("Client") hereby authorizes REDTEAM ("Service Provider") to conduct security testing against the targets listed in Section 2 below, for the period specified in Section 3, in accordance with the accompanying Statement of Work and Rules of Engagement.
This authorization confirms that the Client owns, operates, or is otherwise lawfully entitled to authorize testing of the listed targets, and that the testing is for the legitimate purpose of improving the Client's security posture.
| Target | Type | Environment | Testing Depth |
|---|---|---|---|
Add or remove rows as needed. Any target not listed here is out of scope and must not be tested.
Testing is limited to the engagement tier and methodology in the Statement of Work, and is always subject to the Rules of Engagement. By default this includes:
This authorization does not extend to any third-party systems, partner infrastructure, or assets not listed in Section 2. Testing without written authorization is unlawful in Malaysia, and this form is the record of that authorization for the targets listed.
By signing below, the Client grants the authorization above, and the Service Provider acknowledges the scope and rules governing the engagement.
COMPANY STAMP