External Penetration Questions

 

Website Assessment Services

 

Other Questions


What's the point of having an external penetration test?

An external penetration test can help secure information that you don't want to be available to the public.  Hackers will more than likely attempt to access your server, however, an external penetration test can help close any hole that a hacker could possibly find.

back to top

How would I benefit from getting an external penetration test?

If you remote into your company, own a website, login to your or your company's website, vpn into an external firewall, access your or your company's server, you in everyway will benefit from an external penetration test.

back to top

What are some of the things you test for on my server?

Some of the things tested on a server would be open ports, SSL, Operating Systems, Email Injection Vulnerabilities, and much more.

back to top

Your company mentions the lowest guarantee prices, how low are your prices?

Prices all depend on certain aspects such as the number of servers, websites, and hardware tested.  Filling out the online quote or requesting a representative to contact you with a quote is when prices will be discussed.  Be assured that we have gotten quotes from our competitors and have decided beforehand to offer much lower prices than them while providing high quality of service.

back to top

So what happens if you find vulnerabilities, then what?

Once we find vulnerabilities, we will test each one to see if we can access them the same way a hacker would.  Afterwards, we will put together a detailed report specifying each vulnerability and our recommendation to fixing it.  The report will then be email to you.

back to top

What if I have a simple website without that much information, does external penetration benefit me?

Yes.  If you opened up your website one day and seen that some hacker defaced it, or discovered your username and password, you would be highly upset.  External penetration testing can fix those problems before they even happen.

back to top

How long will the testing normally take?

Again this all depends on how much equipment you want tested and how big your servers are.  Normally it can take anywhere between 1-2 weeks, sometimes less, but the smaller the website or equipment, the testing will go much faster.

back to top

If our company requests your services and you find out that our software is not pirated, will we still be charged?

No.  We make it our goal to not overcharge and to always be fair.  With our Software Piracy Services, if you request our services and we find absolutely nothing, you will not be charged.

back to top

How long does it take to gather information concerning pirated software?

Normally it should take no longer than a few days.  We test it, find out all the information, and get it back to you as soon as possible.

back to top

If your company finds information, what exactly will you reveal to us?

We will reveal to you information that can prevent anymore loss revenue and allow all holes and errors to be fixed on the next update.

back to top

I heard of SQL Injection but I don't think I have any important information to obtain.

A username and password is important information.  SQL Injection could obtain both username and password and control your website.  Many malicious things could be done with SQL Injection.

back to top

Can your company find out if my website can be defaced and how to prevent it?

Yes we can.

back to top

What if I have more than one website, how will that be priced?

It all depends on the sizes.  Speaking to a representative or getting an online quote is the best way to find out the price.

back to top

I notice the cross in your logo, what exactly does that represent?

The cross represents the foundation of which this company was built upon.

back to top

What makes your services different than your competitors?

Many things.  If you contact our competitors, you will see that our prices are lower than theirs.  Not only that, but they mention their track record focusing on certain companies such as banks and the government, but don't mentions smaller companies or individual people.  At he Sheppard Way, we see everyone's business as equal and do our best whether we're testing for the President, or testing for the small business owner.

back to top

Where exactly is he Sheppard Way located?

The company is physically located in Mauldin, SC, but our mailing address is P.O Box 193, Simpsonville SC 29681.

back to top

I have a question that the FAQ doesn't seem to answer, what do I do now?

You can leave a response when filling out for an online quote, or feel free to email us here.

back to top

What certifications do you have?

We hold several Microsoft certifications, Network certifications, Business and Network/Security Management degrees.  Each member of The Sheppard Way has the education and several years of experience dealing with Networking & Security Management.

back to top

What type of software(s) do you use?

The software(s) we use is developed primarily for external penetration.  We use different types of software for specific needs such as testing primarily for SQL Injection, Cross Site Vulnerabilities, and other top attacks used by hackers.

Not only that, we also do other types of testing that competitors won't do such as Password testing including Dictionary/Bruce Force Attacks, Exploiting the dangers of revealing private information, and more.

We honestly care about the customer and will do everything to guarantee better security for individuals, and for companies.

back to top