The Short Answer: Yes, With Proper Coordination

Grid32 can test infrastructure hosted or located outside the United States. External penetration testing of internet-facing assets is inherently geography-agnostic — we test your IP addresses and domains regardless of where the underlying servers are physically located.

Considerations for International Testing

  • Legal authorization — You must have full legal authority to authorize testing of all in-scope systems. Written authorization from appropriate parties is required before testing begins.
  • Data residency and privacy laws — GDPR and other jurisdictions have specific requirements that may be relevant to how testing evidence is handled.
  • Network accessibility — Internal testing of geographically distributed networks may require coordination around VPN access or remote connectivity.
  • On-site testing — Physical social engineering assessments at international locations require separate coordination and are scoped separately.

If you have international infrastructure to include in your engagement scope, contact us before building your quote. We'll work through the requirements together.

International infrastructure? We can help.

Contact our team to discuss your international testing needs and how to scope them correctly.

Contact Us →