Skip to main content

Help us improve the Digital Marketplace - send your feedback

REDSECLABS LIMITED

Penetration Testing

RedSecLabs provides CREST-accredited penetration testing across web, cloud, API, IoT, mobile and Web 3.0 platforms. Our certified testers uncover vulnerabilities, simulate real-world attacks and deliver clear remediation guidance, helping organisations strengthen security, reduce risk and meet industry, regulatory and compliance requirements.

Features

  • CREST-accredited penetration testing delivered by certified experts
  • Web application testing aligned with OWASP methodologies
  • Cloud penetration testing for AWS, Azure, Google environments
  • Mobile application testing for iOS and Android platforms
  • API and microservices security assessment
  • IoT and embedded device penetration testing
  • Web 3.0 and blockchain security testing
  • External and internal infrastructure penetration testing
  • Secure code review by CREST certified specialists
  • Detailed reporting with evidence, risk ratings, and remediation guidance

Benefits

  • Identifies critical vulnerabilities before attackers exploit them
  • Finds complex business logic flaws missed by tools
  • Reveals real-world attack paths through manual expert testing
  • Highlights chained vulnerabilities through manual exploit development
  • Strengthens security by testing beyond automated coverage
  • Delivers expert insights for effective remediation
  • Reduces cyber risk through comprehensive manual assessment
  • Improves application security using human-led, context-aware testing techniques
  • Uncovers high-impact logic weaknesses affecting revenue and workflows
  • Detects deep, complex vulnerabilities via human-led testing

Pricing

  • Education pricing available

Service documents

Request an accessible format
If you use assistive technology (such as a screen reader) and need versions of these documents in a more accessible format, email the supplier at info@redseclabs.com. Tell them what format you need. It will help if you say what assistive technology you use.

Framework

G-Cloud 15

Service ID

2 7 7 2 2 5 0 5 9 7 2 9 3 0 5

Contact

REDSECLABS LIMITED Rafay Baloch
Telephone: +44 20 3996 1505
Email: info@redseclabs.com

About the service

Service categories

Cloud Support Services

Security Services

  • Security strategy
  • Security risk management
  • Security design
  • Security incident management
  • Security audit services

Service scope

Service constraints
Services are primarily delivered remotely for efficiency and reduced customer impact. On-site testing is available on request, subject to scheduling and additional costs.

User support

Email or online ticketing support
Yes
Support response times
RedSecLabs provides rapid, expert-led support for all penetration testing engagements. Email and ticketing enquiries are typically acknowledged within one working day (Monday to Friday, 9am–5pm). Technical questions are handled directly by certified penetration testers to ensure accurate, high-quality guidance. Responses outside standard hours can be arranged in advance for urgent or time-sensitive testing requirements.
User can manage status and priority of support tickets
No
Phone support
Yes
Phone support availability
9 to 5 (UK time), Monday to Friday
Web chat support
No
Support levels
RedSecLabs provides a single high-quality support level for all penetration testing engagements, delivered directly by certified security consultants. Support is available during standard business hours (9am–5pm, Monday to Friday) at no additional cost. All clients receive a dedicated technical consultant who acts as the primary point of contact throughout scoping, testing and reporting.

Supplier type

Supplier type
Not a reseller

Staff security

Staff security clearance
Other security clearance
Government security clearance
Security Clearance (SC)

Pricing

Discount for educational organisations
Yes

Architecture roles

Security architect
Role level UK Rate Offshore Rate
Security architect £800.00 £650.00
Lead security architect £1,000.00 £850.00
Principal security architect £1,300.00 £1,050.00

Chief digital and data roles

Chief information security officer
Role level UK Rate Offshore Rate
Chief information security officer £1,200.00 £1,000.00

Cyber security roles

Cyber security audit and assurance
Role level UK Rate Offshore Rate
Lead cyber security audit and assurance £1,000.00 £800.00
Principal cyber security audit and assurance £1,200.00 £950.00
Cyber security governance and risk management
Role level UK Rate Offshore Rate
Associate cyber security governance and risk manager £800.00 £650.00
Lead cyber security governance and risk manager £800.00 £700.00
Principal cyber security governance and risk manager £1,000.00 £850.00
Cyber security monitoring
Role level UK Rate Offshore Rate
Associate cyber security monitoring £650.00 £500.00
Lead cyber security monitoring £800.00 £650.00
Principal cyber security monitoring £1,000.00 £850.00
Cyber security incident response
Role level UK Rate Offshore Rate
Associate cyber incident response £650.00 £500.00
Lead cyber security incident response £800.00 £650.00
Principal cyber security incident response £1,000.00 £800.00
Cyber security vulnerability management
Role level UK Rate Offshore Rate
Associate cyber security vulnerability management £650.00 £500.00
Lead cyber security vulnerability management £800.00 £650.00
Principal cyber security vulnerability management £1,000.00 £850.00
Cyber security digital forensics
Role level UK Rate Offshore Rate
Associate cyber security digital forensics £650.00 £500.00
Lead cyber security digital forensics £800.00 £650.00
Principal cyber security digital forensics £1,000.00 £850.00
Cyber security testing
Role level UK Rate Offshore Rate
Associate cyber security testing £650.00 £500.00
Lead cyber security penetration testing £800.00 £650.00
Principal cyber security testing £1,000.00 £850.00
Cyber security secure design
Role level UK Rate Offshore Rate
Associate cyber security secure systems architecture and design £650.00 £500.00
Lead cyber security secure systems architecture and design £800.00 £650.00
Principal cyber security secure systems architecture and design £1,000.00 £800.00

Standards and certifications

ISO/IEC 27001 certification
No
ISO 28000:2022 certification
No
ISO 9001 certification
No
Quality management systems (QMS)
Yes
CSA STAR certification
No
PCI certification
No
Cyber essentials
No
Cyber Essentials Alternative
In relation to the services you do not have a current and valid Cyber Essentials certificate which has been awarded by one of the government approved Cyber Essentials accreditation bodies but you are working towards gaining it, and will be in a position to confirm that you have been awarded a current and valid Cyber Essentials certificate by one of the government approved accreditation bodies within 12 months of the date of award.
Cyber essentials plus
No
Cyber Essentials Alternative
In relation to the services you do not have a current and valid Cyber Essentials Plus certificate which has been awarded by one of the government approved Cyber Essentials accreditation bodies but you are working towards gaining it, and will be in a position to confirm that you have been awarded a current and valid Cyber Essentials Plus certificate by one of the government approved accreditation bodies within 12 months of the date of award.
Other security certifications
Yes
Any other security certifications
  • CPSA
  • OSCP
  • CREST CRT
  • PCI DSS QSA
  • CISSP
  • CISA
  • OSWE
  • Security+

Social value

Mission: Kick start economic growth

To secure the highest sustained growth in the G7 - with good jobs and productivity growth in every part of the country making everyone, not just a few, better off.

Policy Outcome 1: Fair work: That offers fair wages and good working conditions. Help people get a job, stay in work, and progress in their careers, with good employment opportunities across the country. Notes: Where there is a large proportion of labour costs in the contract, commercial teams should consider MAC in Outcome 1 as a priority

  • Understanding of in-work progression issues affecting the market, industry or sector relevant to the contract, and in the supplier’s own organisation and those of its key sub-contractors
  • Measures to support in-work progression to help people in the contract workforce, to move into higher paid work by developing new skills relevant to the contract
  • Support for the contract workforce by providing career advice, and providing opportunities for staff working on the contract with in-work progression career development into known skills shortages or high growth areas
  • Volunteering opportunities for staff

Service documents

Request an accessible format
If you use assistive technology (such as a screen reader) and need versions of these documents in a more accessible format, email the supplier at info@redseclabs.com. Tell them what format you need. It will help if you say what assistive technology you use.