1. Home
  2. PTaaS · Penetration testing as a service
Flagship service · PT-01

PTaaS: penetration testing as a service.

A pentest should not be a snapshot of a single day a year.

PTaaS turns penetration testing into a continuous service: your infrastructure and applications are tested on a recurring basis, every finding reaches the portal as soon as it is validated and every fix is verified without waiting for the next project. Designed for organisations that deploy changes frequently, that need continuous evidence for audits (ISO 27001, ENS, NIS2, DORA) or that have no offensive security team of their own.

Who PTaaS is for

  • Continuous developmentCompanies with in-house software and frequent deployments that cannot wait for the annual pentest.
  • Regulated environmentsOrganisations under ISO 27001, ENS, NIS2 or DORA that need continuous, traceable evidence.
  • No in-house offensive teamOrganisations that want a stable team that knows their infrastructure, at a fixed cost.
  • Suppliers and supply chainCompanies that must demonstrate their security to customers and third-party auditors.

Continuous testing

Scheduled cycles and on-demand tests for every release, migration or relevant change.

Findings in real time

Every vulnerability appears in DARKFORGE as soon as it is confirmed, with evidence and a recommendation.

Unlimited retesting

We verify every fix when your team has it ready, as many times as necessary.

Predictable cost

A fixed monthly fee and a scope reviewed every quarter, with no project-by-project quotes.

One-off pentesting versus PTaaS

What changes when testing never stops.

One-off pentest
PTaaS
Frequency
Once a year, or after an incident
Continuous: scheduled cycles and on-demand tests
Results
One report when the project closes
In the portal, as soon as each finding is validated
Retest
One, at the end of the project
Unlimited, whenever your team has the fix ready
Changes and new releases
Untested until the next pentest
Tested as part of the service
Knowledge of the environment
Starts from scratch on every project
A stable team that knows your infrastructure
Evidence for audits
One-off; it ages within months
Continuous, with history and traceability
Budget
Per project, every time
Fixed monthly fee, adjustable scope

How it works

A quick start, a clear baseline and, from there, a cycle that never stops.

1
Weeks 1–2

Onboarding

We define the scope, assets, time windows and rules of engagement. We set up your space in DARKFORGE and, if there is internal scope, connect the probe.

2
Weeks 3–6

Baseline pentest

A full pentest of the whole scope to set the baseline: asset inventory, initial findings and the first Cyber Security Risk Meter value.

3
From month 2

Continuous cycles

Tests scheduled according to the plan, continuous attack surface discovery in TORO and on-demand tests for every relevant change.

4
At any time

Retest and follow-up

Every fix is verified when your team has it ready, with no limit on the number of times. The status of each finding is updated in the portal.

5
Every three months

Quarterly review

Executive report, meeting with management and scope adjustment: new assets come in and those that no longer exist go out.

6
Month 12

Annual closure

Annual report with the full evolution, comparison against the baseline and a plan for the next year.

What can be included in the scope, defined at onboarding and reviewed every quarter:

Web applications and APIs Internet-facing infrastructure Internal network and Active Directory Cloud environments: AWS, Azure and Google Cloud Microsoft 365 Mobile applications Wi-Fi networks Source code

Three plans, one common base

All include the initial pentest, the DARKFORGE portal, unlimited retesting and notification of critical findings in under 24 hours. The difference lies in the cadence and the services included.

Essential
Continuous external coverage.
  • External pentest cyclesEvery six months
  • Attack surface in TOROMonthly
  • On-demand tests2 per year
  • Internal pentest with probe—
  • Phishing simulation—
  • Cloud and Microsoft 365 audit—
  • Source code review—
  • Executive reportEvery six months
  • Follow-up meetingQuarterly
Request a proposal
Recommended
Advanced
Perimeter, internal network and the human factor.
  • External pentest cyclesQuarterly
  • Attack surface in TOROWeekly
  • On-demand tests6 per year
  • Internal pentest with probeAnnual
  • Phishing simulationEvery six months
  • Cloud and Microsoft 365 auditAnnual
  • Source code review—
  • Executive reportQuarterly
  • Follow-up meetingMonthly
Request a proposal
Complete
The whole organisation, every month.
  • External pentest cyclesMonthly
  • Attack surface in TOROWeekly
  • On-demand testsUnlimited*
  • Internal pentest with probeEvery six months
  • Phishing simulationQuarterly
  • Cloud and Microsoft 365 auditEvery six months
  • Source code reviewPer major release
  • Executive reportMonthly
  • Follow-up meetingFortnightly
Request a proposal

* Within the contracted scope and with prior planning. All plans are annual subscriptions billed monthly or quarterly; the scope is reviewed every quarter and changes are reflected in the fee for the following period.

Service commitments

What you can hold us to by contract, in every plan.

< 24 h

Critical findings

Notification from confirmation: portal, email and a call to the designated contact.

< 72 h

High findings

Notification with evidence and a provisional recommendation.

5 business days

Retest

Started within five business days of the request in the portal.

10 business days

On-demand tests

Scheduled within ten business days of the request.

< 1 business day

Queries

A reply from the technical contact assigned to your account.

Day 10

Reports

Executive report within the first ten days of the following period; annual report in month 12.

No cost

Pausing the tests

You can stop any test in progress with a simple notice, with no penalty.

PDF and Word

Exportable evidence

Every finding and every report can be exported as control evidence or into your ticketing system.

What you will see every month

The periodic report and the DARKFORGE and TORO dashboards answer the same question from two angles: are we better than last month, and where are we not?

Open findingsby severity and age Mean time to remediatehow long your team takes to fix Coverageassets in scope versus discovered Risk Metermonthly evolution against the baseline Regressionsfindings that reappear after a retest Attack surfaceasset additions and removals detected by TORO

Frequently asked questions

Yes. The baseline pentest is equivalent to a full pentest and the subsequent cycles keep that coverage alive. The annual report documents the whole year.

You request an on-demand test from the portal or through the direct channel. It is scheduled within the committed timeframe and the results are added to the history.

Yes. Every finding keeps its evidence, dates, owner and status, and both reports and individual findings can be exported in PDF and Word as control evidence or into your ticketing system.

Yes, at every quarterly review. Changes are reflected in the fee for the following period.

The same as in any pentest: agreed time windows, no denial of service, an emergency contact and the option to pause testing at any time.

We use it as the baseline: we import its findings into DARKFORGE and the service starts directly with the continuous cycles and retesting.

A stable team assigned to your account, with a fixed technical contact. The same analysts cycle after cycle, so knowledge of the environment is never lost.

They are created specifically for the service, stored encrypted and revoked at the end of each cycle. Real user credentials are never reused.

Getting started with PTaaS

Step 1

Scoping session

A 60-minute meeting to inventory assets, understand your pace of change and choose the plan.

Step 2

Proposal with plan and fee

Detailed scope, first-year calendar and a fixed monthly fee, with no surprises.

Step 3

Onboarding in two weeks

Set-up in DARKFORGE, signed rules of engagement and start of the baseline pentest.

Talk to usCall