Skip to main content

Help us improve the Digital Marketplace - send your feedback

PGI - PROTECTION GROUP INTERNATIONAL LTD.

Intelligence Led Penetration Testing

Standard penetration testing typically focuses on testing technical systems and networks for vulnerabilities, overlooking the public-facing digital footprint that attackers might exploit today. By conducting the DRA first (using OSINT), we identify potential digital exposure risks early and streamline the penetration testing phase, making the process more targeted and efficient.

Features

  • Combined Digital Risk Assessment and Penetration test
  • Intelligence Led penetration testing
  • Comprehensive risk report
  • Actionable insights
  • Unified security posture

Benefits

  • Combined Digital Risk Assessment and Penetration test
  • Identifies and addresses an organisations information exposure risks
  • Identifies and addresses an organisations technical vulnerabilities
  • Uncovers full risk landscape
  • Advance threat simulation
  • Prioritised Remediation
  • More efficient security testing

Pricing

  • Education pricing available

Service documents

Request an accessible format
If you use assistive technology (such as a screen reader) and need versions of these documents in a more accessible format, email the supplier at bidteam@pgitl.com. Tell them what format you need. It will help if you say what assistive technology you use.

Framework

G-Cloud 15

Service ID

6 2 4 6 1 9 5 4 9 3 1 1 7 1 6

Contact

PGI - PROTECTION GROUP INTERNATIONAL LTD. Mike Tipson
Telephone: 020 4566 6600
Email: bidteam@pgitl.com

About your service

Service categories

Cloud Support Services

Quality Assurance and Performance Testing

  • Assurance/testing design
  • Infrastructure performance testing
  • Other

Performance testing

  • Load Testing
  • Stress Testing
  • Volume Testing
  • Soak Testing
  • Scalability Testing
  • Capacity Planning

Operational readiness testing

  • Accessibility testing

Service scope

Service constraints
None

User support

Email or online ticketing support
Yes
Support response times
Within 24 hours
User can manage status and priority of support tickets
No
Phone support
Yes
Phone support availability
9 to 5 (UK time), Monday to Friday
Web chat support
No
Support levels
PGI’s intelligence-led penetration testing begins with a Project Manager (PM) collaborating with stakeholders to define in-scope assets—web apps, infrastructure, cloud, and mobile—while aligning on business priorities, risk appetite, and compliance requirements (PSN, NCSC CHECK, CREST). The process integrates advanced OSINT techniques to uncover what threat actors can learn about your organisation from public sources, including exposed employee data and digital footprints. Objectives and success criteria are documented up front to ensure full alignment, focusing testing on real-world risks. Support is structured with an Account Manager (AM) handling commercial aspects and client relationships, and a PM overseeing delivery, scheduling, and quality. For large projects, PM costs typically represent 5–10% of the total cost, reflecting added governance. A dedicated Subject Matter Expert (SME) conducts both the Digital Risk Assessment and Penetration Testing phases, with backup SMEs ensuring continuity. Technical support is delivered by the SME, guaranteeing accurate, context-specific responses. The PM acts as the central liaison, leading all key meetings, providing regular status reports, and ensuring findings and recommendations are delivered on time and to PGI’s high standards. This approach delivers actionable insights, prioritised remediation, and a unified view of your digital risk landscape, strengthening your organisation’s security posture.

Resellers

Supplier type
Not a reseller

Staff security

Staff security clearance
Conforms to BS7858:2019
Government security clearance
Security Clearance (SC)

Pricing

Discount for educational organisations
Yes

Chief digital and data roles

Chief information security officer
Role level UK Rate Offshore Rate
Chief information security officer £1,850.00 £1,850.00
Chief technology officer
Role level UK Rate Offshore Rate
Chief technology officer £1,850.00 £1,850.00

Cyber security roles

Cyber security audit and assurance
Role level UK Rate Offshore Rate
Lead cyber security audit and assurance £1,200.00 £1,200.00
Principal cyber security audit and assurance £1,850.00 £1,850.00
Cyber security governance and risk management
Role level UK Rate Offshore Rate
Associate cyber security governance and risk manager £600.00 £600.00
Lead cyber security governance and risk manager £1,200.00 £1,200.00
Principal cyber security governance and risk manager £1,850.00 £1,850.00
Cyber security incident response
Role level UK Rate Offshore Rate
Associate cyber incident response £1,000.00 £1,000.00
Lead cyber security incident response £1,200.00 £1,200.00
Principal cyber security incident response £1,850.00 £1,850.00
Cyber security vulnerability management
Role level UK Rate Offshore Rate
Associate cyber security vulnerability management £600.00 £600.00
Lead cyber security vulnerability management £1,200.00 £1,200.00
Principal cyber security vulnerability management £1,850.00 £1,850.00
Cyber security digital forensics
Role level UK Rate Offshore Rate
Associate cyber security digital forensics £1,000.00 £1,000.00
Lead cyber security digital forensics £1,200.00 £1,200.00
Principal cyber security digital forensics £1,850.00 £1,850.00
Cyber security testing
Role level UK Rate Offshore Rate
Associate cyber security testing £600.00 £600.00
Lead cyber security penetration testing £1,200.00 £1,200.00
Principal cyber security testing £1,850.00 £1,850.00
Cyber security secure design
Role level UK Rate Offshore Rate
Associate cyber security secure systems architecture and design £600.00 £600.00
Lead cyber security secure systems architecture and design £1,200.00 £1,200.00
Principal cyber security secure systems architecture and design £1,850.00 £1,850.00

Non-mandatory Standards and certifications

ISO/IEC 27001 certification
Yes
Who accredited the ISO/IEC 27001
British Assessment Bureau
ISO/IEC 27001 accreditation date
Tuesday 8 April 2025
What the ISO/IEC 27001 doesn’t cover
N/A
ISO 28000:2022 certification
No
ISO 9001 certification
Yes
Who accredited the ISO 9001 certification
British Assessment Bureau
ISO 9001 accreditation date
Tuesday 8 April 2025
What the ISO 9001 doesn’t cover
N/A
Quality management systems (QMS)
Yes
CSA STAR certification
No
PCI certification
No
Cyber essentials
Yes
Please provide your Cyber Essentials Certificate Number
6783847e-0fd9-428d-9433-faca1db0c981
Cyber essentials plus
Yes
Please provide your Cyber Essentials Plus Certificate Number
Aced533a-802a-4dca-892c-6d66232696e1
Other security certifications
Yes
Any other security certifications
  • CREST
  • CHECK
  • Cyber Incident Exercising

Social value

Section B - Commitment for Future: Delivery
  • Mission: Kick start economic growth. To secure the highest sustained growth in the G7 - with good jobs and productivity growth in every part of the country making everyone, not just a few, better off.

    Policy Outcome 1: Fair work: That offers fair wages and good working conditions. Help people get a job, stay in work, and progress in their careers, with good employment opportunities across the country. Notes: Where there is a large proportion of labour costs in the contract, commercial teams should consider MAC in Outcome 1 as a priority

    • Payment of more than the National Minimum Wage or National Living Wage (as appropriate) to the contract workforce

Service documents

Request an accessible format
If you use assistive technology (such as a screen reader) and need versions of these documents in a more accessible format, email the supplier at bidteam@pgitl.com. Tell them what format you need. It will help if you say what assistive technology you use.