Home / Security / Pentera / Accounts with a subscription
Pentera account with a paid subscription
Pentera
—
No offers yet
Nobody has listed this product yet. We do not invent prices: a displayed price is a public offer, and it only ever comes from a live seller.
Plans
Pentera Core
- Internal network testing as full attack chains — from foothold to critical systems
- Black-box penetration testing with no prior knowledge of the environment
- A what-if mode assessing the blast radius when an employee credential is already compromised
- Emulation of known ransomware strains including LockBit, Conti, BlackCat, Maze, REvil and Play
- Safe offline password-strength assessment for Active Directory
- OWASP Top 10 testing and checks against the CISA KEV actively-exploited list
- An attack map mapped to MITRE ATT&CK techniques with root cause analysis
- Verification that your EDR, XDR, antivirus, SIEM and firewall genuinely fire
- Executive and compliance reporting
Pentera Surface
- Testing of the external perimeter — what an attacker sees from the internet
- Shows how initial access is gained through web applications and internet-facing systems
- Treats leaked and externally exposed identities as an entry point
- Discovery of external assets the company may have forgotten about
- Findings are linked to onward movement into the internal network
- Works together with Core as one picture from entry to critical data
Pentera Cloud
- Testing of cloud and hybrid environments against cloud-native attacks
- Shows how a compromised identity leads to access to sensitive cloud resources
- Analysis of misconfigurations that open a path to data
- Attack chains are traced across the boundary between cloud and the corporate network
- Results flow into the same remediation pipeline as findings from the other modules
Pentera Resolve
- Prioritisation of validated attack paths — what actually worked comes first
- Automated remediation instead of manually working through a vulnerability list
- Re-testing after a fix, confirming the hole is genuinely closed
- Measurable reduction of exposure rather than a best-guess report
- Everything is tracked in one system instead of scattered spreadsheets and tickets
Plan contents as published by the vendor; seller prices arrive at launch.
What you get
Ready access to the Pentera console with a paid package: deploy a node inside your network, prove ownership of your external addresses and launch a run. The first thing to establish is whose organization it is: the contract is signed with a legal entity, and on someone else's organization access can technically return to its owner along with the history of your runs. The results of such tests are a ready-made map of your network's weak points, so make sure you ask who else inside that organization can see the reports and the attack map. Confirm how much of the term is left and which modules are enabled — only the party the contract names can renew it.
About the service
An automated security validation platform: instead of a once-a-year pentest it continuously replays genuine attacker techniques across your infrastructure and shows which of the findings can actually be used. The internal network is tested as complete chains — how defences get bypassed, how an attacker moves between machines, escalates privileges and reaches critical systems; there is also a what-if mode that assumes an employee credential is already stolen, emulation of known ransomware strains such as LockBit, Conti, BlackCat and Play, safe offline password-strength assessment for Active Directory, OWASP Top 10 testing and checks against the CISA KEV list of actively exploited vulnerabilities. The external perimeter, cloud and hybrid environments are covered by separate modules, and discovered attack paths are visualised on a map mapped to MITRE ATT&CK techniques, then handed to the remediation module which prioritises fixes and re-tests them. Along the way you see whether your EDR, XDR, antivirus, SIEM and firewall actually react to such activity. An AI assistant, Pentera Peer, is embedded across the platform to help work through results and supply context. The vendor has no official pricing page: it sells under contract through its own team and partners, usually annually and sized by asset count, module selection and validation frequency — so confirm the package contents and the volume of assets under test with the seller.
The same from another vendor