Services Offered
Find the weaknesses before an attacker does.
GonzoSec delivers hands-on penetration testing that shows how a real attacker would get in, what they could reach, and exactly how to stop them. Every engagement ends with findings your leadership can understand and your IT team can act on.
Whether you are preparing for a SOC 2 or ISO 27001 audit, answering a customer security questionnaire, or simply want to know where you stand, our testing gives you evidence instead of assumptions. We scope each engagement to your environment and your goals, so you pay for the testing you need and nothing else.
Internal Network Penetration Testing
What could an attacker do once they are inside?
Most breaches spread because one compromised laptop or stolen password leads to everything else. We simulate that scenario from inside your network to show how far an intruder could go, and where to cut the path.
What we test:
-
Active Directory and identity weaknesses, including misconfigurations, weak credentials, and privilege escalation paths
-
Network segmentation and lateral movement between systems
-
Vulnerable or misconfigured servers, workstations, shares, and services
-
Credential exposure, including password reuse and stored secrets
-
Paths to sensitive data and domain-level compromise
Best for: Organizations that want to understand the impact of a compromised user account, malicious insider, or successful phishing attack.
Typical engagement: 1 to 2 weeks, depending on network size. Testing runs from a provided device or VPN connection.
External Network Penetration Testing
See your organization the way the internet does.
Your public-facing systems are the first thing an attacker finds. We identify what you are exposing, test it for weaknesses, and show which issues could actually lead to a breach.
What we test:
-
Internet-facing hosts, firewalls, VPNs, and remote access services
-
Email, DNS, and cloud-hosted assets tied to your domains
-
Exposed administrative interfaces and forgotten systems
-
Weak or reused credentials and multi-factor authentication gaps
-
Known vulnerabilities, validated manually to remove false positives
Best for: Organizations with a growing cloud footprint, remote workforce, or customers who require proof of external testing.
Typical engagement: 3 to 5 days for most environments. No access to your network is required.
Web Application Penetration Testing
Protect the applications your business and customers depend on.
Automated scanners miss the flaws that matter most: broken access control, logic errors, and chained issues. Our testers work through your application manually, the way an attacker would, aligned to the OWASP Top 10 and OWASP ASVS.
What we test:
-
Authentication, session management, and password reset flows
-
Authorization and access control, including user-to-user and role escalation
-
Injection flaws, cross-site scripting, and insecure deserialization
-
Business logic abuse and workflow bypass
-
APIs, file uploads, and third-party integrations
Best for: SaaS providers, customer portals, and any organization whose clients or auditors expect a recent application test.
Typical engagement: 1 to 2 weeks, depending on application size and the number of user roles. Authenticated testing is recommended for the most complete coverage.
AI and LLM Security Testing
Adopt AI without opening new doors for attackers.
Chatbots, copilots, and AI-enabled workflows introduce risks that traditional testing does not cover. We assess how your AI systems can be manipulated, what data they can leak, and what actions they can be tricked into taking. Our approach is guided by the OWASP Top 10 for LLM Applications and MITRE ATLAS.
What we test:
-
Prompt injection, direct and indirect, including through documents, emails, and web content
-
Sensitive data exposure, including training data, system prompts, and information from connected sources
-
Excessive agency, where an AI agent can be pushed to misuse tools, APIs, or permissions
-
Guardrail and content filter bypass
-
Retrieval and plugin security, including access controls on the data the model can reach
-
Security configuration of enterprise AI platforms such as Microsoft Copilot
Best for: Organizations deploying internal copilots, customer-facing chatbots, or custom LLM applications, and those who need to show governance over AI risk.
Typical engagement: 1 to 3 weeks, depending on the number of AI components and integrations.
How We Work
-
Scope: A short call to understand your environment, goals, and any compliance drivers. You receive a fixed-scope proposal.
-
Test: Safe, controlled testing within agreed rules of engagement, with immediate notice for any critical finding.
-
Report: A clear written report with an executive summary, prioritized findings, and step-by-step remediation guidance.
-
Debrief: A walkthrough with your technical and leadership teams to answer questions and agree on next steps.
-
Retest: Verification that your fixes worked, with an updated report you can share with auditors and customers.
What you receive: An executive summary for leadership, detailed technical findings with severity ratings and evidence, and prioritized remediation guidance.
Ready to get started?
Every engagement is scoped to your environment, so there is no one-size-fits-all price. Tell us what you need to protect and we will recommend the right testing.