Listing Thumbnail

    Penetration Testing

     Info
    An A&B security specialist takes over the role of an attacker (ethical hacker) to compromise customers infrastructure or application. By targeting OWASP Top 10 application security risks, Alice&Bob.Company’s experienced penetration testers carry out Pentesting by documenting key findings and and mitigation recommendations as well as criticality of the findings to improve security posture. A&B takes the role of an ethical hacker to gain additional security insights

    Overview

    The A&B Warm-Up Penetration Testing will give you broad insight into both discoverable attack surface and vulnerabilities exposed by your deployed software platform.

    Two of our Penetration Testing specialists will test your platform against its ability to withstand numerous attack vectors in a balanced effort of automated and manual testing, using a methodology based on the latest OWASP Web Security Testing Guide.

    The A&B Warm Up Penetration Testing has been developed and tailored for clients who run web applications, exposing single or multi page applications through REST APIs or microservices in the cloud. Testing will cover at least the following vulnerabilities and attack vectors:

    • TLS (SSL) vulnerabilities and misconfigurations
    • Broken authentication and Session Management
    • Cross Side Scripting (XSS)
    • Cross-Site Request Forgery (CSRF)
    • XML External Entity (XXE) Processing
    • Injection attacks
    • Deserialization
    • Fuzzing
    • Privilege Escalation

    As the testing phase ends, we will present our findings, handing over a copy of the slides for you to evaluate how to approach remediation and mitigation of the identified vulnerabilities. Alice&Bob.Company's security specialists are available to support remediation or mitigation as needed, as well as to provide security training to enrich your Companys DevOps teams' experience in preventing vulnerabilities based on the findings produced during this test, as well as for establishing or strengthening a Shift Left culture. The result presentation will also provide a roadmap to further improve security aspects of both development and operations of your platform with the help of the Alice&Bob.Company.

    To ensure successful mitigation of identified security flaws, the test may be extended by an optional re-testing phase, where previously identified vulnerabilities are re-tested after (supposed) remediation by 's DevOps team.

    Highlights

    • - A&B Warm-up Penetration Testing based on OWASP methodology - Target selection based on defined test scope - Recommendations on software hardening, based on test findings

    Details

    Delivery method

    Deployed on AWS

    Unlock automation with AI agent solutions

    Fast-track AI initiatives with agents, tools, and solutions from AWS Partners.
    AI Agents

    Pricing

    Custom pricing options

    Pricing is based on your specific requirements and eligibility. To get a custom quote for your needs, request a private offer.

    How can we make this page better?

    We'd like to hear your feedback and ideas on how to improve this page.
    We'd like to hear your feedback and ideas on how to improve this page.

    Legal

    Content disclaimer

    Vendors are responsible for their product descriptions and other product content. AWS does not warrant that vendors' product descriptions or other product content are accurate, complete, reliable, current, or error-free.

    Support

    Vendor support

    You can contact us either by phone +49 30 1663 8344, via e-mail hello@aliceandbob.company  or you contact directly the Customer Success Manager of Alice&Bob.Company David Kuesters and book a free and non-binding Discovery Call at a time that suits you in the following calendar:

    ☎ Book a call with me: https://aliceandbob.company/calendar/davidk