We break it first.
The same people who build Zero Door test, attack and train. Every engagement ends with evidence you can act on, not a slide deck.
Penetration testing
External and internal networks, web and mobile applications, APIs, cloud configurations. Scoped with you, executed manually with tooling where it helps.
A report with reproducible steps, severity by real impact, and a retest of every fixed finding.
- 01Scoping call and rules of engagement
- 02Testing window with daily status
- 03Report, walkthrough and retest
Red team engagements
Objective-based operations against your organisation: initial access, persistence, lateral movement and exfiltration, physical and wireless where agreed. Our published research on kiosks and wardriving comes from this practice.
An attack narrative your defenders can replay, detection gaps with concrete fixes, and a joint debrief with your blue team.
- 01Objectives, safety limits and legal cover
- 02Operation with a live deconfliction line
- 03Debrief, replay and detection engineering
Security training
Hands-on courses for engineers and operators: Linux and Windows integrity, malware behaviour, incident evidence handling, secure operations behind an air gap.
Lab environments participants keep, and an assessment of what changed in their daily practice.
- 01Level and audience assessment
- 02On-site or remote sessions with labs
- 03Follow-up review after four weeks
Consulting
Compliance evidence design for PCI DSS, ISO 27001, KVKK and NIST, integrity monitoring architecture, and air-gapped operations.
A written design your auditor accepts and your team can run without us.
- 01Current-state review
- 02Design and control mapping
- 03Handover with runbooks
Tell us what keeps you up at night.
We reply within one working day and scope every engagement in writing.
Talk to us