
Offensive security firm providing pentesting, red teaming, and compliance testing services

Offensive security firm providing pentesting, red teaming, and compliance testing services
The Entire Cybersecurity Market, One Prompt Away
Connect your AI assistant to ... tools and ... vendors. Ask anything about the cybersecurity market.
Open-Sec is a cybersecurity company established in Peru in 2006, with an additional presence in the United States since 2018. The company provides offensive security testing services, including penetration testing, red teaming, and related security assessments, for organizations across Latin America and the United States. Its service catalog includes pentesting at the traditional data center level (on-premises), infrastructure/software/platform-as-a-service (cloud) level, application level (DAST, SAST) covering web, mobile, client/server, APIs and microservices, payment services level (merchant, gateway, processor, issuer, acquirer), and industrial control systems (ICS). The company also offers security testing for automatic teller machines (ATMs) and point-of-sale (PoS) systems, switches and transactional authorizers, social engineering and physical intrusion testing, red teaming operations, and DevSecOps deployment support. Open-Sec applies methodologies based on international standards including OWASP guides, OSSTMM, HITRUST, PCI DSS, SWIFT, debit/credit card regulations, local regulations, and SOX, in addition to its own Open-Sec Framework. The company positions its services around agile and continuous pentesting integrated into development pipelines, compliance-driven testing, and evaluations for mergers, acquisitions, and third-party services. Target sectors mentioned include retail and financial services, where the company addresses PoS device security, fraud prevention, and testing of digital banking and fintech products. Open-Sec operates in multiple countries including the United States, El Salvador, Panama, Colombia, Ecuador, Peru, Bolivia, Argentina, Chile, and Pakistan.