Skip to content

Penetration Testing

See what an attacker could do, before they do.

Authorised, manual testing that safely proves real impact and shows your engineers how to fix it.

  • Banks & SACCOs
  • Fintechs
  • Software teams
  • Public sector
  • NGOs
Testing window
1–3 weeks
Delivery
Remote or on-site
Retest
Included

What we test

  • External network
  • Internal & Active Directory
  • Web applications
  • APIs & integrations
  • Mobile apps
  • Cloud configuration
  • Wireless
  • Social engineering

How it works

  1. 01

    Scope

    Targets, windows and rules of engagement signed in writing.

  2. 02

    Discover

    Recon plus manual testing of auth, access control and logic.

  3. 03

    Exploit

    Weaknesses safely proven. Critical issues reported immediately.

  4. 04

    Report & retest

    CVSS-rated fixes, a debrief, then a retest once you remediate.

What you get

  • Executive summary for leadership
  • Findings with CVSS, evidence and fix guidance
  • Attack narrative showing chained issues
  • Debrief and retest of fixed findings

Aligned to

  • PTES
  • OWASP WSTG
  • OWASP ASVS
  • NIST SP 800-115
  • CVSS

For reference only; no certification implied. Timelines are confirmed in your quote.

Get a fixed quote

Free scoping call. We reply within one business day.