Penetration testing for Texas organizations

Find the gaps before your auditor or your attacker does.

AI + appliance-based testing, not manual · every finding analyzed by a human

This isn't manual, consultant-led testing. It's an AI-driven virtual penetration test run through a dedicated testing appliance, with every finding checked and interpreted by a Texas-based security analyst before it reaches you. Every engagement is scoped and priced per IP address up front, and every report is written so it holds up in a TAC 202 review, satisfies a cyber insurance questionnaire, and still makes sense to the engineer who has to fix what we found.

Operated by safemode IT · Kyle, Texas · 24/7 SOC-backed

PENTEST-REPORT.pdf · EXCERPT CRITICAL
F-2026-04External RDP exposed with legacy auth
HOST. Verified via
IMPACTDomain credential capture within of initial access
FIX72 HRRestrict 3389 to VPN, enforce NLA + MFA
Retest: remediation verified 08/14. Finding closed. Attestation letter issued for insurance renewal.
Why it matters

Your security tools tell you about the threats they caught. A penetration test is about the ones they didn't.

CISSP · OSCP · OSCE · eCPPT · CEH certified team, with 10+ years of combined experience across dozens of security assessments.

60%of confirmed breaches involve a human element: error, manipulation, or misuse
241average days to identify and contain a breach, even at a nine-year low
$10.2Maverage cost of a U.S. data breach, an all-time high
88%of confirmed small and midsize business breaches involve ransomware

Sources: Verizon 2025 Data Breach Investigations Report (human element, SMB ransomware) · IBM Cost of a Data Breach Report 2025 (breach cost and time to contain)

TAC 202Documented control evidence
TX-RAMPAssessment-ready reporting
Texas SB 2610Safe harbor documentation
HIPAASafeguard verification
PCI-DSSQSA-scoped engagements
SOC 2Evidence for Type II audits
Cyber insuranceCarrier-accepted reports
vPenTest platformAI + appliance-based, not manual
CREST + SOC 2Platform-accredited & attested
Service area

We're based in Kyle. We test across Central Texas.

Our security team runs AI and appliance-based penetration tests for organizations across the I-35 corridor and beyond. On-site or remote, we work inside the same rules Central Texas organizations already answer to: TAC 202, Texas SB 2610, and the auditors and insurers who actually review these reports.

KyleHays County
AustinTravis County
San MarcosHays County
BudaHays County
BastropBastrop County
Texas license plate reading PENTEST, The Lone Star State, representing texaspentest.com by safemode IT
Scope options

What we test

An automated scanner tells you what software you're running. Our AI and appliance-based virtual pentest tells you what an attacker can actually do with it, with every finding reviewed by a human analyst before it reaches you. There's no team of consultants working the engagement by hand. Each one is scoped and priced by the number of IP addresses in scope.

External

External network

Everything reachable from the internet: firewalls, VPN portals, mail, exposed services. This is the test insurers and auditors ask about first, because it is the attack surface a stranger sees.

Internal

Internal network and Active Directory

Assumes a foothold and measures blast radius. We chase the path from one compromised workstation to domain admin, then document every hop so your team can cut the chain.

Know the difference

But we already run a vulnerability scan…

A scanner and a penetration test answer different questions. Here is what actually changes when the AI and appliance-based engine takes over, with every result checked by a human analyst.

  Vulnerability scan texaspentest.com
Attempts real exploitation, not just detection No Yes
Chains access to test Active Directory blast radius No Yes
Every finding reviewed by a human analyst No Yes
Report mapped to TAC 202 & cyber insurance requirements Rarely Yes
Free retest included after remediation No Yes
Pricing model Flat subscription Per IP address, one engagement
Under the hood

How the AI testing engine works

Every IP address in scope runs through five automated phases, the same methodology a human tester would follow. The vPenTest platform executes each one, and our security team reviews the results before anything reaches your report.

01

OSINT

Open-source reconnaissance on your domain, IP ranges, employees, and technology stack: the same public footprint an attacker would map first.

02

Host discovery

Every IP address in scope is scanned for active systems, open ports, and running services.

03

Enumeration

Discovered services are analyzed for patching deficiencies, authentication weaknesses, and misconfigurations.

04

Exploitation

Confirmed weaknesses are actually exploited, using password attacks, man-in-the-middle, and relay attacks, to prove real access instead of flagging a theoretical risk.

05

Post-exploitation

Automated privilege escalation attempts map how far an attacker could actually get, and what sensitive data would be exposed along the way.

This is what "not manual" means in practice: the platform runs every phase against every in-scope IP address consistently, then a human analyst reviews and interprets the results.

How an engagement runs

Scoped, tested, reported, retested

01

Scope

A 30-minute call to define targets, rules of engagement, and the compliance driver. You get a fixed price and a signed authorization before anything is touched.

02

Test

Our testing appliance runs AI-driven reconnaissance, vulnerability discovery, and exploitation against every in-scope IP address. This isn't manual testing, and every result is reviewed and interpreted by our security team afterward. If something critical turns up, you hear about it the same day instead of waiting for the final report.

03

Report

An executive summary your board can read and a technical appendix your engineers can act on, with evidence, CVSS-scored severity, and a prioritized fix list.

04

Retest

We walk through every finding with your team and answer questions, then verify remediation and issue an updated report and attestation letter. That is the document your insurer or auditor actually wants.

The deliverable

A report built for the people who will read it

Executive summary Plain-language risk picture for leadership, boards, and commissioners. No jargon, no filler.
See a sample report
Technical findings with evidenceEvery finding includes reproduction steps, screenshots, affected assets, CVSS-based risk ratings, and a concrete fix.
Compliance mappingFindings cross-referenced to TAC 202, Texas SB 2610, HIPAA, PCI-DSS, SOC 2, and common insurance questionnaire items, so the report drops straight into your audit file.
Retest attestationAfter remediation, a signed letter confirming verified fixes. Carriers and auditors accept it as documented evidence.
Pricing

Fixed fee, priced per IP address

No hourly meters and no surprise change orders. Pricing is based on the number of IP addresses in scope, not a day rate or a per-user fee, and that price includes the retest.

Local government entities and appraisal districts: ask about interlocal-friendly terms and budget-cycle scheduling.

# of IPs → fixed quote → authorization → test
Resources

Learn more before your scoping call

vPenTest Data Sheet Overview of the AI-driven testing platform and methodology behind our engagements.
Download data sheet
Why your business needs regular pen tests A quick visual case for making penetration testing a recurring part of your security program.
View infographic
FAQ

Common questions

Is this a manual penetration test or automated?

Neither one alone. texaspentest.com runs an AI and appliance-based penetration test using the vPenTest platform, not a manual, consultant-led engagement. Every finding the platform produces is reviewed and interpreted by a human security analyst before it reaches you, so you get the speed and consistency of automated testing with a human check on every result.

How is pricing determined?

Pricing is based on the number of IP addresses in scope, not an hourly or day rate and not a per-user fee. The scoping call confirms your exact IP count and produces a fixed quote that includes the retest.

What areas does texaspentest.com serve?

texaspentest.com, a service of safemode IT LLC, is based in Kyle, TX and serves organizations across Central Texas, including Kyle, Austin, San Marcos, Buda, and Bastrop.

Which Central Texas counties does texaspentest.com cover?

texaspentest.com serves organizations throughout Central Texas, including Hays County (Kyle, Buda, San Marcos), Travis County (Austin), and Bastrop County (Bastrop). Testing is available on-site or fully remote, so coverage isn't limited to a fixed radius from our Kyle office.

Do you test organizations outside Kyle, Austin, San Marcos, Buda, and Bastrop?

Yes. Those five cities are where most of our clients are headquartered, but the AI and appliance-based testing model works for any organization along the I-35 corridor and across Central Texas. If you're outside that immediate area, mention it on the scoping call and we'll confirm coverage.

Is on-site work required, or is testing done remotely?

Nearly all testing is remote: a dedicated appliance connects to your network and runs the assessment without a consultant on-site, and external network testing is remote by nature. On-site visits are available for Central Texas clients who want an in-person kickoff, but they aren't required.

What compliance requirements does the report satisfy?

Reports are mapped to TAC 202, Texas SB 2610 safe harbor documentation, TX-RAMP, HIPAA, PCI-DSS, SOC 2, and the penetration testing requirements common to cyber insurance renewal questionnaires.

What is the difference between this and a vulnerability scan?

A vulnerability scan simply tells you a weakness might exist; it doesn't attempt to exploit it. Our AI and appliance-based virtual penetration test actually exploits confirmed weaknesses and attempts privilege escalation, so the report shows you real access and potential data exposure instead of a list of theoretical risks. Every result is reviewed by a human analyst before it reaches you.

What happens after remediation?

Once you fix the findings, the security team walks through them with you and verifies the remediation. You get an updated report plus a signed attestation letter, which is the document insurers and auditors actually accept as evidence.

Get started

Request a scoping call

Tell us what needs testing and what is driving it, whether that is a TAC 202 review, an insurance renewal, or a board mandate. We respond within one business day with available scoping slots.

Facing an active incident instead? Call us directly. Our helpdesk and SOC answer around the clock.

5401 S FM 1626 Ste 170 #440, Kyle, TX 78640 · Mon–Fri 8am–5pm CT · 24/7 for active incidents

Submissions go to the safemode IT security team. No mailing lists, no resale.