Penetration testing in Petersfield, Hampshire

Penetration testing for Petersfield and Hampshire businesses

We try to break in the way a real attacker would, then show you in plain English what we got into and how to close it. Network, Wi-Fi, Microsoft 365, cloud and web application pen tests for businesses across East Hampshire.

The basics

What is penetration testing?

Penetration testing, also called pen testing or ethical hacking, is an authorised, simulated cyber attack on your systems. A tester uses the same techniques as a real attacker to find weaknesses in your network, cloud accounts and websites, proves which can actually be exploited, and shows you how to fix them.

It isn't the same as a vulnerability scan. A scan is automated software that lists possible problems. A penetration test puts a person in charge: they confirm which problems are real, chain small issues together the way attackers do, and rank what matters for your business.

The aim is practical assurance: a clear fix list before a criminal, insurer, supplier or auditor forces the issue.

Hands typing on a laptop showing a padlock over security code and dashboards

Penetration testing & vulnerability scanning

Our penetration testing services

Find out where your network, cloud and applications are really exposed, then get a clear, ranked plan from our in-house cyber team to fix it. Ask us for a pen test quote and you'll get a straight price up front.

Free, one-time

External vulnerability scan

A quick check of everything you have facing the internet, looking for the gaps an attacker would spot first.

  • We scan your websites, open ports and public IP addresses
  • You get a plain summary of what we found and how serious it is
  • A good starting point if your security has never been checked
  • It's free and there's nothing to sign up to

Ongoing, part of a paid plan

Managed penetration testing

Regular testing by our own cyber specialists, so your security keeps up as your business changes.

  • We test from inside and outside your network
  • Every report ranks the findings by risk and explains how to fix each one
  • Tests are repeated as your apps, users and cloud services change
  • Helps with compliance checks and cyber insurance applications
  • You deal directly with our in-house cyber team

Common weaknesses

What a penetration test can uncover

None of these are exotic. They're common because they're easy to miss, and just as easy for attackers to find.

  • Exposed services

    Open servers, admin pages and services that shouldn't be public.

  • Weak passwords

    Passwords that are easy to guess or never changed.

  • Misconfigurations

    Security settings that don't follow best practice.

  • Cloud risks

    Issues in Microsoft 365, Azure or other cloud platforms.

  • Website flaws

    Vulnerabilities in your website or web applications.

The benefits

Why it matters for SMEs

Attackers go after weak spots, not big names. A penetration test shows you exactly where you're exposed and what to fix first, so you can cut risk early, keep the business running and show customers you take security seriously.

When the test is done you get two things: a short executive summary for decision makers, and a full report listing every finding, the risk it carries and what to do about it.

  • Get ahead of attackers

    Find the gaps before criminals do and close them early, so there's less for anyone to exploit.

  • Proof you can share

    Independent test results give customers, partners and auditors something solid to point to.

  • Keep the business running

    Spot the weaknesses behind ransomware, outages and breaches, then fix them in order of risk.

  • Sensibly priced

    Thorough testing with a focused scope, clear reports and fixes you can actually carry out, without an enterprise price tag.

How it works

Careful testing, on your terms

Testing your own systems shouldn't feel risky. Everything is agreed up front, in writing: what we test, when, what's off-limits and who we call if something looks wrong.

  1. 1

    Scope the test

    Agree what's included and the level of testing.

  2. 2

    Map the attack surface

    Identify key systems, users and entry points.

  3. 3

    Find and validate

    Test for real, exploitable vulnerabilities.

  4. 4

    Test safely

    Carry out testing without disrupting your business.

  5. 5

    Report and retest

    You get a clear report, then we check the fixes worked.

Your report

Your penetration test report

The report is the part you keep, so we write it for two readers: whoever signs off the budget, and whoever does the fixing. We go through the findings with you on a call.

Local to you

Penetration testing in Petersfield and across Hampshire

We test for businesses across East Hampshire, the Portsmouth fringe and the edge of West Sussex, including Petersfield, Alton, Liss, Liphook, Haslemere, Midhurst, Horndean, Waterlooville and Havant.

External, cloud and web application testing runs remotely, with on-site visits available around Petersfield.

Frequently asked questions

Penetration testing questions, answered

What is a penetration test?

An authorised, simulated cyber attack on your systems. A tester uses the same techniques a real attacker would to find weaknesses, proves which ones can actually be exploited, and shows you how to fix them.

What's the difference between a vulnerability scan and a penetration test?

A scan is automated software that lists possible problems. A penetration test puts a person in charge, who confirms which problems are real, chains small issues together the way attackers do and ranks what matters for your business.

Do we need an internal or external penetration test?

An external test looks at what anyone on the internet can reach, like your website, email and remote access. An internal test shows what someone could do once inside your network, for example from a stolen laptop. Most businesses start with external and add internal later. We'll recommend what fits when we scope the test.

Do you test remotely or on site?

External, cloud and web application testing runs remotely. Internal network and Wi-Fi testing may need us on site, and we can visit businesses around Petersfield.

Will testing disrupt the business?

It shouldn't. We agree in writing what we test, when and what's off-limits, and we avoid anything likely to take systems down. If something looks wrong during the test, we stop and call the contact you've named.

How much does a penetration test cost?

It depends on what's being tested and how big it is. Once we've agreed the scope, you get a fixed quote up front, with no surprises later.

How long does a test take?

That depends on the scope too. A small external test can be done in a few days, while larger internal or application tests take longer. We'll give you a timeline before we start.

We've got Cyber Essentials. Do we still need a penetration test?

Cyber Essentials checks that the basic controls are in place. A penetration test goes further and shows whether an attacker could actually get past them. Many businesses use both: Cyber Essentials as the baseline, and a pen test for real-world assurance.

Can you test Microsoft 365?

Yes. We look at how your Microsoft 365 tenant is set up, including sign-in security, admin accounts, sharing settings and email protection, and show you where it could be tightened.

Can you test Azure or AWS?

Yes. We review your cloud setup for exposed services, weak access controls and risky configuration, then give you clear steps to fix what we find.

Should we test our live system or a test copy?

Usually the live system, because that's what attackers see. We test it carefully within the agreed limits. If a system is fragile or business-critical, testing a copy is an option and we'll talk it through with you.

How often should we have a penetration test?

At least once a year, and again after big changes such as a new website, a new system or a move to the cloud. Some insurers and customers ask for a test every year.

What happens after the report?

We go through the findings with you on a call so you know what to fix first. Once the fixes are in, we retest to check they worked.

What is included in the report?

A short executive summary for whoever signs off the budget, plus a full technical section for whoever does the fixing. Every finding comes with its risk level, evidence and the steps to fix it.

Other questions

Can't find what you're looking for? Contact us and our team will be happy to help.

Get in touch

Talk to a penetration tester in Petersfield

Send a few details about what you need checked, or ask for the free external scan if you're not sure where to start. Call 0333 370 7000 or email hello@petersfielditsupport.co.uk.

Get Started Today