Offensive security, intelligence and incident response

We attack your infrastructure before someone else does.

Penetration testing as a service, offensive security, threat intelligence, digital forensics and cloud protection. Every finding is validated by hand, documented with reproducible evidence and shown in real time on our own platforms, DARKFORGE and TORO.

  • Manual validation of every finding, with controlled exploitation
  • Critical findings reported in under 24 hours
  • A stable team: the same analysts cycle after cycle
  • Aligned with NIS2, DORA, ENS and ISO 27001, with data hosted in the European Union
DARKFORGERetest in progress
PRJ-2026-014 · External pentest · Client: Your Company Ltd
High risk
Critical
0
High
0
Medium
0
Low
0
Findings fixed65 %
  • SQL injection in web portalOpen
  • Default credentialsBeing fixed
  • Remote access without MFABeing fixed
  • Missing security headersFixed
  • Server version exposedFixed
ILLUSTRATIVE DATA

Tools open doors. The team decides what is behind them.

A scanner returns a list. We return an answer: what could really happen to your organisation, with what impact, and what to fix first. Years of offensive security experience, applied by hand, project after project.

An attacker's perspective

We simulate real attacks with current techniques and controlled exploitation. We do not stop at automated scanning: every finding is reproduced, validated and put in context according to the asset, how easy it is to exploit and its impact on the business.

Evidence that holds up

Every finding is documented with reproducible evidence (screenshots, requests, logs) and, where appropriate, with legal validity and chain of custody. What appears in the report can be reproduced, not just read.

Continuous visibility

DARKFORGE tracks every project in real time; TORO watches your attack surface and the threats that affect you between one report and the next. Nothing is left in a PDF ageing in a drawer.

What an automated scan delivers
  • Unfiltered vulnerability lists, full of false positives
  • Each finding in isolation, with no idea what chaining them achieves
  • A generic score, the same for any company
  • A report of hundreds of pages that nobody prioritises
  • Nobody at the other end when a question comes up
What a Jaquers pentest delivers
  • Every finding reproduced and validated by hand before it reaches the report
  • Controlled exploitation: how far a real attacker would get, with no denial of service
  • Risk in context: the affected asset, how easy it is to exploit and the impact on your business
  • An executive report for management and a technical report for your team, with a prioritised remediation plan
  • A fixed technical contact and the same team cycle after cycle

A senior, stable team

The same analysts in every cycle, so knowledge of your environment is never lost. A technical lead accompanies the project from start to finish and answers questions through whichever channel you prefer.

Critical findings, immediately

A critical vulnerability is reported as soon as it is confirmed, with its evidence and a provisional recommendation, without waiting for the final report.

No surprises in the report

Everything in the report has been discussed beforehand. The final document confirms; it does not reveal.

Regulatory compliance and European data sovereignty.

What regulators and auditors demand today, solved by the design of the service.

Aligned with current regulation

Our method, our platforms and our reports are aligned with the regulatory and certification frameworks in force in Europe and in Spain. Every finding keeps its evidence, dates, owner and status, and can be exported as control evidence for audits and for the notification deadlines each regulation sets.

NIS2DORAENSISO/IEC 27001GDPR

European data sovereignty

Your evidence, reports and monitoring data are hosted and processed in the European Union, on platforms developed and operated by us, isolated per client and under the GDPR. This website is hosted in Spain and our corporate email keeps data residency within the European Union.

Hosted in the EUOur own platformsIsolation per clientGDPR
Flagship service · PT-01

PTaaS: penetration testing stops being a one-day snapshot.

PTaaS turns penetration testing into a continuous service: your infrastructure and applications are tested on a recurring basis, every finding reaches the portal as soon as it is validated and every fix is verified without waiting for the next project.

Who PTaaS is for

  • Continuous developmentCompanies with in-house software and frequent deployments that cannot wait for the annual pentest.
  • Regulated environmentsOrganisations under ISO 27001, ENS, NIS2 or DORA that need continuous, traceable evidence.
  • No in-house offensive teamOrganisations that want a stable team that knows their infrastructure, at a fixed cost.
  • Suppliers and supply chainCompanies that must demonstrate their security to customers and third-party auditors.

Continuous testing

Scheduled cycles and on-demand tests for every release, migration or relevant change.

Findings in real time

Every vulnerability appears in DARKFORGE as soon as it is confirmed, with evidence and a recommendation.

Unlimited retesting

We verify every fix when your team has it ready, as many times as necessary.

Predictable cost

A fixed monthly fee and a scope reviewed every quarter, with no project-by-project quotes.

One-off pentesting versus PTaaS

What changes when testing never stops.

One-off pentest
PTaaS
Frequency
Once a year, or after an incident
Continuous: scheduled cycles and on-demand tests
Results
One report when the project closes
In the portal, as soon as each finding is validated
Retest
One, at the end of the project
Unlimited, whenever your team has the fix ready
Changes and new releases
Untested until the next pentest
Tested as part of the service
Knowledge of the environment
Starts from scratch on every project
A stable team that knows your infrastructure
Evidence for audits
One-off; it ages within months
Continuous, with history and traceability
Budget
Per project, every time
Fixed monthly fee, adjustable scope

Three plans, one common base

All include the initial pentest, the DARKFORGE portal, unlimited retesting and notification of critical findings in under 24 hours. The difference lies in the cadence and the services included.

Essential
Continuous external coverage.
  • External pentest cyclesEvery six months
  • Attack surface in TOROMonthly
  • On-demand tests2 per year
  • Internal pentest with probe—
  • Phishing simulation—
  • Cloud and Microsoft 365 audit—
  • Source code review—
  • Executive reportEvery six months
  • Follow-up meetingQuarterly
Request a proposal
Recommended
Advanced
Perimeter, internal network and the human factor.
  • External pentest cyclesQuarterly
  • Attack surface in TOROWeekly
  • On-demand tests6 per year
  • Internal pentest with probeAnnual
  • Phishing simulationEvery six months
  • Cloud and Microsoft 365 auditAnnual
  • Source code review—
  • Executive reportQuarterly
  • Follow-up meetingMonthly
Request a proposal
Complete
The whole organisation, every month.
  • External pentest cyclesMonthly
  • Attack surface in TOROWeekly
  • On-demand testsUnlimited*
  • Internal pentest with probeEvery six months
  • Phishing simulationQuarterly
  • Cloud and Microsoft 365 auditEvery six months
  • Source code reviewPer major release
  • Executive reportMonthly
  • Follow-up meetingFortnightly
Request a proposal

* Within the contracted scope and with prior planning. All plans are annual subscriptions billed monthly or quarterly; the scope is reviewed every quarter and changes are reflected in the fee for the following period.

Service catalogue · 2026 edition

Twelve services in three families, with the same method and the same platforms.

Engagements with a scope, a schedule and a final report, designed to answer a specific question. Each service has a code to reference it in proposals and programmes, and any of them can be delivered as PTaaS.

Offensive security

We think and act as a real attacker would, with clear rules of engagement and controlled exploitation. The goal is not a list of vulnerabilities but knowing what could really happen in your organisation and what needs fixing first.

OF-01OF-02OF-03OF-04OF-05OF-06
OF-01Manual validation

External penetration testing

What an attacker would see, and achieve, from the Internet.

We simulate real attacks from outside the organisation: networks, web applications, APIs and Internet-facing servers. We identify firewall weaknesses, misconfigurations and exploitable vulnerabilities, and validate every finding by hand with reproducible evidence and specific recommendations.

  • DeliveryRemote
  • ApproachBlack box or grey box
  • FrameworkOWASP WSTG, PTES
  • RecommendedAnnual
See the service page

What's included

  • Reconnaissance and mapping of the exposed surface
  • Vulnerability analysis with manual validation
  • Controlled exploitation, with no denial of service
  • Review of web applications and APIs (OWASP Top 10)
  • Remediation plan prioritised by risk

Deliverables

  • Executive report
  • Technical report
  • Results presentation session
  • Retest of findings
Black, grey or white boxThe approach determines how much information the team receives before starting. Black box: no prior information, like an external attacker starting from zero. Grey box: with credentials or partial information, to go further and assess the risk posed by a legitimate user. White box: full access to code, architecture and configuration, for maximum coverage of critical systems. We recommend grey box for most web and internal pentests: more depth in less time.
OF-02Manual validation

Internal penetration testing

What happens once the attacker is already inside.

Simulates an attack from inside the corporate network: a compromised laptop, a malicious employee or an unmanaged device. We assess servers, workstations, network devices, Active Directory and permissions, plus segmentation and privilege control, to minimise the risk of lateral movement. Delivered entirely remotely, with our probe or a machine provided by the organisation.

  • Delivery100% remote, with probe
  • FrameworkPTES, MITRE ATT&CK
  • RecommendedAnnual
See the service page

What's included

  • Enumeration of the internal network and Active Directory
  • Privilege escalation and controlled lateral movement
  • Review of segmentation and access control policies
  • Analysis of workstations, servers and network devices
  • Recommendations to strengthen internal security

Deliverables

  • Executive report
  • Technical report
  • Results presentation session
  • Retest of findings
OF-03Manual review of critical flows

Source code review

Vulnerabilities caught before they reach production.

Security review of application and service source code, combining automated analysis with manual review of the critical parts: authentication, session management, input handling, cryptography and access control. We detect embedded secrets, vulnerable dependencies and insecure patterns, with fix examples for the development team.

  • DeliveryRemote
  • ScopeWeb, backend and mobile
  • FrameworkOWASP ASVS, CWE Top 25
  • RecommendedBefore each major release
See the service page

What's included

  • Static analysis of the code and its dependencies
  • Detection of embedded secrets, keys and credentials
  • Manual review of the critical flows
  • A fix recommendation per finding, with examples

Deliverables

  • Technical report with findings by file and line
  • Session with the development team
  • Retest of the fixed version
OF-04Controlled simulation

Man-in-the-middle simulation

Can someone listen to, or alter, your company's communications?

Man-in-the-middle attacks remain one of the most common threats on corporate networks. We run controlled simulations to assess how vulnerable your communications are: Wi-Fi security, authentication protocols and data encryption. The report includes concrete solutions such as VPNs, digital certificates and stronger policies.

  • DeliveryOn-site or remote with probe
  • FrameworkPTES, vendor best practices
  • RecommendedAnnual or after network changes
See the service page

What's included

  • Audit of corporate and guest Wi-Fi networks
  • Traffic interception and service spoofing tests
  • Review of authentication and encryption protocols
  • Mitigation measures: VPN, certificates and policies

Deliverables

  • Technical report
  • Mitigation guide
  • Results presentation session
OF-05Training included

Phishing simulation

The human factor, measured and trained.

We design simulated phishing campaigns that replicate the techniques real cybercriminals use, and measure open, click and credential-submission rates by department. Then we provide training to improve the security culture and prevent real incidents.

  • DeliveryRemote
  • OptionalVishing and smishing
  • RecommendedQuarterly or every six months
See the service page

What's included

  • Scenarios tailored to the company
  • Campaigns by email and messaging
  • Metrics by department: opens, clicks and credentials
  • Follow-up awareness training

Deliverables

  • Results report with metrics
  • Awareness session
  • Training material
OF-06Continuous service in TORO

Continuous attack surface discovery

Your exposure changes every week. We keep watch.

A pentest is a photograph; the attack surface is a film. This recurring service periodically identifies every exposed resource of the organisation (domains, subdomains, IP addresses, services, certificates and applications), both those the organisation knows about and those discovered during reconnaissance. Every new asset or relevant change is analysed and reported, and the full picture can be checked at any time in TORO.

  • DeliveryContinuous service
  • PlatformTORO
  • FrequencyWeekly or monthly
  • ComplementsOF-01
See the service page

What's included

  • Inventory of exposed assets and shadow IT
  • Detection of new domains, services and ports
  • Monitoring of certificates, technologies and vulnerable versions
  • Alerts on changes and critical exposures

Deliverables

  • Attack surface dashboard in TORO
  • Alerts on changes
  • Periodic exposure report
A cycle that never stopsEach iteration discovers the exposed assets, analyses the changes since the previous one, reports what matters (a new subdomain, an open port, an expired certificate) and verifies that what was reported has been dealt with. The inventory, with its history, is the starting point for the next external pentest.

Intelligence and response

When something has already happened, or may be happening, what matters is understanding it rigorously: what happened, how, what the impact is and how to stop it happening again. We work with traceable evidence and, when required, with legal validity.

IR-01IR-02IR-03IR-04
IR-01Legal validity

Digital forensics

What happened, how, and with what impact, with evidence that holds up.

Thorough investigations to identify the origin, nature and impact of an attack: recovery of deleted data, analysis of system logs and extraction of digital evidence with legal validity. We determine whether there was unauthorised access, data theft or tampering with systems, and deliver recommendations to strengthen security.

  • DeliveryRemote or on-site
  • ScopeServers, workstations, mobile devices and cloud
  • AvailabilityOn demand
See the service page

What's included

  • Evidence acquisition with chain of custody
  • Analysis of disks, memory, logs and artefacts
  • Reconstruction of the incident timeline
  • Recovery of deleted information

Deliverables

  • Forensic expert report
  • Incident timeline
  • Hardening recommendations
While you contact us
  • Do not switch off or restart the affected machine
  • Do not format, reinstall or run clean-up tools on it
  • Restrict access to the bare minimum
  • Write down who did what, and when
IR-02DARKFORGE forensic module

Email and phishing forensics

Every suspicious email, analysed down to the last header.

We analyse in depth the suspicious or fraudulent emails received by the organisation: full headers, SPF, DKIM and DMARC authentication, the domains, IP addresses and servers involved, links and attachments. We also check your own domain's posture against spoofing and deliver a report that is useful both for decision-making and for documenting the incident to third parties.

  • DeliveryRemote
  • PlatformDARKFORGE
  • ComplementsIR-04 and CL-02
See the service page

What's included

  • Header analysis and SPF, DKIM and DMARC verification
  • Investigation of the domains, IPs and servers involved
  • Analysis of malicious links and attachments
  • Anti-spoofing audit of your own domain

Deliverables

  • Forensic report in PDF or Word
  • Indicators of compromise
  • Recommendations
IR-03Active monitoring in TORO

OSINT threat intelligence

What the Internet already knows about your company, before an attacker uses it.

We collect and analyse public information about the organisation, its key people and potential threats: exposed vulnerabilities, data leaks, leaked credentials and reputational risks. Ideal for preventing targeted attacks, monitoring emerging threats and assessing the digital exposure of the company or its executives. The whole process runs on TORO, which keeps watch between one report and the next.

  • DeliveryRemote
  • PlatformTORO
  • RecommendedAnnual or before a pentest
See the service page

What's included

  • Digital footprint of the organisation and key people
  • Credentials and data leaked in breaches and forums
  • Look-alike domains and brand impersonation
  • Reputational and social engineering risks

Deliverables

  • Exposure report
  • Access to the intelligence dashboard in TORO
  • Footprint reduction recommendations
IR-04Takedown and notifications

Incident response and fraud takedown

Fast containment, clear communication and a documented closure.

We support the organisation during a security incident: containment, eradication and recovery, with clear prioritisation criteria and communication that management can understand. We also handle the takedown of fraudulent domains, websites and profiles impersonating the company, coordinating with registrars, hosting providers and INCIBE-CERT, and prepare the documentation for mandatory notifications.

  • DeliveryRemote or on-site
  • AvailabilityOn demand
  • ComplementsIR-01 and IR-02
See the service page

What's included

  • Triage, containment and eradication
  • Takedown of fraudulent domains and sites
  • Coordination with INCIBE-CERT, providers and registrars
  • Support with regulatory notifications (GDPR, NIS2, DORA)

Deliverables

  • Incident report
  • Evidence dossier
  • Closure report
Notification deadlines we help you meet
  • GDPR: notification to the Spanish data protection authority (AEPD) within 72 hours and communication to those affected when the risk is high
  • NIS2: early warning within 24 hours, notification within 72 hours and final report within one month
  • DORA: initial notification within 4 hours of classifying the incident as major, intermediate report within 72 hours and final report within one month
Indicative deadlines: the specific obligation depends on the type of entity, the incident and the applicable regulation.

Cloud and digital workplace

Infrastructure no longer ends at the perimeter. We audit the cloud environments and collaboration platforms where your company's information lives today, and tell you exactly what to change and how.

CL-01CL-02
CL-01CIS Benchmarks

Cloud security

AWS, Azure and Google Cloud, configured the way they should be.

We audit the security of AWS, Azure and Google Cloud environments: identities and permissions, data encryption, network and service configuration, activity logging and regulatory compliance. The result is the recommended configuration for your environment (MFA, network segmentation, monitoring of suspicious activity) with concrete instructions for your team or your provider to apply.

  • DeliveryRemote
  • FrameworkCIS Benchmarks, provider best practices
  • RecommendedAnnual
See the service page

What's included

  • Review of identities, roles and permissions (IAM)
  • Configuration audit against CIS Benchmarks
  • Encryption, backups and storage exposure
  • Logging, alerts and detection of suspicious activity

Deliverables

  • Audit report
  • Recommended configuration, step by step
  • Retest after the changes
Shared responsibilityThe provider protects the cloud (data centres, hypervisors, managed services and availability); the customer protects what they put in it: identities, permissions and MFA, service, network and storage configuration, data, backups and activity logging. Most cloud incidents stem from misconfigurations and exposed credentials, not from provider failures.
CL-02Step-by-step implementation guide

Microsoft 365 security

Email, SharePoint, OneDrive and Teams, protected against phishing and account takeover.

Collaboration platforms such as Microsoft 365 are frequent targets of phishing and business account compromise. We audit email protection, the configuration of SharePoint, OneDrive and Teams, and the ability to detect suspicious activity. We define the policies, filtering rules and settings needed to prevent unauthorised access, and document them step by step for your team or your provider to apply.

  • DeliveryRemote
  • RecommendedAnnual and after licensing changes
See the service page

What's included

  • Review of conditional access and MFA
  • Email: SPF, DKIM, DMARC and filtering rules
  • SharePoint, OneDrive and Teams configuration
  • Logging and alerts for suspicious activity

Deliverables

  • Audit report
  • Recommended policies and settings
  • Step-by-step implementation guide
Our own platforms

Two platforms built by us, so nothing is left in a PDF.

DARKFORGE is each client's private space to follow their projects in real time, check evidence and download reports. TORO is the platform on which we deliver threat intelligence and attack surface monitoring.

DF · Platform

DARKFORGE

The operations centre of every project.

Each client accesses a private space, isolated from the rest, where they can follow the work in real time, check the evidence, download the reports and mark what their team is fixing. It is the base on which PTaaS is delivered.

  • Findings in real timeEvery vulnerability appears in the portal as soon as it is validated, with severity, evidence and a recommendation.
  • Executive and technical reportsGenerated from the platform in PDF, with export to Word for your documentation.
  • Cyber Security Risk MeterA global score and a dashboard that sum up the security posture at a glance.
  • Traceable evidenceScreenshots, evidence cards and documented sessions to reproduce every finding.
  • Tracking and retestStatus of every finding (open, being fixed or fixed) and verification in the retest.
  • Phishing forensics moduleAnalysis of suspicious emails with SPF, DKIM and DMARC verification and report export.
  • Scanner and importResults from scanners and previous audits are imported as a baseline.
  • Mobile accessThe status of your projects from your phone, at any time.
Isolation per client, hosting in the European Union, TLS encryption on every connection and protected access: the platform is held to the same audit criteria we apply to our clients.
DARKFORGECritical · CVSS 9.8
#0417 · SQL injection in web portal
portal.yourcompany.com · validated manually · reported 14 min after confirmation
OpenBeing fixedRetestFixed
Screenshot 01 · server response
Reproducible HTTP request
Documented session
Request retestExport PDFExport WordView recommendation
ILLUSTRATIVE DATA
TO · Platform

TORO

Threat Observation & Risk Operations.

It continuously observes what the organisation exposes to the Internet and what is said, leaked or impersonated about it, and turns that observation into prioritised risks to act on. Continuous attack surface discovery (OF-06) and OSINT threat intelligence (IR-03) are delivered on TORO.

  • Continuous discoveryDomains, subdomains, IP addresses, services, certificates and technologies, with a history of additions and removals.
  • Exposure alertsOpen ports, new services, certificates about to expire and versions with known vulnerabilities.
  • Leaked credentialsCorporate accounts found in breaches and dumps, with an alert as soon as new ones appear.
  • Look-alike domains and impersonationRegistrations that resemble yours and sites that imitate your brand, with a direct path to takedown.
  • Key people's footprintDigital exposure of executives and sensitive profiles, to prevent social engineering.
  • Prioritised riskEvery observation becomes a risk with a priority, an owner and a status, not an endless list.
  • Exposure reportsPeriodic attack surface and intelligence report, exportable as evidence for audits.
  • Feeds the pentestsThe assets TORO discovers are added to the scope of PTaaS and of the pentests at every review.
TORO works only on public assets and sources: nothing is installed on your infrastructure and your systems are not accessed, and each organisation's data is kept isolated from the rest and hosted in the European Union.
TOROUpdated 2 h ago
Your Company Ltd · Active monitoring · Attack surface and intelligence
0exposed assets+4 this week
0domains
0subdomains
0IP addresses
0services
Open exposures
  • RDP exposed to the Internet185.0.0.0/32
    Critical
  • Expired certificateportal.yourcompany.com
    High
  • Orphaned subdomainold.yourcompany.com
    High
  • Version with known CVEsnginx 1.18
    Medium
  • Missing HSTS headerwww.yourcompany.com
    Low
Threat intelligence
  • Leaked credentials
    +3 new
    0
  • Look-alike domains
    2 active
    0
  • Brand impersonations
    in takedown
    1
  • Forum mentions
    reviewed
    2
  • Executives with high exposure
    plan in progress
    1
ILLUSTRATIVE DATA

What is your organisation exposing to the Internet right now?

Give us your domain and we will send you, free of charge and with nothing to install, a summary of what TORO sees from the outside: exposed assets, services, certificates, look-alike domains and leaked credentials. Public sources only, and with your authorisation.

An email to hola@jaquers.es will open with the domain already filled in; add your name and company and send it. The report is prepared by hand by our team within a few business days.
How we work

The same method on every project, so results are comparable.

Five phases, a severity scale in context and commitments that are met during the project, not just at the end.

1

Scope and rules of engagement

We define objectives, assets, time windows, emergency contacts and formal authorisation. No test starts without express written authorisation and a signed scope.

2

Reconnaissance

We map the attack surface and inventory the assets, both known and discovered.

3

Analysis and controlled exploitation

We validate every finding manually, with no denial of service and no unnecessary data extraction.

4

Report and presentation

An executive report for management and a technical report for the team, with a prioritised remediation plan.

5

Retest and follow-up

We verify the fixes and update the status of every finding in DARKFORGE.

Severity scale

Every finding is scored with CVSS and put in context according to the affected asset, how easy it is to exploit and the real impact on the business. The remediation plan orders actions by that contextualised risk, not just by the score.

CriticalCVSS 9.0 – 10.0
HighCVSS 7.0 – 8.9
MediumCVSS 4.0 – 6.9
LowCVSS 0.1 – 3.9

During the project

Critical findings, immediately

A critical vulnerability is reported as soon as it is confirmed, with its evidence and a provisional recommendation, without waiting for the final report.

A single point of contact

A technical lead accompanies the project from start to finish and answers questions through whichever channel the client prefers.

No surprises in the report

Everything in the report has been discussed beforehand. The final document confirms; it does not reveal.

What you receive at the end of every project

Every deliverable has a clear audience, so management and the technical team work from the same information without having to translate it.

Executive report

For management: overall posture, main risks and recommended decisions, in business language.

Technical report

For the team: every finding with evidence, CVSS score, reproduction steps and fix.

Remediation plan

Actions prioritised by risk and effort, with suggested timelines, for your team or your provider to carry out.

Results session

Presentation of the findings and Q&A with both audiences.

Retest

Verification of the fixes applied by your team and an update of every finding's status.

Access to DARKFORGE

All of the above, available in your private space on the platform.

Guarantees across all services

Authorisation and contract

No test starts without express written authorisation and a signed scope.

Confidentiality

Non-disclosure agreement, safekeeping of information and secure deletion at closure.

No impact on operations

Agreed time windows, no denial of service and a permanent emergency contact.

Evidence that holds up

Reproducible findings and, where appropriate, evidence with legal validity.

Reference frameworks and compliance

The methodologies and standards that guide our testing, and the regulations in force (NIS2, DORA, ENS, ISO/IEC 27001 and GDPR) our services are aligned with and for which our reports provide the technical evidence.

OWASP WSTGOWASP Top 10OWASP ASVSPTESMITRE ATT&CKCVSSNIST SP 800-115CIS BenchmarksCWE Top 25
ENS Spanish National Security FrameworkISO/IEC 27001NIS2 early warning 24 h · notification 72 hDORA financial entitiesGDPR breaches · AEPD 72 h
Combined programmes

Several services, a single point of contact, one shared calendar.

Services are combined into annual programmes with a single point of contact, a shared calendar and all results in DARKFORGE. Three common combinations:

External exposure

To know what an attacker sees from the Internet and keep it under watch from TORO: external pentest, continuous attack surface discovery and OSINT threat intelligence.

OF-01OF-06IR-03

Human factor and email

To reduce the risk of phishing and account takeover: phishing simulation, Microsoft 365 security and email forensics.

OF-05CL-02IR-02

Full infrastructure

To assess the perimeter, the internal network and the cloud in one go: external and internal pentest, man-in-the-middle simulation and cloud security.

OF-01OF-02OF-04CL-01
Included in every programme. A single technical contact, a quarterly status report for management, permanent access to DARKFORGE and an annual scope review. Any programme can be contracted as PTaaS, with continuous testing and unlimited retesting.

Let's talk about your security.

Request a no-obligation initial assessment and we will propose the service that best fits your organisation.

Step 1

Tell us about your situation

A first 30-minute conversation to understand your organisation, your systems and what worries you.

Step 2

Scope and proposal

Together we define the service or programme, the assets included and the schedule, and send it to you in writing.

Step 3

Kick-off and access to DARKFORGE

We formalise the authorisation, create your space on the platform and get started.

Telephone+34 644 777 349

Incident in progress?

Call us on +34 644 777 349 and, if you can, send an email with the subject "Incident" so the time is on record.

In the meantime: do not switch off or restart the affected machines, do not format them or run clean-up tools, restrict access to the bare minimum and write down who did what, and when.

What happens to your data

We only use the details from your email or call to respond to your enquiry; they are processed in the European Union and not shared with third parties. You can exercise your rights by writing to hola@jaquers.es. More detail in the privacy policy.

Talk to usCall