What do we offer?
We will organize and conduct a controlled attack using social engineering techniques. We will prompt your employees to perform actions they shouldn’t, testing their responses. We’ll determine whether we can obtain account passwords, access confidential company information, or even gain physical entry to your organization.
Leverage our expertise to elevate your IT security standards.
How do we work?
1. Assumptions
We will gather information about the target environment, its conditions, and define the objectives of the social engineering tests. This includes conducting interviews to collect data about the company, understand its structure and circumstances, and identify key resources and employees.
2. Attack Scenarios
We look for weaknesses and vulnerabilities. We analyze employees’ online presence and gather information about potential entry points. Together with you, we will define the test scenario to make it as realistic as possible.
3. Social Engineering Tests
We will attempt to bypass your company’s security by simulating an attack using social engineering techniques, following the predefined scenario. This could include attempts to obtain phone numbers or emails, persuading employees to install malicious software, or trying to gain access to authorized areas within the building.
4. Report with Recommendations
We will prepare and provide you with a report summarizing the assumptions and results of the social engineering tests. The report will include recommendations and corrective actions to address any vulnerabilities identified during the tests.
Let's talk about your project! Fill out the form
What else do we offer?
We will help implement IT security or its specific components in your organization. Check out our offerings for other IT security-related services.
IT infrastructure audit
Discover the scope of the serviceSource code analysis
Discover the scope of the serviceVulnerability analysis
Discover the scope of the serviceRansomware analysis
Discover the scope of the servicePenetration testing
Discover the scope of the servicePerformance testing
Discover the scope of the servicePost-Intrusion analysis of IT services
Discover the scope of the serviceWhy us?
Knowledge and experience
Tailored services
Favorable conditions
We operate as equals!
They trusted us
Social engineering tests from our perspective
What is a social engineering test?
A social engineering test is an attempt to deceive employees of an organization into providing information/data to an unauthorized person.
Who do we conduct social engineering tests for?
We conduct social engineering tests for all organizations where employees have access to processed data.
How is a social engineering test conducted?
After familiarizing themselves with the organization, PBSG specialists prepare attack scenarios. Controlled attempts to breach the company’s systems are then conducted. We prepare a report detailing the data obtained during the tests. We also propose solutions, such as system security measures and employee training. We always recommend conducting follow-up tests after a certain period to assess the knowledge employees have gained.
What is phishing?
Phishing is one of the methods used by criminals to obtain valuable information or gain access to systems. Fraudsters most commonly use fake emails and SMS messages, but they also operate through messaging apps and social media platforms. During social engineering tests, consultants may use phishing to obtain data.
How long does it take to conduct social engineering tests?
The duration depends on the number of scenarios. One scenario takes about two weeks of specialists’ work. Additionally, time is required to create and prepare the scenarios (about one week). Finally, preparing the report after all social engineering tests are completed takes about one week.
How much do social engineering tests for employees cost?
Just like the time required, the cost is determined based on the number of scenarios. Generally, the cost ranges from one thousand to even several thousand PLN. The pricing is individual and free of charge, while the benefits of conducting the tests are priceless.
Benefits of conducting social engineering tests
Both employees and employers benefit from social engineering tests. Employees gain awareness of the IT security threats they may face, not only at work but also at home. Their resilience to potential attacks is strengthened, and they become more vigilant. Employers, on the other hand, can identify weaknesses in procedures and internal communication. After reviewing the report, they can implement additional security measures or employee training to address the gaps identified by our specialists.