Method
How an engagement actually runs.
No black boxes and no surprise invoices. You know the scope, the
timing, and the escalation path before we start — and you hear from
us the same day if we find something that cannot wait for the report.
The sequence below follows established public methodology rather than
a proprietary one, so your auditors and your insurers recognise it.
Full service detail
Authorization
Scope and rules of engagement
Targets, exclusions, testing windows, escalation contacts, and a
signed authorization to test. Nothing is touched before this exists
in writing.
Discovery
Reconnaissance and mapping
We build the same picture of your organization an attacker would —
exposed services, forgotten hosts, leaked credentials, third-party
footprint, and the people named on your website.
Execution
Exploitation and lateral movement
Validated exploitation only: we prove impact rather than forward a
scanner's guess. Where a finding chains into something worse, we
follow the chain and document each hop.
Deliverable
Report and walkthrough
An executive summary a non-technical board can read, and a technical
body with reproduction steps, evidence, and a fix for every finding.
Then a live walkthrough with the engineers who have to do the work.
Resolution
Remediation support
Findings prioritized by real-world risk, with owners and target
dates. We stay available to your team while they close them.
Verification
Retest and attestation
Once the fixes land we test them again and issue a clean-state
attestation letter you can hand to a client, an auditor, or an
underwriter.