Frequent Questions
& Answers
Find answers to the most common questions regarding our cybersecurity engagements, training programs, and enterprise solutions.
General Engagement & Consulting
Timelines vary widely based on the scope of the assessment. A standard web application or external network penetration test typically takes 2 to 4 weeks from kickoff to the delivery of the final executive report. Red Team engagements and advanced adversary simulations can run from 4 weeks to several months depending on your organization's footprint.
Absolutely. We operate under strict Non-Disclosure Agreements (NDAs). All data accessed during an engagement is handled via encrypted channels, stored on heavily segmented infrastructure, and securely purged immediately upon project completion as per our GDPR-compliant Data Retention Policy.
Yes. We specialize in zero-disruption testing. We work closely with your engineering and DevOps teams to establish strict rules of engagement, "no-go" zones, and precise testing windows to ensure mission-critical production systems remain completely stable during the assessment.
A vulnerability assessment looks for weaknesses that *could* be exploited by an attacker in the future. A compromise assessment involves deep forensic analysis of your network to determine if you have *already* been breached by an advanced persistent threat (APT) that bypassed your existing defenses.
Managed Detection & Response (MDR)
Yes. Our global Security Operations Center provides continuous, 24/7/365 monitoring, threat hunting, and active threat containment managed entirely by our certified analysts.
No. Our lightweight endpoint agent operates in user-space with a microscopic footprint (typically using less than 1% CPU and a few megabytes of RAM). It is designed to be completely invisible to the end-user and will not interrupt daily workflows.
No. Our telemetry focuses strictly on executable behaviors, system calls, and network connections to detect malicious activity. We do not read the contents of personal documents, emails, or browsing histories.
Yes. EliteHacker MDR is tool-agnostic. We can ingest telemetry from Google Security Operations, Splunk, CrowdStrike, AWS CloudTrail, and dozens of other enterprise platforms to provide a unified defense strategy.
Incident Response & Retainers
For active breaches, our standard SLA guarantees that our digital forensics and incident response (DFIR) team will begin active threat hunting and containment procedures within 4 hours of an alert being raised. Premium tiers offer 1-hour response times.
Yes. We offer emergency incident response services. Please contact our 24/7 breach hotline immediately. While retainer clients receive priority SLA routing, our emergency response teams can typically be deployed within hours to help stop the bleeding.
We do not believe in "use it or lose it." Unused emergency response hours can be repurposed into proactive security services, such as table-top exercises, compromise assessments, or penetration testing before your annual contract renews.
Training & Certifications
Yes, our certifications (EHCP, EHIR, EHCS) are recognized as elite indicators of practical ability. Unlike multiple-choice exams, our certifications require hands-on exploitation and professional reporting, making them highly respected by CISOs and technical recruiters worldwide.
Once you purchase a training package or enterprise subscription, you will receive secure VPN credentials. You can connect to our sandboxed environments directly via OpenVPN to practice real-world exploits in complete safety.
Yes. For teams of 5 or more, we provide our Enterprise Dashboard which allows leadership to track capabilities and skills gaps. Bulk purchasing discounts are available through our sales team.