Apply intelligence-led, threat-led penetration testing (TLPT) approaches in the spirit of TIBER-EU/CBEST — critical functions, CTI scenarios, controlled live testing, and structured closure. Use when designing or preparing for regulatory-style red teaming in financial or critical-entity contexts.