Skip to content
Cyber Defense Technologies
Eyeglasses in front of screens full of code

Offensive Security & Assessment

Social Engineering Assessments

Controlled phishing, pretexting and physical tests that measure how people and processes hold up against manipulation.

Overview

Your people are part of your attack surface.

Attackers target people as often as technology. CDT conducts controlled evaluations of your organization's susceptibility to social engineering by simulating real-world attempts, and measures how well employees and systems respond.

What's included

Capabilities

01

Phishing campaigns

Realistic email campaigns that measure clicks, credential entry and reporting rates.

02

Vishing and pretexting

Phone and in-person pretexts that test help desks and verification procedures.

03

Physical security testing

Authorized attempts to gain physical access to facilities and sensitive areas.

04

Awareness recommendations

Targeted training recommendations based on what actually worked.

How we work

A proven, repeatable process.

  1. 1

    Scope & rules of engagement

    We agree on objectives, targets, timing and safety limits with your team, so testing is realistic and never disruptive.

  2. 2

    Reconnaissance & testing

    Our operators map your attack surface and test it the way real adversaries do, by hand and with automation.

  3. 3

    Exploitation & validation

    We chain findings to prove real-world impact, and tell you immediately if we find something critical.

  4. 4

    Reporting & readout

    Clear, prioritized findings mapped to MITRE ATT&CK, with an executive summary and technical detail for engineers.

  5. 5

    Remediation & retest

    We help you fix what matters most, then retest to confirm the gaps are closed.

Let's talk

Let's talk about social engineering assessments.

Talk with a CDT engineer about your mission, your systems and your deadlines. We'll tell you honestly what it takes.