it answers | Typical trigger |
|---|---|---|
| Social Engineering | How do our people behave when a determined adversary contacts them? | Awareness programme needs evidence, or a near-miss. |
| Penetration Testing | Could an attacker reach our critical systems, and by what path? | Compliance requirement, new application, or a redesign. |
| Security Research | What does this artefact actually do? | Malware recovered in an incident or during testing. |
| Secure Source Review | Where is the weakness in the code itself? | Pre-release review, acquisition due diligence. |
| Cyber Forensics | Who, what, when, why and how did this happen? | Confirmed or suspected compromise. |
| Operations Center | Is anything happening right now, and who is watching? | Standing monitoring requirement. |
How services combine
Penetration testing and social engineering, run against the same objective, so you see the technical path and the human path to the same asset.
Anything recovered during an assessment goes to R&D, so the result is a capability finding rather than a list of alerts.
The Operations Center holds the detections built from that research, and the Emergency Response Team acts on them.
Describe the situation — a compliance deadline, a suspicion, or simply a lack of visibility. We will recommend the smallest engagement that answers it.