Cybersecurity Blog

Stay ahead with insights from Red Sentry’s team, covering penetration testing, compliance, and offensive security trends.

Healthcare & Medical Device

HIPAA, FDA Submissions and Customer Security Reviews: Three Different Things Healthcare Software Has to Prove

HIPAA, an FDA premarket submission and a customer security review are three different asks. What each requires, what testing evidences, and where the line is.

Leadership

Five Years of Building Red Sentry; Five Ways I’ve Changed My Perspective.

5 years, 5 shifted mindsets

Valentina Flores

CEO

Application ecosystem · AI/LLM

Testing AI Agents in Production: What Changes When the Model Can Call Your Tools

What changes when an LLM agent can call your tools, where the findings actually sit, what a tester needs before starting, and what to ask a provider for.

Source Code Review

What a Manual Secure Code Review Finds That Your SAST Pipeline Reports as Clean

What a manual secure code review finds that static analysis reports as clean, what a reviewer needs to start, and how to decide whether to scope one.

Autonomous AI agent chaining system permissions during a simulated attack path

PENTESTING TEAM, TOOLS AND TECHNIQUES

The Real AI Security Risk Is What We Allow It to Do

Autonomous AI agents don't just hold permissions; they test and chain them. Learn why least privilege and security boundaries must adapt to AI autonomy.

Mike Shelton

Head of Pentesting

Red Sentry SOC 2 Type II attestation covering penetration testing data handling controls

PENTESTING TEAM, TOOLS AND TECHNIQUES

What SOC 2 Type II Means for Red Sentry Clients

Red Sentry has achieved SOC 2 Type II compliance, independently validating that its long-term security controls and operational processes effectively protect…