Can you conduct testing at our offices?+
Yes. We can arrange remote pentesting and assessments, on-site testing at your offices or a hybrid approach. If your policy restricts remote access or information leaving your environment, we agree how to work within it. The proposal confirms location, availability, access and logistics. For on-site or hybrid engagements, the client covers travel, accommodation and per diem expenses. Working and travel days, together with these expenses, are itemized and agreed in the proposal before work begins.
What is pentesting, and what does Oktsec deliver?+
Pentesting, or penetration testing, checks whether a vulnerability can lead to data access or unauthorized actions. Oktsec runs controlled tests within the agreed scope and delivers findings, reproducible evidence and remediation priorities.
Can I book a pentest if my company does not use AI agents?+
Yes. We test web applications, APIs, code, architecture and permissions. If your company also uses AI agents, we can include their workflows and tools in the scope.
Do you offer pentesting for startups and enterprises?+
Yes. We work with enterprises and startups in Argentina and Latin America, both before a launch and on systems already in operation.
How much does a pentest cost, and how long does it take?+
Pricing and timing depend on the applications, APIs, repositories, workflows and environments in scope. We agree on scope and deliverables first; testing starts once you authorize the work.
What do we need for an initial conversation?+
A description of the system, workflows or repositories to test, their integrations and the reason for the assessment. Access and technical documentation are arranged later; do not send credentials through the form.
Is remediation verification included?+
Yes. One retest of the original findings is included at no extra cost. The proposal defines which findings will be verified, the environment and the request window. New systems or changes outside the original scope are assessed separately.
Do you need production access?+
Not necessarily. We can start in staging or a bounded environment. Code and system access are agreed for each assessment. Production testing requires explicit authorization.
Is continuous validation the same as a retest?+
No. A retest verifies fixes for the original findings. Continuous validation adds assessment cycles covering the agreed scope and its changes, to identify new risks and track unresolved findings. Frequency and terms are defined in the proposal.
What happens after the assessment?+
Your team implements the fixes and we coordinate the retest. If you use AI agents, we can also assess runtime controls with Signal and Control.