Kiel · Schleswig-Holstein · Germany-wide Mon–Fri 9–17 CET
+49 15778716239 info@tsbsec.de

Penetration Testing & Vulnerability Assessment

We attack your systems in a controlled way before criminals do – and show you exactly where action is needed.

A penetration test simulates real-world attacks on your web applications, networks, cloud environments and people. We work to OWASP standards and the German BSI testing methodology, document every finding with a risk rating and deliver concrete, prioritised remediation steps – understandable for management and engineers alike.

Who is this for?Companies running their own web applications, customer portals or remote access – and anyone who needs to show customers, partners or insurers credible evidence of their security posture.
Sample report

What a report from us looks like

Anonymised example of a penetration test report with management summary, findings by severity, detailed descriptions and action plan.

View sample report (PDF)
Process

How we work together

1

Scoping & kick-off

Together we define goals, systems, test windows and contacts – in writing, so nothing unexpected happens.

2

Reconnaissance & analysis

We map the attack surface and combine automated scanning with manual testing.

3

Controlled attack

Vulnerabilities are verified and, where agreed, exploited to prove the real risk – without harming operations.

4

Report & re-test

You receive a management summary, technical report and action plan. After remediation we verify the fixes at no extra cost.

FAQ

Questions about this service

How long does a penetration test take?

A focused web application test usually takes three to five working days, an external infrastructure test two to four. Larger environments are tested in phases. The report is delivered about a week after testing ends.

Will the test disrupt our operations?

No. We agree on test windows with you, avoid destructive techniques and denial-of-service tests, and stay reachable throughout. Critical systems can be tested outside business hours on request.

What is the difference between a penetration test and a vulnerability scan?

A scanner finds known vulnerabilities automatically – and produces many false positives. A penetration test is manual, chains vulnerabilities into realistic attack paths and rates the actual risk to your business.

Let's talk about your needs.

In a free initial consultation we clarify scope, approach and cost – no obligation, on equal terms.

Book an initial consultation

Related services

Security Audits & Compliance

ISO 27001, NIS2, GDPR, BSI IT-Grundschutz: we bring your security organisation to an auditable level.

Learn more

Managed Security & Monitoring

Around the clock: we monitor your systems, detect attacks early and respond before damage occurs.

Learn more

Incident Response & Digital Forensics

When it happens, every minute counts. We help with ransomware, data exfiltration and system compromise – fast and structured.

Learn more