All Products
Search
Document Center

Managed Security Service:Penetration Testing Service overview

Last Updated:Jun 02, 2026

Penetration Testing Service, part of Managed Security Service (MSSP), engages security experts to simulate attacks, uncover vulnerabilities, raise information security awareness, and validate your defenses. MSSP aims to help you enhance network security and ensure that your information assets are well-protected.

Service scope and deliverables

The following table lists the service scope and SLA.

Service content

Service classification

Service description

Service scope

Service deliverable

Application system tests

Basic business logic test

Simulates attacker methodologies to test business systems for security vulnerabilities in standard workflows. This approach provides fix suggestions to help detect and mitigate risks proactively.

Internal and public network assets

  • Vulnerability Testing Report

  • Fix Suggestions and Retesting Report

OWASP Top 10 vulnerability test

Third-party component test

Permission authentication test

Security configuration test

Workflow test

Mobile application tests

Client tests:

  • Package test

  • Data transmission security test

  • Component security test

  • Security-enhanced item test

  • Application update security test

Covers client and server security across the full mobile application security lifecycle, including security hardening and data compliance testing.

Server tests:

  • Account system security test

  • Basic business security test

  • Code protection test

  • Dynamic protection confrontation test

Service workflow

image

Purchase the service

Call the Alibaba Cloud pre-sales hotline or contact your account manager. For more information, see Pre-sales consultation.