Which AI systems do you test?
LLM chatbots, RAG applications, autonomous agents with tool use, fine-tuned and self-hosted models (Llama, Mistral, Falcon), embedded copilots, Azure OpenAI / Bedrock / Vertex deployments and traditional ML scoring services.
How is this different from a normal web pentest?
We cover all the usual application and API attack surface, plus AI-specific threats: prompt injection, jailbreaks, training-data and system-prompt extraction, model and vector-DB poisoning, agent tool abuse, and inference-cost denial-of-wallet attacks.
Do you align to OWASP LLM Top 10 and MITRE ATLAS?
Yes — every finding is mapped to OWASP LLM Top 10 (2025), MITRE ATLAS techniques and the relevant NIST AI RMF / ISO 42001 control so the evidence pack drops into your governance programme.
Can your report be used for ISO 42001, EU AI Act or SOC 2 AI add-ons?
Yes. Reports are written to satisfy ISO/IEC 42001 evaluation evidence, EU AI Act high-risk testing obligations, and enterprise AI assurance questionnaires from BFSI and healthcare buyers.
Will testing leak our prompts or fine-tuned weights?
No. Engagements run under NDA with payload sandboxing; any extracted system prompts, embeddings or weights are reported then securely destroyed. We can test fully air-gapped against a customer-controlled environment.
How long does an AI platform pentest take?
Single LLM application: 7 to 12 working days. Multi-agent or RAG-heavy platforms: 3 to 5 weeks. Full red team against an AI-enabled product line: 4 to 8 weeks.
Do you cover the MLOps and training pipeline?
Yes — model registries, CI/CD for models, vector databases (Pinecone, Weaviate, pgvector), feature stores and inference gateways are in scope when present. We test supply-chain risk in third-party models and datasets.
Can this be part of an existing VAPT or red team retainer?
Yes. AI platform testing slots into our standard VAPT retainer and feeds the same reporting, attestation and re-test workflow your security team already uses.
How experienced is the team that will actually deliver AI Platform VAPT — LLM & ML Penetration Testing?
Every engagement is led by a partner or principal with at least 12 years in cybersecurity and supported by certified consultants (CISA, CISM, CISSP, CIPP/E, ISO 27001 Lead Auditor, ISO 42001 Lead Implementer, OSCP, CREST). You meet the actual delivery team before contracts are signed.
How do you handle confidentiality and data residency?
All client data stays within the regions you authorise. NDAs are signed before scoping calls, and we offer fully on-premise delivery for sensitive engagements. For UAE and KSA clients, evidence remains in-country by default.
Can MAST work alongside our existing Big 4 auditor?
Yes. We routinely collaborate with EY, Deloitte, KPMG, PwC, BDO and Grant Thornton as your implementation partner while they retain audit independence. Roles are agreed upfront in writing to preserve auditor independence rules.
Do you offer multi-year continuous compliance?
Yes — our Managed Compliance Service operates the programme on a monthly subscription, covering control monitoring, evidence collection, internal audit and recertification across every framework in scope.
How is success measured?
Success criteria are agreed in the engagement charter — typically a passed certification or regulator submission, an audit-ready evidence repository, trained control owners and a 12-month continuous-improvement plan.