TABLE OF CONTENT
Bengaluru – 5th August 2026: SISA, the global leader in cybersecurity for the payment ecosystem, today announced the global rollout of its AI-augmented Penetration Testing service, marking a significant evolution in how organizations identify and remediate application vulnerabilities in an era where AI-powered attackers can weaponize weaknesses within minutes.
Available to all SISA customers worldwide, the new capability combines AI-driven speed and scale with SISA's forensics-led testing methodology and expert human validation. Clients can opt for AI-augmented assessments at the same standard pricing as traditional manual penetration testing, ensuring organizations choose the methodology best suited to their security objectives rather than their budgets.
The launch comes at a pivotal moment for cybersecurity. As threat actors increasingly leverage AI to automate reconnaissance, generate exploit code and accelerate attack execution, the time between vulnerability disclosure and active exploitation has compressed dramatically - from days to, in many cases, mere minutes. Organizations can no longer rely solely on conventional testing approaches to keep pace with today's rapidly evolving threat landscape.
"Cyber attackers have fundamentally changed the rules of engagement by embracing AI at scale. Defenders must evolve just as rapidly," said Dharshan Shanthamurthy, Founder & CEO, SISA. "Our foundation has always been built on digital forensics - understanding how real attackers compromise systems. AI enables us to uncover vulnerabilities faster and across a much broader attack surface, while our certified security experts continue to validate every finding and remain accountable for every recommendation. This is not automation replacing expertise; it is AI amplifying human intelligence."
Unlike fully automated scanning tools, SISA's AI-augmented Penetration Testing retains the rigor and accountability of expert-led security assessments. Every engagement is directed by a SISA-certified penetration tester, every finding is independently validated by a human expert before it reaches the client, and every assessment continues to follow globally recognized methodologies, including the OWASP Web Security Testing Guide (WSTG), OWASP Application Security Verification Standard (ASVS), the Penetration Testing Execution Standard (PTES) and NIST SP 800-115. The guiding principle behind the methodology is simple: AI discovers and validates vulnerabilities at unprecedented speed; certified security professionals apply context, judgment and accountability.
By offering AI-augmented and traditional manual penetration testing at pricing parity, SISA is reinforcing its commitment to customer choice while ensuring organizations can adopt advanced security capabilities without additional commercial barriers.
Capability scope at launch
At launch, AI-augmented penetration testing is available across SISA's application security testing services, including:
- Web Application Penetration Testing
- API Security Testing
- Mobile Application Penetration Testing
- Secure Code Review
- Threat Modelling and Architecture Review
- Thick Client Application Penetration Testing
- Infrastructure Hardening Assessment (Nginx, Operating Systems and Databases)
The capability has undergone extensive internal validation before its global release. SISA plans to extend AI-augmented capabilities to infrastructure security assessments, network penetration testing and red team engagements as part of its broader innovation roadmap.
Enterprise- Grade Data Security
SISA confirmed that all client data processed during AI-augmented engagements remains within SISA-controlled infrastructure hosted in the cloud service provider’s region specified in the customer's Statement of Work. Customer data is not retained by the AI provider beyond inference processing and is never used to train AI models. Existing confidentiality, data protection and indemnification commitments under SISA's Master Services Agreement remain fully applicable to AI-augmented engagements.
About SISA
SISA is a global leader in cybersecurity for the payment ecosystem, operating at the intersection of AI, cybersecurity, and payments. Trusted by leading brands and financial institutions across 40+ countries, SISA secures over 1,000 organizations by helping them anticipate threats, strengthen resilience, and protect critical payment infrastructure. Powered by real-world breach intelligence, SISA enables organizations to stay ahead of evolving cyber risks. Follow SISA on LinkedIn for the latest insights on cybersecurity, payment security innovation, and emerging technologies.