← Insights
Application Security
Application security and AI-driven pentesting via Aikido, inside the developer workflow.
2 Jun 2026 · Articles
Which rules require recurring penetration testing?
PCI DSS, DORA, NIS2, ISO 27001 and GDPR have different testing requirements. Match the method, scope and tester qualifications to the actual obligation.
Read more
1 Jun 2026 · Guides
How to use application pentest evidence in ISO 27001 work
A pentest report needs context: scope, release, findings, remediation and retesting. Connect those records to the risks and controls in your ISMS.
Read more
29 Apr 2026 · Articles
Why FM's application testing service uses Aikido
FM's pentest offering uses Aikido, with FM reporting. The aim is repeatable testing tied to application changes, clear scope and follow-up on findings.
Read more