Intelligence Led Penetration Testing
Standard penetration testing typically focuses on testing technical systems and networks for vulnerabilities, overlooking the public-facing digital footprint that attackers might exploit today. By conducting the DRA first (using OSINT), we identify potential digital exposure risks early and streamline the penetration testing phase, making the process more targeted and efficient.
Features
- Combined Digital Risk Assessment and Penetration test
- Intelligence Led penetration testing
- Comprehensive risk report
- Actionable insights
- Unified security posture
Benefits
- Combined Digital Risk Assessment and Penetration test
- Identifies and addresses an organisations information exposure risks
- Identifies and addresses an organisations technical vulnerabilities
- Uncovers full risk landscape
- Advance threat simulation
- Prioritised Remediation
- More efficient security testing
Pricing
- Education pricing available
Service documents
Request an accessible format
Framework
G-Cloud 15
Service ID
6 2 4 6 1 9 5 4 9 3 1 1 7 1 6
Contact
PGI - PROTECTION GROUP INTERNATIONAL LTD.
Mike Tipson
Telephone: 020 4566 6600
Email: bidteam@pgitl.com
About your service
- Service categories
-
Cloud Support Services
Quality Assurance and Performance Testing
- Assurance/testing design
- Infrastructure performance testing
- Other
Performance testing
- Load Testing
- Stress Testing
- Volume Testing
- Soak Testing
- Scalability Testing
- Capacity Planning
Operational readiness testing
- Accessibility testing
Service scope
- Service constraints
- None
User support
- Email or online ticketing support
- Yes
- Support response times
- Within 24 hours
- User can manage status and priority of support tickets
- No
- Phone support
- Yes
- Phone support availability
- 9 to 5 (UK time), Monday to Friday
- Web chat support
- No
- Support levels
- PGI’s intelligence-led penetration testing begins with a Project Manager (PM) collaborating with stakeholders to define in-scope assets—web apps, infrastructure, cloud, and mobile—while aligning on business priorities, risk appetite, and compliance requirements (PSN, NCSC CHECK, CREST). The process integrates advanced OSINT techniques to uncover what threat actors can learn about your organisation from public sources, including exposed employee data and digital footprints. Objectives and success criteria are documented up front to ensure full alignment, focusing testing on real-world risks. Support is structured with an Account Manager (AM) handling commercial aspects and client relationships, and a PM overseeing delivery, scheduling, and quality. For large projects, PM costs typically represent 5–10% of the total cost, reflecting added governance. A dedicated Subject Matter Expert (SME) conducts both the Digital Risk Assessment and Penetration Testing phases, with backup SMEs ensuring continuity. Technical support is delivered by the SME, guaranteeing accurate, context-specific responses. The PM acts as the central liaison, leading all key meetings, providing regular status reports, and ensuring findings and recommendations are delivered on time and to PGI’s high standards. This approach delivers actionable insights, prioritised remediation, and a unified view of your digital risk landscape, strengthening your organisation’s security posture.
Resellers
- Supplier type
- Not a reseller
Staff security
- Staff security clearance
- Conforms to BS7858:2019
- Government security clearance
- Security Clearance (SC)
Pricing
- Discount for educational organisations
- Yes
Chief digital and data roles
| Role level | UK Rate | Offshore Rate |
|---|---|---|
| Chief information security officer | £1,850.00 | £1,850.00 |
| Role level | UK Rate | Offshore Rate |
|---|---|---|
| Chief technology officer | £1,850.00 | £1,850.00 |
Cyber security roles
| Role level | UK Rate | Offshore Rate |
|---|---|---|
| Lead cyber security audit and assurance | £1,200.00 | £1,200.00 |
| Principal cyber security audit and assurance | £1,850.00 | £1,850.00 |
| Role level | UK Rate | Offshore Rate |
|---|---|---|
| Associate cyber security governance and risk manager | £600.00 | £600.00 |
| Lead cyber security governance and risk manager | £1,200.00 | £1,200.00 |
| Principal cyber security governance and risk manager | £1,850.00 | £1,850.00 |
| Role level | UK Rate | Offshore Rate |
|---|---|---|
| Associate cyber incident response | £1,000.00 | £1,000.00 |
| Lead cyber security incident response | £1,200.00 | £1,200.00 |
| Principal cyber security incident response | £1,850.00 | £1,850.00 |
| Role level | UK Rate | Offshore Rate |
|---|---|---|
| Associate cyber security vulnerability management | £600.00 | £600.00 |
| Lead cyber security vulnerability management | £1,200.00 | £1,200.00 |
| Principal cyber security vulnerability management | £1,850.00 | £1,850.00 |
| Role level | UK Rate | Offshore Rate |
|---|---|---|
| Associate cyber security digital forensics | £1,000.00 | £1,000.00 |
| Lead cyber security digital forensics | £1,200.00 | £1,200.00 |
| Principal cyber security digital forensics | £1,850.00 | £1,850.00 |
| Role level | UK Rate | Offshore Rate |
|---|---|---|
| Associate cyber security testing | £600.00 | £600.00 |
| Lead cyber security penetration testing | £1,200.00 | £1,200.00 |
| Principal cyber security testing | £1,850.00 | £1,850.00 |
| Role level | UK Rate | Offshore Rate |
|---|---|---|
| Associate cyber security secure systems architecture and design | £600.00 | £600.00 |
| Lead cyber security secure systems architecture and design | £1,200.00 | £1,200.00 |
| Principal cyber security secure systems architecture and design | £1,850.00 | £1,850.00 |
Non-mandatory Standards and certifications
- ISO/IEC 27001 certification
- Yes
- Who accredited the ISO/IEC 27001
- British Assessment Bureau
- ISO/IEC 27001 accreditation date
- Tuesday 8 April 2025
- What the ISO/IEC 27001 doesn’t cover
- N/A
- ISO 28000:2022 certification
- No
- ISO 9001 certification
- Yes
- Who accredited the ISO 9001 certification
- British Assessment Bureau
- ISO 9001 accreditation date
- Tuesday 8 April 2025
- What the ISO 9001 doesn’t cover
- N/A
- Quality management systems (QMS)
- Yes
- CSA STAR certification
- No
- PCI certification
- No
- Cyber essentials
- Yes
- Please provide your Cyber Essentials Certificate Number
- 6783847e-0fd9-428d-9433-faca1db0c981
- Cyber essentials plus
- Yes
- Please provide your Cyber Essentials Plus Certificate Number
- Aced533a-802a-4dca-892c-6d66232696e1
- Other security certifications
- Yes
- Any other security certifications
-
- CREST
- CHECK
- Cyber Incident Exercising
Social value
- Section B - Commitment for Future: Delivery
-
-
Mission: Kick start economic growth. To secure the highest sustained growth in the G7 - with good jobs and productivity growth in every part of the country making everyone, not just a few, better off.
Policy Outcome 1: Fair work: That offers fair wages and good working conditions. Help people get a job, stay in work, and progress in their careers, with good employment opportunities across the country. Notes: Where there is a large proportion of labour costs in the contract, commercial teams should consider MAC in Outcome 1 as a priority
- Payment of more than the National Minimum Wage or National Living Wage (as appropriate) to the contract workforce
-