Pentesting
We attack your systems the way a real attacker would. Every finding comes with a proof of concept and the steps to close it.
Cybersecurity for startups, SMBs and companies · LATAM
Penetration testing, vulnerabilities and data law. All in one place.
30 minutes free no strings attached
Prefer to write? contacto@arkanasecurity.com
Global score
Risk medium
Start here
We work aligned to
Four fronts that back each other up.
We attack your systems the way a real attacker would. Every finding comes with a proof of concept and the steps to close it.
We do not hand you 200 loose findings. They come sorted by impact: whatever stops your revenue comes first.
If you hold customer or employee data, the law already applies to you. We leave the evidence ready for when you are asked for it.
The controls from the standard, at your company's scale. Without the paperwork machine of a multinational.
Argentina
Law 25.326, in force. It already applies to you today.
Chile
Law 21.719, in force from December 2026.
We also work with the rules of Brazil, Colombia, Mexico and Peru. Arkana does not replace legal advice: it organises the technical evidence that advice needs.
Pick a module and see the real screen.
It depends on the scope, so we do not publish a price list that ends up bearing no resemblance to the real thing. There are two formats: one-off audits paid once, and monthly monitoring plans. The 30-minute call ends with a concrete number, no strings attached.
No. Automated attacks sweep entire address ranges without caring how big the company is. Arkana is built precisely for the ones with no security team, and the scope adjusts to yours.
The platform runs in the browser, not inside your network. The only thing that connects, and only if you decide so, is a code repository, with revocable read permissions. The pentest is intrusive by definition: scope, time window and written authorisation before we touch anything.
Antivirus acts on what already reached your network. We work before that. A good share of incidents starts with a deceptive email, a reused password or a misconfigured cloud: an antivirus does not step in there.
No, and be wary of anyone who says they do: certification is granted only by an accredited body. We implement best practice aligned to the standard and leave the evidence in order, which is the work any audit will ask you for afterwards. Our own controls follow that framework and are not certified yet; we say it plainly.
No middlemen and no hard sell. Pick your channel.
The fastest way
30 minutes, free and with no strings attached. You pick the time in your own zone.
See available timesDirect reply
+54 11 6594 7759. The message is already written for you.
Open WhatsAppIn writing
contacto@arkanasecurity.com
Write an emailWe reply within the next 24 business hours.
Incident in progress? Do not use the form: message us on WhatsApp.
We exist so that digital security stops being a privilege of large companies.
To democratise high-level digital security, so any business can operate without fear of losing what it owns.
To be the most trusted consultancy in Latin America, where security drives the business instead of holding it back.
We explain the complex in your own language.
If you do not need something, we tell you not to do it.
We look after your project as if it were ours.