Skip to content
Book a call

Home / Blog / Engagements and Process

Category

Engagements and Process

How a penetration test actually runs – scoping, what a clean report should mean, and what separates a test from a compliance exercise.

Engagements and Process

Learn Mode and Enforce Mode Are Sold in the Same Breath. They Are Not the Same Thing.

An agent that scans, finds and proposes, with a human deciding, is where the field should go. An agent that writes and applies exploits on production, unattended, is…

Read it

Engagements and Process

I Run a Company of Pentesters, and I Watch AI Bots Doing Their Job

Faster, cheaper, and far more of it. The question is not whether AI replaces pentesters - it is which pentesters survive, and what they will need to be…

Read it

Engagements and Process

“Just Send Me a Quote and We’ll See” – Why I Don’t Work That Way

A prospective client asked for a price before telling me what the systems do. In security testing, a quote without a scope is a guess, and the person…

Read it

Engagements and Process

“We Don’t Need a Pentest. You Won’t Find Anything.”

That was the first sentence out of a client's mouth. They had tested a month earlier, with a generic vendor, because a customer required a report. Their systems…

Read it

Engagements and Process

The Previous Test Found Nothing. We Found Account Takeover.

A client came to us after working with another vendor whose report said everything was fine apart from minor findings. Data theft, identity tampering, denial of service and…

Read it

Engagements and Process

“Would You Like to Write a Book About That?” – How One Talk Became a Book and a Company

Two people from Syngress came up to me as I came off the Black Hat stage in 2009. Saying yes meant leaving a salaried job, with a mortgage…

Read it

Tell us what the system does and what worries you.

If a penetration test is not what you need yet, we will say so.

Book a scoping call See the test catalogue