Penetration Testing
Secon's Penetration Testing service, is designed to help identify security vulnerabilities and weaknesses within the IT environment. The testing is undertaken by an expert team, of CREST certified testers, who will manage the entire process end to end. The service focuses on reports and recommendations to help improve cyber resilience.
Features
- Ad-hoc and scheduled routine pen test services.
- Addresses your IT Health Check requirements.
- Pen testing provides assurance on new or existing IT assets.
- Web application and mobile device testing services.
- Cloud services security reviews and assessments.
- External vulnerability scanning services.
- PCI DSS Approved Scan Vendor (ASV) scanning.
- Internal network and Wi-Fi testing services.
- Clear pen testing reports enabling pragmatic risk-based decisions.
- Provide assistance with pen test scoping and full post-test support.
Benefits
- Pen Test specialists with deep industry expertise.
- Provide independent oversight and validation of IT Security posture.
- Pen testing enables more accurate and informed risk-based decision making.
- Allows effective management of Data Breaches and IT Security Incidents.
- Enables compliance with GDPR, PCI DSS, ISO and contractual obligations.
- Realise and reduce your attack vectors and surface.
- Recognised industry standards and certifications - CREST / CHECK.
- Our pen testers hold a high National Security Vetting standard.
- Increase in service up-time, through pro-active prevention and detection.
- Increased Quality Assurance through regular pen tests.
Pricing
£900 to £1,250 a unit a day
- Education pricing available
Service documents
Request an accessible format
Framework
G-Cloud 14
Service ID
2 0 4 8 5 4 4 5 5 9 6 9 2 1 5
Contact
SECON CYBER SECURITY LTD
Hasit Purohit
Telephone: +447741 550 366
Email: frameworks@seconcyber.com
Planning
- Planning service
- Yes
- How the planning service works
-
Secon's planning service covers the onboarding of the Penetration Testing service, which involves the following stages:
1) Mobilise – kick-off, planning and scheduling, set-up communication, clarify dependencies.
2) Testing – Customised testing of the in-scope assets.
3) Reporting – Produce and deliver test results and recommendations. - Planning service works with specific services
- Yes
- Hosting or software services the planning service works with
- Penetration Testing
Training
- Training service provided
- No
Setup and migration
- Setup or migration service available
- No
Quality assurance and performance testing
- Quality assurance and performance testing service
- Yes
- How the quality assurance and performance testing works
- We have a robust internal quality management process, where our solution have undergone testing and validation before any deployment. We review each stage of the delivery process, with all parties concerned. We additionally have an approver process, when progressing from one phase to the next, to ensure all and issues are identified and resolved. We also practice a continuous improvement approach throughout the organisation, thereby striving towards achieving a high quality standard.
Security testing
- Security services
- Yes
- Security services type
-
- Security strategy
- Security risk management
- Security design
- Cyber security consultancy
- Security testing
- Security incident management
- Security audit services
- Certified security testers
- Yes
- Security testing certifications
- CREST
Ongoing support
- Ongoing support service
- No
Service scope
- Service constraints
- No
User support
- Email or online ticketing support
- Email or online ticketing
- Support response times
- 9 am - 5 pm UK time, Monday to Friday.
- User can manage status and priority of support tickets
- No
- Phone support
- Yes
- Phone support availability
- 9 to 5 (UK time), Monday to Friday
- Web chat support
- No
- Support levels
- Secon provides a standard SLA-based support service for Penetration Testing.
Resellers
- Supplier type
- Reseller providing extra features and support
- Organisation whose services are being resold
- One Compliance Cyber Ltd.
Staff security
- Staff security clearance
- Other security clearance
- Government security clearance
- Up to Security Clearance (SC)
Standards and certifications
- ISO/IEC 27001 certification
- Yes
- Who accredited the ISO/IEC 27001
- British Assessment Bureau
- ISO/IEC 27001 accreditation date
- 28/07/2023
- What the ISO/IEC 27001 doesn’t cover
- N/A
- ISO 28000:2007 certification
- No
- CSA STAR certification
- No
- PCI certification
- No
- Cyber essentials
- Yes
- Cyber essentials plus
- Yes
- Other security certifications
- No
Social Value
- Social Value
-
Social Value
- Equal opportunity
- Wellbeing
Equal opportunity
Secon Cyber recognises that it is essential to provide equal opportunities to all persons without discrimination. Secon Cyber has an equal opportunity policy that sets out the organisation's position on equal opportunity in all aspects of employment, including recruitment and promotion, giving guidance and encouragement to employees at all levels to act fairly and prevent discrimination on the grounds of sex, race, marital status, part-time and fixed term contract status, age, sexual orientation or religion.Wellbeing
Secon Cyber provides private health insurance and practices a home working policy.
Secon Cyber strives to offer benefits that meet the diverse needs of all its employees, emphasising accessibility and support for everyone. Whether working from home, the office, or navigating health-related challenges, Secon Cyber is committed to creating an environment that upholds the wellbeing of all its employees.
Pricing
- Price
- £900 to £1,250 a unit a day
- Discount for educational organisations
- Yes