Skip to content
← Back to services

Security testing

We deliver several security testing solutions tailored to your organization — from vulnerability assessment and web apps to red team, TIBER, and OT.

Security testing

APT simulation

Ongoing simulation of advanced threats over time — not just a snapshot like a one-off penetration test.

Web application security testing

Manual testing of web apps, login flows, and APIs aligned with OWASP — focused on business logic and real attacks.

External vulnerability assessment

Fast, targeted assessment of internet-exposed assets — web, firewalls, and other public services.

Source code review

In-depth review of source code to find weaknesses before production — beyond what surface scanning catches.

Mobile security testing

Testing of Android and iOS apps and mobile devices — static and dynamic analysis aligned with your threat model.

Cloud security testing

Security assessment of cloud environments (Azure, AWS, GCP, M365) — access, storage, integrations, and misconfiguration.

External penetration test

We test what is exposed to the internet — as an external attacker, black or white box as agreed.

Internal penetration test

Assume-breach scenario: we start as a compromised user and test lateral movement and escalation internally.

Physical penetration test

Simulated physical intrusion to test access control, locks, visitor procedures, and access to technical areas.

Phishing and vishing exercises

Social engineering via email and phone — tailored to measure human risk and strengthen awareness.

Red team exercises

Comprehensive simulation of APT-like attacks against agreed objectives — technology, physical, and people.

TIBER exercise

Threat intelligence-based ethical red teaming under TIBER-EU / TIBER-NO — for finance and other regulated environments.

OT security testing

Penetration testing of industrial and OT environments (PLCs, HMIs, networks) — in close cooperation with operations and vendors.