IT glossary

Penetration test (pentest)

A penetration test is an authorised assessment that attempts to exploit vulnerabilities within a defined scope and period to demonstrate attack paths and impact. It differs from a basic automated scan through human validation and reasoning, but it does not prove absence of weaknesses outside what was tested. Before work begins, parties should agree systems, exclusions, data, timing, contacts, limits, stopping conditions and evidence handling. Production may require restricted techniques to avoid disruption. The report separates confirmed findings, risk, evidence and remediation without turning obtained access into unnecessary damage. After fixes, targeted retesting verifies relevant conditions. A completion certificate or tool name does not establish coverage, quality or continuous security; methodology, tester competence and exact scope matter.

Let's talk

Need help with this?

30 minutes with a senior consultant. No commitment, no sales pitch. An honest conversation about what you need and what we can do together.