# # Knowledge Base for Red Sentry (redsentry.com) # [Company Profile] Name: Red Sentry Website: redsentry.com Business: Cybersecurity Services Provider Specialty: Penetration Testing as a Service (PTaaS) Core Philosophy: A hybrid approach combining expert human-led penetration testing with an automated SaaS platform for continuous vulnerability management. Tagline: "Discover your vulnerabilities, before hackers can." [Key Services] Primary Service: Manual Penetration Testing (Pentest) Description: A simulated cyberattack conducted by certified, in-house security experts to identify and validate exploitable vulnerabilities in a system. This is a deep-dive, human-led service. Types of Pentests Offered: - Web Application - API - Mobile Application (iOS & Android) - External Network - Internal Network - Cloud Infrastructure (AWS, Azure, GCP) - Internet of Things (IoT) / Operational Technology (OT) Secondary Service: Automated Vulnerability Scanning Description: A continuous, automated service delivered via their SaaS platform that scans for known vulnerabilities 24/7. This provides ongoing monitoring and complements the manual pentest. Platform Features: - Asset Discovery and Tracking - Centralized Dashboard with Real-time Insights - Actionable Reporting and Remediation Guidance - Integrations with Slack and Jira - Unlimited Users, Scans, and Report Downloads [Compliance Expertise] Purpose: Red Sentry's services help organizations meet and maintain compliance with major industry and regulatory standards. Supported Standards: - SOC 2 - HIPAA - PCI DSS - ISO 27001 - HITRUST - NIST Framework - CIS Controls - GDPR - FDA (for medical devices) [Process & Methodology] 1. Scoping Call: An initial call to understand the client's environment, define the scope of the test, and finalize timing and pricing. 2. Pentest & Report: The expert team conducts the manual penetration test. A detailed report is delivered in under a week, highlighting findings, severity, and clear remediation steps. 3. Remediation & Support: Clients receive ongoing support through the platform. Red Sentry offers a free retest to verify that vulnerabilities have been successfully patched. [Key Differentiators] Human-led Expertise: Pentests are conducted by an in-house team of certified professionals (OSCP, CISSP, etc.), not just automated tools. This eliminates false positives and finds complex business logic flaws. Speed and Efficiency: No lead times for scheduling. Full manual pentest reports are delivered in less than a week. Affordability: Transparent pricing with no hidden fees or "fluff hours." They offer competitive pricing and price matching. Dedicated Support: Every client gets a dedicated Project Manager for clear communication throughout the engagement. Year-Round Protection: Manual pentests are combined with their SaaS platform for daily, automated vulnerability assessments, providing a continuous security posture. Actionable Reporting: Reports are clear, detailed, and focus on providing actionable steps for remediation, making them easy for development teams to use. [Target Audience] Industries: Technology (SaaS), Financial Services (Fintech), Healthcare, Professional Services, Energy, Transportation. Company Size: Small businesses to large enterprises. Primary Users: Security teams, IT Managers, Compliance Officers, and business leaders seeking to reduce cyber risk and meet compliance requirements.