What to know about budgeting for pentesting: tools vs services

https://media.thenextweb.com/2026/06/budgeting-pentesting-tools-vs-services.avif

Budgeting for pentesting is no longer a simple choice between buying a tool or hiring an outside firm once a year.

Pentesting, or searching for vulnerabilities in one’s cybersecurity defenses by launching a mock cyberattack against it, has become a fundamental method of improving an organization’s security posture. Budgeting for it can present some unique challenges, however, as it’s become increasingly complicated to balance tools like XBOW with expert services.

Today, cybersecurity teams need to decide which risks require continuous automated validation, which scenarios need human-led testing, and how to fit both into a broader security program. To address these needs, the best budgets often combine tools and services so teams can scale routine testing while preserving expert review for compliance needs, high-risk systems, and other issues that benefit from human oversight.

Pentesting Budgets: Start With Risk, Not Tooling

Tempting as it may be to identify potential tools as...

Copyright of this story solely belongs to thenextweb.com. To see the full text click HERE

Read more

https://fortune.com/img-assets/wp-content/uploads/2026/06/Jacob-Andreou-1-1-e1782581752172.png?resize=1200,600

A profile of Jacob Andreou, the 33-year-old former Snap exec leading Microsoft's consolidated Copilot team efforts to catch up with OpenAI and Anthropic

Sponsor Posts Fast, affordable law for startups — Soxton automates startup legal so founders can move faster and sleep better. We handle incorporation, advisor, employment and commercial contracts. Join the waitlist for early access! Stop vibe coding analytics — Equals AI turns questions about your business into auditable spreadsheet models and dashboards.

https://media.wired.com/photos/6a3081014d259fb9a6c751d2/191:100/w_1280,c_limit/How-Chinese-Users-Get-Around-Anthropic-Geolocation-Restrictions-Business.jpg

A look at a thriving underground economy for Claude access in China, including “transfer station” sites that buy API tokens abroad and distribute them to users

Sponsor Posts Fast, affordable law for startups — Soxton automates startup legal so founders can move faster and sleep better. We handle incorporation, advisor, employment and commercial contracts. Join the waitlist for early access! Stop vibe coding analytics — Equals AI turns questions about your business into auditable spreadsheet models and dashboards.

https://images.wsj.net/im-70902578/social

Masayoshi Son questioned Musk's orbital AI data centers, noting electricity is just 7% of costs and the AI race will be won on Earth within a few years

Sponsor Posts Fast, affordable law for startups — Soxton automates startup legal so founders can move faster and sleep better. We handle incorporation, advisor, employment and commercial contracts. Join the waitlist for early access! Stop vibe coding analytics — Equals AI turns questions about your business into auditable spreadsheet models and dashboards.