Security testing
We deliver several security testing solutions tailored to your organization — from vulnerability assessment and web apps to red team, TIBER, and OT.
APT simulation
Ongoing simulation of advanced threats over time — not just a snapshot like a one-off penetration test.
Web application security testing
Manual testing of web apps, login flows, and APIs aligned with OWASP — focused on business logic and real attacks.
External vulnerability assessment
Fast, targeted assessment of internet-exposed assets — web, firewalls, and other public services.
Source code review
In-depth review of source code to find weaknesses before production — beyond what surface scanning catches.
Mobile security testing
Testing of Android and iOS apps and mobile devices — static and dynamic analysis aligned with your threat model.
Cloud security testing
Security assessment of cloud environments (Azure, AWS, GCP, M365) — access, storage, integrations, and misconfiguration.
External penetration test
We test what is exposed to the internet — as an external attacker, black or white box as agreed.
Internal penetration test
Assume-breach scenario: we start as a compromised user and test lateral movement and escalation internally.
Physical penetration test
Simulated physical intrusion to test access control, locks, visitor procedures, and access to technical areas.
Phishing and vishing exercises
Social engineering via email and phone — tailored to measure human risk and strengthen awareness.
Red team exercises
Comprehensive simulation of APT-like attacks against agreed objectives — technology, physical, and people.
TIBER exercise
Threat intelligence-based ethical red teaming under TIBER-EU / TIBER-NO — for finance and other regulated environments.
OT security testing
Penetration testing of industrial and OT environments (PLCs, HMIs, networks) — in close cooperation with operations and vendors.