External network penetration test
Everything reachable from the internet, exploited not just scanned, with a ranked remediation plan.
Real penetration testing by people who do this every week, with findings ranked by what an attacker would actually do next. Free retest after you fix, always included.
Fixed price for defined scopes, quoted after a free scoping call, with a free retest included.
Everything reachable from the internet, exploited not just scanned, with a ranked remediation plan.
Assumed breach from a standard workstation, tracing the real path to domain admin.
Authenticated testing against business logic, access control and injection, mapped to OWASP.
Multi week objective based operation including phishing and physical entry, measuring detection not just entry.
Guaranteed one hour response, pre negotiated terms and forensic imaging capacity held for you.
Gap analysis for SOC 2, PCI DSS or HIPAA with a prioritized, costed remediation roadmap.
Blackthorn has been testing networks since 2013 and every engagement is delivered by a named consultant on our own payroll. We do not resell an automated scan with a logo on it. Reports are written to be handed to an engineer and to an auditor, which are two different audiences and we write for both.
“They got domain admin in nine hours from a standard laptop and then spent a day explaining exactly how to make that impossible. That report changed our budget conversation.”
Tanya B., IT Director, manufacturing
“We called the hotline at eleven on a Sunday night. An engineer was in our bridge in thirty five minutes and containment started before midnight.”
Anonymous, Regional bank, ransomware incident
“Our auditor accepted the report without a single follow up question, which had never happened with our previous vendor.”
Gary N., Compliance manager, healthcare
Very rarely, and we plan around it. Denial of service testing is excluded by default, we agree on a rules of engagement document before anything starts, and you have a named tester's direct number throughout. If something behaves unexpectedly we stop and call you within minutes rather than pressing on.
A scan lists things that might be exploitable. A penetration test proves which ones are, chains them together and shows you what an attacker reaches. We run scanners as one input, then every finding in the report is validated by hand, which is why you will not see pages of unverified informational noise.
Yes, on any fixed price engagement, within 90 days of the report. You fix, we verify, and we issue an updated report showing findings as remediated. Auditors generally want that updated letter, and charging you for it would be charging you twice for the same engagement.
Retainer clients get an engineer on a call within one hour, any hour, with terms already signed so nobody is negotiating a contract during an incident. Without a retainer we will still take your call on the hotline and we do take on emergency work, but the paperwork adds hours you will not want to spend.
Scoping calls are free and take about thirty minutes. If you are in an active incident right now, call the hotline instead of filling out a form.