KRITERA ASSURANCE SYSTEM

Not a service list. An assurance system.

AI, cybersecurity, compliance, software and IoT services share one threat model, evidence chain and revalidation discipline.

SAC / 03 / SECURITY

Security Architecture

A risk-led, actionable security roadmap from current state to target architecture.

ISO/IEC 27001STRIDEMITRE ATT&CK
NPT / 04 / SECURITY

Network and System Penetration Testing

Validate real attack paths with OSINT, manual exploitation, lateral movement and included retesting.

TS 13638MITRE ATT&CKOWASP
WPT / 05 / SECURITY

Web and API Penetration Testing

Assess identity, session, API and business logic risks through manual testing and retesting.

OWASP Top 10OWASP ASVS L2TS 13638
DPT / 06 / SECURITY

Database Penetration Testing

Test identity, authorization, data protection, audit and operating system layers together.

CIS BenchmarksOWASPISO/IEC 27001
CC / 07 / COMPLIANCE

Common Criteria

Manage ST/PP, EAL targets and laboratory coordination under ISO/IEC 15408.

ISO/IEC 15408Common Criteria
KVK / 08 / COMPLIANCE

KVKK Consulting

Unite legal requirements with data inventory, technical controls and breach readiness.

KVKKGDPRISO/IEC 27001
DEV / 09 / SOFTWARE

Secure-by-Design Software

Build enterprise platforms, web, mobile, APIs and AI automation through secure product engineering.

OWASP ASVSSecure SDLCDevSecOps
IOT / 10 / IOT

Secure IoT and Embedded

Build secure boot, identity, signed firmware and controlled OTA from device to cloud.

ETSI EN 303 645TLS 1.3Secure Boot