Free Tool

Penetration Testing Evidence Destruction Certificate Template
close out the long tail of retained engagement evidence

A free, copy-ready penetration testing evidence destruction certificate template. Nine structured sections covering header and engagement references, parties, retention window and basis for destruction, the artefact inventory in scope of the destruction, destruction method per category (cryptographic erasure, secure overwrite, physical destruction, processor token revocation, anonymisation), anonymised artefacts retained for internal training, third-party processors and residual lapse dates, framework and regulatory references (ISO 27001, SOC 2, PCI DSS, GDPR, HIPAA, DORA, TIBER-EU), and signature blocks. Pairs with the executed closure letter, rules of engagement, and engagement letter so the destruction inherits the retention plan rather than restating it. Aligned with PTES, NIST SP 800-115, NIST SP 800-88, and the CREST Defensible Penetration Test specification.

No credit card required. Free plan available forever.

Loading tool...

Close the retention loop on the same record the engagement opened on

SecPortal stores the destruction certificate alongside the engagement letter, SOW, ROE, findings, evidence pack, final report, debrief deck, attestation letter, and closure letter. One audit trail from RFP through to evidence destruction. Free plan available.

No credit card required. Free plan available forever.