Free Tool

Penetration Testing Engagement Letter Template
authorise testing to begin without leaving the audit trail behind

A free, copy-ready penetration testing engagement letter template. Eleven structured sections covering engagement references, parties, scope summary, testing window, the substantive authorisation statement, the named engagement team, communications, scheme references (CHECK, CREST OVS, CREST STAR, FedRAMP, DORA TLPT), third-party permissions, physical and social engineering annex, and signatures. Sits at the front of the engagement record, inherits scope from the Statement of Work, and inherits operational rules from the Rules of Engagement. Aligned with PTES, NIST SP 800-115, and the CREST Defensible Penetration Test specification.

No credit card required. Free plan available forever.

Loading tool...

Run the engagement on the same record as the letter

SecPortal stores the engagement letter alongside the SOW, the ROE, the findings, the report, and the retest evidence. One audit trail from authorisation to closure. Free plan available.

No credit card required. Free plan available forever.