BSides Tallinn 2025

Lost in Translation? Making Pentest Reports Speak the Client’s Language
2025-09-25 , Stage 2

Penetration testing reports play a significant role in helping organizations identify and mitigate security vulnerabilities as they are the only tangible product of the conducted tests. The report effectiveness relies on the extent to which customers can translate the findings into actionable decisions.

Our study investigated the usability gaps in penetration testing reports from a customer-centric perspective, focusing on the challenges organizations face in understanding, prioritizing, and acting on the provided insights.

Want to know how to improve Your reports? Join us and find out!

Sneak peak
„From Reports to Actions: Bridging the Customer Usability Gap in Penetration Testing” K. Galanska, A. Kruzikova, M. P. Murumaa, V. Matyas, M. Just; IEEE Access, vol. 13, pp. 73975-73986, 15.04.2025, 10.1109/ACCESS.2025.3561220

Katarina has for the past several years worked in offensive cybersecurity. She previously graduated in IT security at the Faculty of Information Technology at Brno University of Technology and at the University of South Wales in Cardiff. Currently, she is a PhD candidate at the Centre for Research on Cryptography and Security at Masaryk University. Her research focuses on penetration testing reports concerning IT professionals in the field of usable security, in collaboration with commercial companies.

Maria is a Security Engineer at Cybernetica AS. Combining both theoretical knowledge and hands-on experience she applies a practical and forward-looking approach to securing digital environments. Her professional focus is rooted in continuous learning, collaboration, and a genuine enthusiasm for making the digital world safe for everyone.