Book a scoping callBook a call

Security testing that fits how you build

We agree the scope with you, then tailor the testing approach and methodology to your product, its risks and the audit or regulatory requirements you need to address.

Book a scoping call See how it works
By what you're building

Tuned to what
you're securing

Every product exposes a different set of paths. Choose a sector to see where the test usually concentrates and which references may be relevant, depending on scope.

A pentest of a B2B SaaS product

B2B SaaS

Multi-tenant web apps where one customer's data must never reach another's.

Attack surface
WebAPICloud
Where risk concentrates
  • Tenant isolation and cross-tenant IDOR
  • Broken access control and privilege escalation (RBAC)
  • SSO / SAML / OAuth flaws
  • Object- and function-level API authorization
Relevant references, depending on scope
OWASP ASVSAPI Security Top 10CIS / cloud
Compliance tie-in

The report may support work related to SOC 2, ISO 27001 and GDPR.

A pentest of a fintech product

Fintech & payments

Apps that move money and hold financial and personal data.

Attack surface
WebAPIMobileCloud
Where risk concentrates
  • Money-movement, transaction and balance logic
  • Cross-account IDOR
  • Payment and refund API abuse and race conditions
  • Financial-PII exposure
Relevant references, depending on scope
OWASP ASVSAPI Security Top 10CIS / cloud
Compliance tie-in

The report may support work related to PCI-DSS, DORA and ISO 27001.

A pentest of an e-commerce product

E-commerce

Storefronts where checkout, pricing, and accounts are the value.

Attack surface
WebAPIMobileif there is an app
Where risk concentrates
  • Checkout, cart, price and coupon manipulation
  • Payment-integration flaws
  • Account takeover and credential stuffing exposure
  • Order and inventory business logic
Relevant references, depending on scope
OWASP ASVSAPI Security Top 10
Compliance tie-in

The report may support work related to PCI-DSS and GDPR.

A pentest of a logistics platform

Logistics & mobility

Platforms coordinating fleets, tracking, and third-party partners in real time.

Attack surface
WebAPIMobileExternal Network
Where risk concentrates
  • Partner and third-party API trust boundaries
  • Geolocation and tracking data exposure
  • Driver and rider app and token handling
  • Real-time system abuse
Relevant references, depending on scope
OWASP ASVSAPI Security Top 10MASVS / MASTGPTES / NIST 800-115
Compliance tie-in

The report may support work related to NIS2 (transport) and GDPR.

A pentest of a connected product

IoT & connectivity

Connected products managed through cloud, apps, and networks.

We test the connectivity and management plane around the connected product.

Attack surface
External / Internal NetworkAPICloudMobileWeb console
Where risk concentrates
  • Device management-plane and provisioning APIs
  • Cloud-to-device trust and authentication
  • Companion mobile app
  • Network protocol and segmentation exposure
Relevant references, depending on scope
PTES / NIST 800-115API Security Top 10CISMASVS
Compliance tie-in

The report may support work related to NIS2 and GDPR.

A pentest of a healthtech product

Healthtech

Products handling sensitive patient and health data, where access control and the evidence trail matter most.

Attack surface
WebAPICloudMobileif there is an app
Where risk concentrates
  • PHI and health-data access control and authorization
  • Audit-trail integrity
  • Consent and data-sharing boundaries
  • API exposure of records
Relevant references, depending on scope
OWASP ASVSAPI Security Top 10CIS / cloud
Compliance tie-in

The report may support work related to GDPR and ISO 27001.

HIPAA only if you handle US patient data.

Same engagementevery sector

We agree the scope and testing rules, publish confirmed findings in Outer Core and provide a reviewed report. Any retest is recorded under the terms agreed for the engagement.

By company size

Shape the engagement around your stage

Pick your stage: the engagement is shaped around it.

Startups

Test a feature as you ship it.

Fast, scoped tests keep your release cycle moving, and pre-launch checks catch issues before your users do.

How it's usually scoped
ScopeA single feature or app, defined in the scoping call.
CadencePer release, and before a launch.
You watchFindings arrive live. Nothing blocks the cycle.
SMEs

No security team to build.

Checklist progress and confirmed findings appear in Outer Core during the engagement, giving your team a head start on remediation.

How it's usually scoped
ScopeYour core product and the infrastructure behind it.
CadenceAnnually, or on any major change.
You watchProgress live; reports that drop into your workflow.
Scale-ups & larger teams

Zero disruption to daily work.

Scoped, time-boxed engagements keep the team moving, and a longer collaboration builds a security picture you can plan against.

How it's usually scoped
ScopeMultiple products and environments over time.
CadenceRecurring, time-boxed engagements.
You watchA security picture you can plan against.
Why us

What the engagement gives your team

01

A testing window you can plan around

We confirm the start and delivery window after the scope and tester match are clear.

02

Follow the engagement

Checklist progress and confirmed findings appear in Outer Core as the test moves forward, and you can talk directly with the tester.

03

A human tester leads the work

A named tester works through the agreed scope, using tools to support careful manual testing.

04

A quote based on the scope

A fixed quote before anything starts.

A pentest should leave your team ready to act

Your team can see what was tested, reproduce each confirmed issue and know what to fix next.

Depth
Evidence your team can reproduce.

Each confirmed finding explains the affected system, conditions, proof and demonstrated impact.

Actionable report
Guidance tied to the cause.

Remediation guidance gives engineers a practical place to start and keeps the tester available for questions.

No surprises
A clear engagement record.

The approved scope, methodology, findings and recorded retest results stay together.

A pentest should leave your team ready to act

Your team can see what was tested, reproduce each confirmed issue and know what to fix next.

Depth
Evidence your team can reproduce.

Each confirmed finding explains the affected system, conditions, proof and demonstrated impact.

Actionable report
Guidance tied to the cause.

Remediation guidance gives engineers a practical place to start and keeps the tester available for questions.

No surprises
A clear engagement record.

The approved scope, methodology, findings and recorded retest results stay together.

Theme 1 of 3
For your team

Let's scope it to your product

Tell us what you run. We will agree the scope and send a quote with the proposed testing window.

Book a scoping call See how it works