Penetration Testing Hub › Penetration Testing Explained

How Working With CyberLabs Works

Before you do anything

This page describes how we work and carries no how-to steps — but it's the principle we run on: we only ever test systems a client owns or has authorised in writing, under the Criminal Justice (Offences Relating to Information Systems) Act 2017. Every engagement starts with that authorisation.

If you've read your way here through the guides, you already understand what a test involves — so this is just the practical bit: what actually happens if you decide to work with us. No spin, no funnel, no 'book a demo to unlock pricing'. Here's the process.

1. A straight conversation

You tell us what you're worried about and what you're trying to achieve. We tell you honestly whether a penetration test is the right next step — including, sometimes, that it isn't yet, and what to do first. If you're not ready, we'd rather say so than sell you something that won't help. There's no charge for being told you're not ready.

2. Scoping

If a test makes sense, we scope it together: what's in, what's out, black/grey/white box, timing, and what must never be touched. This is where we work out how many days of testing your situation actually needs — which is what determines the cost. You get a clear picture of the work before you commit to anything.

3. Rules of engagement

Everything agreed goes into a written rules-of-engagement document that we both sign: scope, timing, emergency contacts, authorisation. This is your protection and ours, and it's the point at which testing is legally authorised. We don't send a single packet before it's signed.

4. Testing

We do the work, in the agreed window, with care for your production systems. If we find something serious enough that it shouldn't wait for the report, we tell you immediately. You keep a point of contact reachable; otherwise, good testing is quiet and you carry on with your day.

5. The report

You get a report built exactly like our published sample: a plain-language executive summary, findings rated and prioritised, reproduction steps, and specific remediation. Then we walk you through it on a call — not a sales call, a debrief. You leave understanding your risks and knowing what to fix first.

6. Remediation and re-test

You fix things. We come back and confirm the fixes worked. This closing of the loop is where your security actually improves, and it's included in how we work — not an upsell.

About pricing

We're still building this business, so you won't find a price list on the site yet. What you will get is an honest, scope-based quote after a real conversation — priced on the testing days your environment genuinely needs, with what's included spelled out. No headline range designed to look cheap, no surprise on the invoice. Our cost guide explains exactly what drives the number so you can sanity-check any quote, ours included.

What you won't get from us

Start a conversation

If that sounds like how you'd want this done, get in touch and we'll have the straight conversation from step one. Worst case, you leave knowing exactly where you stand — which is the whole point of everything on this site.

If you'd rather we did this

Ready to talk? Reach us at hello@cyberlabs.ie and we'll start with the honest conversation, not a quote you can't interpret.

And if you're not ready yet, that's genuinely fine — the guides are here whenever you need them.

Email hello@cyberlabs.ie →

This page is educational and not legal advice. Only test systems you own or are explicitly authorised to test.  ·  ↑ Back to top