Skip to content

Our company

About us

Founded in the last quarter of 2018 to bring a fresh approach to cyber security, normSight has provided security consultancy and cyber security training to numerous national and international companies and public institutions.

With senior security researchers on the team, the company made its name early on by identifying critical vulnerabilities in software from global vendors.

How we work

Every finding is verified manually

No unverified scanner output enters the report as a finding. False positives waste your time and undermine the report's credibility.

Reports are written for two audiences

The executive summary addresses the decision-maker; the technical detail addresses the team doing the fixing. Remediation advice is actionable.

Post-remediation retesting is included

Verification testing after findings are closed is part of the engagement, not billed separately.

Scope is agreed first

No test is planned before your asset inventory is mapped. The wrong scope is the most expensive mistake, for both budget and security.

Technology Partners

  • Cisco
  • Sophos
  • ESET
  • Berqnet
  • Recorded Future
  • ELS

Let's assess the real risks in your systems together.

Talk to our team about a penetration test or training plan that fits your scope.