Point in Time Testing
For the past two decades industry experts have primarily followed a point in time testing approach. While this does offer value, it’s outdated and often leaves gaps.
For example, vulnerabilities are discovered daily, a point in time engagement for businesses of moderate size is less than 3 weeks. That leaves 49 weeks you could potentially be affected by a vulnerability.
Although we would prefer a partnership our traditional engagements differ from most out there.
- Our goal and mission as a company is to leave you in a better security posture than when we started and assist you in the remediation process.
- We take the information we’ve spent the last few weeks gathering and identify additional weaknesses that may be cultural or require a more strategic remediation strategy.
- We offer and insist on scheduling retesting in order to help drive remediations
By approaching testing this way, we stay involved and provide both guidance and expertise in order to help you implement a better security posture.
Partnerships
We like to take a partnership approach. Consider us your offensive security experts.
- Engagements are dynamic and ideally take place over a quarter and priced competitively to point in time engagements.
- Engagement offerings exist for yearlong partnerships where we test periodically and assist in remediation efforts.
- Retesting findings is built into engagements. You shouldn’t wait till next years test to ensure your mitigation is working. Offensive security services core purpose is to better your security posture and blue team.
- We dedicate time to research and development to ensure skills are and remain expert status. Clients directly benefit from this. And most people enjoy a good security project.
- We only accept a limited number of clients per year. Our goal is not to get as many clients as we can but to foster quality relationships through our employees. We want to make an impact not make as much money as we can.
Expert Advice and Recommendations on Services
Unfortunately there is a disconnect between sales and technical expertise. From the start you are discussing needs with a technical expert. Selling you what you need not trying to up sell and feed a commission. Would you rather have someone selling you services that perform the services or someone who has a degree in the art of selling?
