This begs the question as to what should or should not be included in a penetration test. By definition, a penetration test is highly invasive. What should be included in a penetration test? The harsh reality is everything should be tested. Real cyber criminals won’t spare your systems! Why should you?
But can you trust your penetration testers? During a penetration test, Nobium ensures confidentiality, integrity and availability of the client’s data and systems. After a penetration test is complete, we ensure the confidentiality of the test results.
When conducting various forms of security investigations, Nobium uses a knowledge base developed by our security experts. Our team of security consultants has over 15 years of experience in monitoring and analysis of unauthorized activity on the Internet. Nobium suggests performing a penetration test at least twice a year. This service is intended for clients that want a detailed and thorough assessment of the security of their own information system.
After a penetration test, the client should try to remove all vulnerabilities. Nobium agrees to re-examine the system after every system update. The number of repeated penetration tests is unlimited. We stop when the client is happy with the achieved level of security.
Are there any official guidelines? –Although penetration testing is considered to be an art form by many practitioners, there are various guidelines. The OSSTMM (Open Source Security Testing Methodology Manual) is one of them. Nobium's team of experts developed a series of methodologies and guidelines for their clients. Still, it is crucial to stay informed of new guidelines and standards for penetration testing.
Please feel free to check the price for our penetration testing services using our penetration testing price calculator!