What we test
Services
We help municipalities and smaller businesses find and fix real vulnerabilities before an attacker exploits them — and keep their security over time.
Web applications and portals
Notice boards, forms, e-shops, booking and client portals. Injection, authentication, permissions, data leaks.
External infrastructure
Everything you expose to the internet — servers, VPN, mail and DNS services, misconfigurations and open ports.
Internal network and systems
Simulating an attacker inside the network: shared drives, Active Directory, permissions, lateral movement.
Phishing and the human factor
Controlled phishing campaigns and staff awareness. People remain the most common cause of incidents.
Retests and monitoring
Verifying that reported issues were actually fixed, and tracking newly emerging vulnerabilities over time.
Consulting and awareness
Clear recommendations, remediation prioritisation and training for your people — without needless jargon.
How we work together
Security is not a one-off event, but a process
A classic audit every few years only gives you a snapshot. Your environment, code and threats change every week. That's why Pentua works as a subscription.
Cheaper retests
The first in-depth test is the most demanding. Every further retest within the subscription is significantly cheaper — it pays to stay with us.
Ongoing protection
We regularly check whether new vulnerabilities have appeared and whether previous fixes still hold.
Predictable costs
Instead of occasional large expenses, your security is spread into a stable monthly or annual payment.
Priority support
Subscription clients get priority when a critical vulnerability is found, plus faster response times.
Protection levels
Choose based on size and needs
Your first small-scope test is free. More detailed testing depends on the chosen scope and is always tailored — which is why we don't publish a price list. An orientation across levels:
Free entry test
Small scope, no commitment, no payment
- Basic scan of one website or service
- Overview of the most serious findings
- Brief report and recommendations
- The ideal first step — see how we work
Standard
Regular protection for smaller firms and municipalities
- In-depth penetration test of web and infrastructure
- Regular retests at a discounted price
- Fix verification and tracking of new vulnerabilities
- Clear reports and email support
Continuous protection
For organisations with higher demands
- Everything in Standard at a higher frequency
- Phishing campaigns and staff training
- Priority response to critical findings
- Regular consultations and advisory
The first small-scope test is free and no-obligation. We set the price of more detailed testing by the agreed scope after a no-obligation consultation.