Pentest Today.
security questionnaire

Pass your SIG security questionnaire

The SIG is long, and its hardest sections want technical evidence. Pentest Today gives you the pentest, scans, and policies to answer the security and resilience domains with confidence.

What a SIG review asks for

The Shared Assessments Standardized Information Gathering (SIG) questionnaire is a comprehensive third-party risk questionnaire used across industries.

Penetration testing and vulnerability scanning evidence
Access management and authentication documentation
Encryption, key management, and data-handling policies
Business continuity and incident response plans
Architecture and data-flow diagrams

SIG, answered

What is the SIG questionnaire?

Maintained by Shared Assessments, the SIG is a standardized questionnaire covering ~20 risk domains. We generate the evidence the IT-security and resilience domains depend on.

Is the pentest a real test or just a scanner dump?

Both scanning and AI triage are scoped to your approved targets, and every finding is reviewed and signed off by a human before delivery — so the report reflects verified findings, not raw scanner noise.

How fast can I get a report?

Most reports turn around in hours, not weeks. You connect an approved target, we scan and verify, and you export a client-ready report and policy pack.

Get the evidence for your SIG review this week.

Start a scan on an approved target and walk in with the report, policies, and diagrams already done.