Suite of penetration testing and application security services is informed by Sophos X-Ops Threat Intelligence and delivered by world-class experts
 

OXFORD, U.K. — Ottobre 1, 2025 —

Sophos, a global leader of innovative security solutions for defeating cyberattacks, today announced the launch of Sophos Advisory Services, a suite of security testing services designed to identify gaps in organizations’ security programs. These offerings – External Penetration Testing, Internal Penetration Testing, Wireless Network Penetration Testing, and Web Application Security Assessment – help fortify an organization’s defenses against cyberattacks and optimize their current security investments.

Regardless of an organization’s size or security maturity, assessing cybersecurity posture is critical to staying ahead of threat actors, demonstrating regulatory compliance, and building trust with customers, partners, and stakeholders. The Sophos State of Ransomware 2025 report highlights that the number one root cause for ransomware attacks is exploited vulnerabilities, and 65% of organizations reported a known or unknown security gap as a reason for being exposed to a ransomware attack.

“Adversaries are increasingly skilled at exploiting the smallest cracks in an organization’s security program. With Sophos Advisory Services, we give customers a proactive advantage - helping them find and fix weaknesses before attackers can exploit them. Backed by real-time insights from Sophos X-Ops threat intelligence, our experts enable organizations to strengthen resilience, meet compliance requirements, and build lasting trust with stakeholders,” Jake Dorval, Senior Director, Sophos Advisory Services.

The following services — informed with leading threat intelligence research and insights from Sophos X-Ops, along with findings from threat hunting and incident response engagements — are now available:

  • External Penetration Testing: Simulates an attacker trying to breach your perimeter from the outside.
  • Internal Penetration Testing: Simulates an insider threat or an attacker who has already breached the perimeter, focusing on systems, applications, and data within the internal network.
  • Wireless Network Penetration Testing: Assesses the security of an organization's Wi-Fi networks and infrastructure and evaluates their compliance with appropriate mandates.
  • Web Application Security Assessment: Tests an organization’s web applications for security vulnerabilities and design weaknesses.

Sophos Advisory Services are delivered by dedicated testers with vast cross-discipline security expertise spanning security research, threat intelligence, law enforcement, military and other backgrounds who joined Sophos through the recent acquisition of Secureworks. The team holds hundreds of security certifications, has earned top finishes in capture the flag competitions, and is supported by Sophos X-Ops security analysts, threat intelligence and research specialists. Sophos will release additional Advisory Services in the coming months.

Sophos Advisory Services are the latest addition to Sophos’ fast-growing security services portfolio that also includes Sophos Emergency Incident Response. Converging incident response expertise from Sophos and Secureworks in a single, hourly-billing offering, Sophos Emergency Incident Response provides rapid identification and neutralization of active threats and is available to any organization experiencing a live incident.

For more information, visit https://www.sophos.com/en-us/products/advisory-services 

Informazioni su Sophos

Sophos è un’azienda leader nell’ambito della cybersecurity e protegge 600.000 organizzazioni in tutto il mondo con una piattaforma basata sull’IA e servizi a cura di esperti. Sophos viene incontro alle esigenze delle organizzazioni, adattandosi al loro livello di maturità di sicurezza informatica e crescendo insieme ai clienti per tutelarli dai cyberattacchi. La sua soluzione offre la combinazione ottimale tra machine learning, automazione e dati di intelligence sulle minacce in tempo reale, aggiungendo le competenze umane degli esperti del team Sophos X-Ops, che lavorano in prima linea per garantire monitoraggio, rilevamento e risposta alle minacce 24/7.
Sophos offre un servizio di Managed Detection and Response (MDR) leader di settore, nonché una linea completa di tecnologie di sicurezza, tra cui soluzioni per la protezione di endpoint, rete, e-mail e cloud, nonché Extended Detection and Response (XDR), rilevamento delle minacce all’identità (Identity Threat Detection and Response, ITDR) e SIEM next-gen. Unite a servizi di consulenza a cura di esperti, queste funzionalità aiutano le organizzazioni a ridurre proattivamente il rischio e a rispondere in maniera più tempestiva, ottenendo il giusto livello di visibilità e scalabilità richiesto per tenersi un passo avanti rispetto a minacce in continua evoluzione.
La strategia go-to-market di Sophos si basa su un ecosistema di Partner che include Managed Service Provider (MSP), Managed Security Service Provider (MSSP), Rivenditori e Distributori, integrazioni per il marketplace, e Partner Cyber Risk; questa strategia offre alle organizzazioni la flessibilità di scegliere come stabilire rapporti di fiducia per la protezione della loro attività.  Sophos ha sede a Oxford, nel Regno Unito. Ulteriori informazioni sono disponibili su www.sophos.it.