Our company
About us
Founded in the last quarter of 2018 to bring a fresh approach to cyber security, normSight has provided security consultancy and cyber security training to numerous national and international companies and public institutions.
With senior security researchers on the team, the company made its name early on by identifying critical vulnerabilities in software from global vendors.
How we work
Every finding is verified manually
No unverified scanner output enters the report as a finding. False positives waste your time and undermine the report's credibility.
Reports are written for two audiences
The executive summary addresses the decision-maker; the technical detail addresses the team doing the fixing. Remediation advice is actionable.
Post-remediation retesting is included
Verification testing after findings are closed is part of the engagement, not billed separately.
Scope is agreed first
No test is planned before your asset inventory is mapped. The wrong scope is the most expensive mistake, for both budget and security.
Technology Partners
Let's assess the real risks in your systems together.
Talk to our team about a penetration test or training plan that fits your scope.