Pricing

Transparent packages for each of our three service pillars.

Software Development Pricing

Pricing for this service is scoped per engagement.

Get a Custom Quote

Penetration Testing Pricing

Startup

Idea Assessment

£95 starting from

Best for early-stage startups and founders who want to understand their security posture before launch.

  • High-level security review
  • Architecture risk assessment
  • Top vulnerability identification
  • Technology stack review
  • Security quick wins report
  • Prioritised action plan
  • 15-minute debrief call

Turnaround: 1-2 business days

Get Started

Starter

Vulnerability Assessment

£395 starting from

Best for businesses that need a security baseline or are starting their security journey.

  • Automated vulnerability scanning
  • Manual verification of findings
  • Up to 1 web app or 20 external IPs
  • OWASP Top 10 coverage check
  • Prioritised findings report
  • Remediation guidance
  • Executive summary
  • 30-minute debrief call

Turnaround: 3-5 business days

Get Started

Advanced

Adversary Simulation

£1,995 starting from

Best for businesses that need deep, realistic attack simulation across multiple systems.

  • Everything in Professional, plus:
  • Multi-target testing
  • Advanced attack techniques
  • Cloud security review (AWS/Azure)
  • Unlimited targets within scope
  • Attack narrative report
  • Strategic security roadmap
  • Priority remediation support
  • 2 retests included

Turnaround: 10-20 business days

Book a Scoping Call

Project Management Pricing

Pricing for this service is scoped per engagement.

Get a Custom Quote

Frequently Asked Questions

Pricing depends on scope - number of applications, endpoints, user roles, and complexity. The prices above are starting points. After a scoping call, you get a fixed quote with no surprises.

No. We test carefully and avoid any actions that could cause downtime or data loss. For production systems, we agree on testing windows and rules of engagement before we start.

We notify you immediately - we don't wait for the final report. You'll know about critical issues as soon as we confirm them.

Yes. Unlike most security firms, we write code. We can implement fixes directly or work alongside your development team.

Yes. Our reports are structured to support compliance initiatives such as ISO 27001, Cyber Essentials Plus, SOC 2, and PCI DSS, with clear evidence of vulnerabilities, risk impact, and remediation steps.

Either. We recommend testing in an environment that mirrors production as closely as possible. If testing production, we take extra precautions.