- Job title
- Board member
- Sector
- Printing
- Organization type
- 8-person team
- Joined
- Oct 2022
- Message
- 131
Doki · Penetration test · 2026
We recently signed a new service agreement with an enterprise software and infrastructure client based in Munich. We need to run regular vulnerability management and penetration testing scans twice a year and deliver reports. Our team has deep technical expertise and we've documented the entire operation in Turkish until now. However, the client's internal audit committee and cybersecurity leadership are requesting all vulnerability management deliverables in English.
We have dozens of pages of Turkish finding templates, issue descriptions, and risk matrices. Should the team translate these from Turkish to English, or work directly off a global security template? We're also worried about terminology errors in technical translation; for example, what are the internationally accepted standard terms for concepts like exploitability, false positive, or mitigating controls in audit contexts?
What path should we follow regarding report structure and terminology consistency?