The stages of penetration testing can vary depending on the provider, the type of test, and the complexity of your environment. Different companies use different methodologies, and at Stripe OLT, we follow a five stage approach.
As outlined earlier on this page, our typical process includes:
- Pre-engagement scoping and preparation: We work with your team to define the scope, objectives, and boundaries, aligning the test with your business and compliance requirements.
- Reconnaissance & information gathering: Our team gathers intelligence about your environment to shape realistic, attacker-style scenarios.
- Scanning & enumeration: Using both manual techniques and industry-leading tools, we expose vulnerabilities, misconfigurations, and exposed services.
- Access & exploitation: We simulate targeted attacks to test how vulnerabilities could be used to gain access, escalate privileges, and compromise sensitive data.
- Expansion & access maintenance: We assess how far an attacker could go undetected, and what the impact of an extended breach could look like.
- Reporting, you receive a clear, actionable report with business impact, prioritised findings, and remediation steps.
Where agreed, we also support:
- Retesting to confirm vulnerabilities have been successfully addressed
While no two tests are exactly the same, our methodology ensures consistency, transparency, and results you can act on, get in touch to find out how our pen testers can help you.