VAPT scoping questionnaire
Vulnerability Assessment and Penetration Testing
VAPT identifies vulnerabilities across your systems and simulates real attacks against them. Testing is priced on what is actually in scope, so this questionnaire counts the assets and establishes the depth of testing required.
What we ask
- How many web applications, mobile apps, APIs, external IPs and internal hosts are in scope
- Whether authenticated testing is required, and how many user roles need covering
- Production or staging, and any testing window or constraint we must work within
Takes a few minutes. Scope only — no pricing or commercial information is requested. Partial answers are fine; you can send the rest later and they are added to the same record.
Prefer to talk it through first? Scoping calls are often faster than a form when the environment is complicated or the requirement came from a customer or regulator. Book a consultation or send us the details and we will scope it with you.

QSA Authorised
CEMEA · Asia Pacific · USA
Delivering from Noida · Mumbai · Bengaluru · Pune · Dubai · Cairo · Melbourne — see all locations & addresses →
