Background

Cybersecurity Services in Mumbai

VAPT, security audits and NIC audit support for websites, portals and enterprise systems - finding weaknesses before attackers do.

Overview

Affix Center helps organisations understand and reduce their security risk. We test websites, applications, networks and infrastructure for vulnerabilities, explain the findings in plain language, and help your team fix them.

For government and public sector portals, we support preparation for and remediation of NIC and CERT-In empanelled security audits.

Who it is for

  • Businesses launching or running customer-facing web applications
  • Government portals that must clear a security audit
  • Enterprises needing periodic VAPT for compliance
  • Organisations recovering from or worried about an incident

What we deliver

Vulnerability assessment

Systematic scanning and review of applications and infrastructure.

Penetration testing

Controlled attacks that show how real weaknesses could be exploited.

Web application security

Testing against common web vulnerabilities such as those in the OWASP Top 10.

Security audit support

Preparation and remediation for NIC / CERT-In empanelled audits.

Network & endpoint security

Firewall, network and endpoint protection reviews.

Remediation & retesting

Help fixing findings, then retesting to confirm they are closed.

Our process

  1. Scope

    Systems, rules of engagement and timelines agreed in writing.

  2. Test

    Automated and manual testing of the agreed scope.

  3. Report

    Findings ranked by risk with clear remediation steps.

  4. Fix

    Support for your team or ours to remediate.

  5. Retest

    Verification that each issue is resolved.

Why Affix Center

Mumbai team, India-wide delivery

Our team works out of Lower Parel, Mumbai and delivers for clients across India, on-site when it matters and remotely when it does not.

In business since 2014

A decade of building and running systems for government bodies, enterprises and growing businesses.

ISO certified processes

Delivery run on ISO 9001, ISO 27001 and ISO 20000 certified processes for quality, information security and IT service management.

One partner, end to end

Strategy, design, development, hosting, security and support from one accountable team - no hand-offs between vendors.

Frequently asked questions

What is VAPT?

Vulnerability Assessment and Penetration Testing. The assessment finds weaknesses; the penetration test shows whether and how they could be exploited.

How often should we run VAPT?

At least once a year, and after any major change to an application or infrastructure. Many compliance frameworks require periodic testing.

Can you help our portal pass the NIC security audit?

Yes. We help prepare the application for audit and support remediation of the observations raised.

Will testing disrupt our live systems?

Testing is scoped and scheduled with you in advance, and higher-risk tests can be run against a staging environment.

Let's discuss your requirement

Tell us what you need and our team will get back to you within 2 business days.