I assess an agreed set of applications or systems you own or are authorized to test. We define scope, permitted techniques, access and constraints before testing. Depending on that scope, work can include vulnerability scanning, configuration review and targeted manual validation. You receive a prioritized report that separates verified findings from items requiring further investigation.