External penetration test
Manual testing of internet-facing assets with a report your auditors and your engineers can both use.
We run real penetration tests against your environment and watch it around the clock, so the first person inside your network is on your payroll.
Testing is fixed fee and scoped up front. Monitoring is priced per endpoint per month.
Manual testing of internet-facing assets with a report your auditors and your engineers can both use.
Assumed-breach testing of lateral movement, privilege escalation and domain compromise paths.
Authenticated testing against OWASP ASVS, with proof-of-concept for every finding we report.
24/7 SOC monitoring with human triage and containment actions defined in your playbook.
Guaranteed four hour response, with unused retainer hours applied to advisory work.
Targeted campaigns with training that fires at the moment someone clicks.
Blackmoor was founded in 2016 by three people who left a larger consultancy tired of automated scans being sold as penetration tests. Every tester on staff holds OSCP or equivalent and every engagement includes manual exploitation. We are independent and sell no security products, so our recommendations are not tied to a vendor's margin.
“Their report separated what would actually get us owned from what was noise. Our board understood the first section and my engineers used the second.”
Priya N., CISO, healthcare SaaS
“Called the hotline at 11pm on a Sunday during a ransomware event. A responder was on a bridge in eighteen minutes and we contained it that night.”
Mark T., VP Infrastructure, manufacturing
A scan produces a list of possible weaknesses from a signature database. A penetration test has a human chaining those weaknesses together to reach something that matters, like domain admin or your customer database. We run scans as an input, never as the deliverable.
Rarely, and we plan against it. We agree on out-of-scope systems, testing windows and a stop condition before we start, and denial of service testing is excluded unless you specifically ask for it. You get a direct line to the lead tester for the entire engagement.
A typical external test runs two weeks of testing plus one week for reporting and quality review. Internal and application tests usually run three to four weeks total. We book four to six weeks out, sooner if you have an audit deadline, so tell us the date.
Both. Every finding includes reproduction steps and specific remediation guidance, and we hold a technical readout call with your engineers. Retesting of remediated findings is included for 90 days, and we issue an updated letter you can hand to customers or auditors.
Thirty minutes to understand your environment and your deadline, then a fixed-fee proposal within three business days.