Do you perform penetration tests? For which systems and how deep?
Yes, we perform penetration and security tests, primarily aligned with EN 18031, a key standard for assessing the cybersecurity of products under requirements such as the RED Delegated Act.
Our testing approach is tailored to the client’s specific needs. With support from our partners, we perform:
-
Basic vulnerability scans (e.g., black-box testing)
-
Advanced security analysis, including white-box testing using source code or detailed documentation
Tests can be purposefully designed to support product certification according to standards such as:
-
IEC 62443-4-2 (security of products in industrial automation)
-
IEC 81001-5-1 (cybersecurity of medical software and IT systems)
This makes our test results practically useful not only for internal security assurance but also as part of formal compliance with European standards and regulations.