Penetration Test Offerings

Multiple types of Penetration Tests/Engagements fall within the expertise of Oneleet’s penetration testing team, some of them being:

  • Network Pentesting;
  • Mobile App Pentesting;
  • Web App Pentesting;
  • Wireless Network Pentesting;
  • Social Engineering Pentesting;
  • Pentest Program Management;
  • IoT Ecosystem Testing;
  • Red Team Assessment;
  • Digital Risk Assessment;
  • Secure Code Review.

At Oneleet, we offer 3 different types of Penetration Test packages.

FeatureComplianceComprehensiveCustom
DescriptionA high-level assessment of your product, evaluating the effectiveness of your security measures in mitigating potential breaches for compliance purposes.A thorough penetration test that examines all aspects of your application’s attack surface to identify vulnerabilities across all categories.A thorough penetration test that examines all aspects of your application’s attack surface to identify vulnerabilities across all categories.
TargetWeb Applications Mobile Applications APIsWeb Applications Mobile Applications APIs Networks Cloud Assessmentss Secure Code Reviews Social EngineeringWeb Applications Mobile Applications APIs Networks Cloud Assessmentss Secure Code Reviews Social Engineering Red Teaming IoT Devices
Use casesVulnerability testing of existing & new features. Often sufficient for early-stage companies going through SOC 2Vulnerability testing of existing & new features. Microservices testing. Testing based on several OWASP frameworksCompanies with multiple applications, red teaming, etc.
TestersManual test with a penetration tester that is at minimum OSCP & OSCE/OSWE certifiedManual test with a penetration tester that is at minimum OSCP & OSCE/OSWE certifiedManual test with a penetration tester that is at minimum OSCE/OSWE certified
Customizable ReportNot IncludedIncludedIncluded
SupportAnswer within 48HDedicated point of contact that answers within 24HDedicated point of contact that answers within 24H
Free Retesting12 months12 months12 months
Rush deliveryOptionalOptionalIncluded
Letter of EngagementIncludedIncludedIncluded
Letter of AttestationIncludedIncludedIncluded
Customized LettersNot includedIncludedIncluded
Onboarding SupportSlackSlack & LiveSlack & Live
Dedicated Customer Success ManagerNot includedIncludedIncluded
Used StandardsPentest conducted in accordance with industry-standard methodologies such as OWASP Top-10Pentest conducted in accordance with industry-standard methodologies such as OWASP WSTG, OWASP ASVS, etc.Pentest conducted in accordance with industry-standard methodologies such as OWASP WSTG, OWASP ASVS, etc.