Security Quick Scan: one day of manual pentesting
Not every organisation has the budget for a four- or five-day pentest. That doesn't mean you have to fall back on an automated scan. In a Security Quick Scan I test manually for one day, using the same approach as a multi-day pentest. The difference is time, and therefore coverage, not quality.
Same quality, in one testing day.
- Manual testing by me, OSCP-certified
- The same report format: executive summary and technical findings with reproduction steps
- Digitally signed and verifiable
- Retest included
- NDA as standard
In one day the time goes to the highest risk.
- Login, sessions and password recovery
- Authorisation: can user A reach user B's data, or functions belonging to another role?
- The features that handle sensitive data, files or payments
- Exposed API keys and configuration errors that can be abused directly
The report states exactly what was and wasn't tested, so a client or auditor knows what the test covers.
You don't need to pay me for scanner work.
An automated scanner such as OWASP ZAP finds known, surface-level issues. You can run those yourself; you don't need to pay a pentester for that.
One testing day, fixed price.
- One testing day: €1,000 excl. VAT, fixed price
- Retest included
- Need more coverage? Then it becomes a multi-day penetration test, from €2,500 (Compact).
For audits, regulation and many roles.
If you need evidence for an audit (SOC 2, ISO 27001), fall under the Cyber Security Act, or have an application with many roles and integrations. In the intake we work out together what fits.
Two entry options, different by design.
The Launch Check is a short fixed-scope pentest for small, AI-built apps, bookable online. A Security Quick Scan is scoped in an intake and fits any application.
Questions about the Security Quick Scan
Is the Security Quick Scan a scan?
No, despite the name. It's a day of manual pentesting by the same tester and with the same method as a multi-day pentest, just shorter. Automated scanning is something you're better off doing yourself with a free tool; you don't need to pay a pentester for that.
Is one day enough for my audit?
That depends on what your auditor or client expects. For SOC 2, ISO 27001 or the Cyber Security Act, the test has to cover the systems that matter. In the intake I'll work out with you whether a Security Quick Scan is enough or whether a multi-day pentest is needed.
What's the difference from the Launch Check?
The Launch Check is a short manual pentest with a fixed scope for small, AI-built apps, which you book and pay for online. A Security Quick Scan is scoped in an intake and fits any application.
Ready for your Security Quick Scan?
One call is enough to decide whether one testing day is sufficient. Free intake, fixed price of €1,000 excl. VAT, retest included.
Schedule free intake → See the pricing model