Assessment Methodology

Structured, repeatable, and non-intrusive evaluation lifecycles.

The 5-Step Execution Framework

  1. Scope & Written Authorization: Define testing boundaries and confirm legal permissions.
  2. Phishing Simulation Execution: Deploy controlled campaigns to measure human reporting speed.
  3. Customer-Provided Evidence Gathering: Customer executes collector script offline and validates data.
  4. Cross-Domain Analysis & Framework Mapping: Correlation against NIST CSF 2.0 and MITRE ATT&CK.
  5. Remediation Delivery: Presentation of prioritized, actionable technical recommendations.