CyberX - The Ethical Hacking Services
CyberX is a Portugal-based offensive cybersecurity firm (founded 2011, 1–10 employees) delivering penetration testing, red teaming, phishing, compliance, and forensics services to enterprises, startups, and government clients, with an AI threat intelligence product, The O, and a CompTIA/EXIN training academy.
- Company typePrivate
- Founded2011
- HeadquartersPorto, Portugal
- Headcount11–50
- GTM typeB2B
- OfferingServices
What CyberX - The Ethical Hacking Services does
CyberX, LDA is a privately held Portuguese cybersecurity firm founded in 2011 and headquartered in Matosinhos, Porto, with a regional office in Dubai Silicon Oasis, UAE. The company delivers a broad portfolio of offensive security services — penetration testing across web, API, WiFi, server, IoT, and mobile (Android/iOS), vulnerability assessments, red teaming, phishing simulations, SAST/DAST code analysis, compliance assessments (ISO/IEC 27001, DORA, NIS2, RJSC), and digital forensics / incident response — to a client base spanning financial services, utilities, publishing, automotive, technology, and government sectors. Its core technology stack is human-delivered offensive security, supported by proprietary methodologies and one AI product, The O, an MVP threat intelligence platform that uses natural language processing and pattern detection over social media, deep web, and open sources to score attack probability for government and intelligence clients.
The business model is predominantly project-based professional services, augmented by tiered monthly subscription packages (Cyber Essentials, Cyber Ready, Cyber Pro) for startups and by training revenue from CyberX Academy, which delivers EXIN-accredited ISO 27001 courses and a 10-day CompTIA Security+ bootcamp (€1,497–€1,897) with blockchain-verified certificates via partner Blue.Auth. Distribution combines direct enterprise sales, a partner referral program with commissions, and event-led demand generation across Web Summit (Lisbon/Rio/Qatar), BSides Porto, and other conferences. The firm operates with 1–10 employees, holds an EUIPO-registered trademark, and is recognized among the top 5% of SMEs in Portugal and as an INNCyber Top 3 startup in 2025; no external funding rounds, acquisitions, or revenue figures have been disclosed.
CyberX - The Ethical Hacking Services firmographics
Firmographics- Name
- CyberX - The Ethical Hacking Services
- Legal name
- CyberX, LDA
- Website
- https://cyberx.pt
- Company type
- Private
- Founded year
- 2011
- Operating status
- Operating
- Headcount range
- 11–50 employees
- Short description
- CyberX is a Portugal-based offensive cybersecurity firm (founded 2011, 1–10 employees) delivering penetration testing, red teaming, phishing, compliance, and forensics services to enterprises, startups, and government clients, with an AI threat intelligence product, The O, and a CompTIA/EXIN training academy.
- Ownership category
- akta.pro rank
CyberX - The Ethical Hacking Services industry classification
Industry- Product category
- Cybersecurity Services
- NAICS
- Other Computer Related Services (541519), Computer Training (61142)
- SIC
- Services-Computer Programming, Data Processing, Etc. (7370)
- akta.pro primary industry
- Fraud, Cybercrime Investigations & Brand/Dark Web Monitoring (BPAKAHAO)
- akta.pro secondary industries
- Cybersecurity Training & Awareness Programs (BPAEANAF), Penetration Testing, Red Team & Ethical Hacking (EDAOAIAH), Cyber Defense & Information Security (National Security) (BPAIAHAE)
Keywords
Where CyberX - The Ethical Hacking Services is headquartered
LocationHeadquarters
- HQ city
- Porto
- HQ country
- Portugal
- HQ region
- Europe
Offices2 records
Markets served
CyberX - The Ethical Hacking Services business model
Business model- GTM type
- B2B
- Offering type
- Services
- Cost components
- Personnel, Technology or R&D, Marketing or Sales, Operations, Others
Revenue model
- Penetration Testing Services: Professional ethical hacking and penetration testing services including web & API penetration testing, WiFi security assessment, server security, IoT device testing, and Android & iOS mobile app testing. Delivered by certified ethical hackers with comprehensive reporting and remediation guidance.
- Security Assessments: Vulnerability assessments, red teaming operations, phishing campaigns, code analysis (SAST/DAST), and compliance assessments for ISO/IEC 27001, DORA, RJSC, and NIS2.
- Training Services: Cybersecurity training programs including CompTIA Security+ bootcamps (10-day live courses), security workshops, CTF events, and ISO 27001 certification training (Foundation, Lead Implementer, Lead Auditor). Revenue from course fees and exam voucher sales.
- Startup Security Packages: Tiered security packages for startups: Cyber Essentials (basic), Cyber Ready (intermediate), and Cyber Pro (advanced). Provides affordable, tailored security solutions for growing businesses.
- Forensics & Incident Response: Digital forensics services including database forensics, file system forensics, email forensics, data breach response, reverse steganography, DFIR, PDF forensics, financial fraud investigations, source code plagiarism detection, and data recovery.
- Partner Commissions: Earnings from partner referrals and signed contracts through CyberX's partnership program, where partners earn competitive commissions for recommending cybersecurity services.
Pricing tiers
| Model | Billing | Price |
|---|---|---|
| One time/ perpetual license | Monthly | CompTIA Security+ Course Only - 10-day live training |
| One time/ perpetual license | Monthly | CompTIA Security+ Course + Exam Voucher - Complete package |
| Subscription | Monthly | Cyber Essentials - Basic startup security package |
| Subscription | Monthly | Cyber Ready - Intermediate startup security package |
| Subscription | Monthly | Cyber Pro - Advanced startup security package |
| One time/ perpetual license | Multi-year contract | EXIN ISO 27001 Foundation Certification |
Go-to-market motion2 records
Distribution channels5 records
Marketing channels7 records
CyberX - The Ethical Hacking Services product offering
Product offeringCore offering
CyberX is an offensive cybersecurity services firm that delivers ethical hacking engagements including web, API, WiFi, server, IoT, and mobile application penetration testing, vulnerability assessments, red team operations, phishing simulations, SAST/DAST code analysis, ISO 27001/DORA/NIS2/RJSC compliance assessments, and digital forensics and incident response. It complements professional services with tiered subscription security packages for startups, a self-serve training academy (CompTIA Security+ bootcamps, ISO 27001 certification, workshops, CTFs), and The O, an AI-powered threat intelligence platform sold to governments and intelligence agencies.
Product overview
CyberX is a Portugal-based cybersecurity company offering ethical hacking and security testing services. The portfolio consists of penetration testing services (web, API, WiFi, server, IoT, mobile), vulnerability assessments, red team operations, phishing campaigns, code analysis (SAST/DAST), compliance assessments (ISO 27001, DORA, NIS2, RJSC), and forensics analysis. For startups, CyberX offers tiered packages (Cyber Essentials, Cyber Ready, Cyber Pro). The AI-powered product The O provides threat intelligence for governments and intelligence agencies. The training division offers CompTIA Security+ bootcamps, security workshops, CTF events, and ISO 27001 certification courses. The company operates as a services consultancy with no unified software platform.
Differentiator
Problem solved
Functional benefit
Brands
- The O: AI-powered threat intelligence platform for preventing terrorism and high-risk events. Developed to help governments and intelligence agencies prevent terrorism and physical threats using advanced AI technology.
Products and services
- Penetration Testing Services Comprehensive ethical hacking engagements covering web applications, APIs, WiFi networks, servers, IoT devices, and Android/iOS mobile applications, identifying and remediating security vulnerabilities for organizations of all sizes.
- Vulnerability Assessment Network and application vulnerability scanning with false-positive verification, risk prioritization, and detailed remediation guidance for security teams.
- Red Team Operations Adversary emulation operations that simulate advanced attacks across digital, physical, and human attack surfaces using advanced TTPs to test detection and response capabilities.
- Phishing Campaigns Custom-crafted phishing simulations across email, SMS (smishing), and voice (vishing) channels with response tracking, user-level engagement metrics, and integrated awareness training.
- Code Analysis (SAST/DAST) Static and dynamic code analysis that combines automated tools with manual expert review to identify security vulnerabilities in source code before deployment.
- Compliance Assessment Assessment and certification support for ISO/IEC 27001, DORA, RJSC, and NIS2 compliance, delivered by a certified compliance team.
- Cybersecurity for Startups Tiered subscription security packages (Cyber Essentials, Cyber Ready, Cyber Pro) designed for growing startups, providing affordable vulnerability scanning, phishing tests, domain monitoring, and capped penetration testing.
- Forensics Analysis Digital forensics and incident response covering database, file system, email, PDF forensics, reverse steganography, DFIR, financial fraud investigations, source code plagiarism detection, and data recovery.
- The O - AI-Powered Threat Intelligence Platform AI-powered threat intelligence platform that analyzes social media, deep web, and open sources to calculate probability of terrorist attacks or high-risk events such as protests, providing early warnings and actionable insights to authorities.
- CompTIA Security+ Bootcamp 10-day live CompTIA Security+ (SY0-701) bootcamp with official CompTIA labs, 80/20 hands-on ratio, blockchain-verified certificate, and career masterclass, sold with optional official exam voucher package.
- EXIN ISO 27001 Foundation Training EXIN-certified live online training for ISO 27001 information security management systems (Foundation, Lead Implementer, Lead Auditor), delivered as a 2-week course with official exam voucher included.
- Security Workshops Hands-on, immersive workshops covering cybersecurity best practices, secure development, web application security, and NIS2, DORA, and GDPR compliance topics.
- Capture The Flag (CTF) Events Cybersecurity competitions and events where participants solve security challenges to find hidden flags, available as scheduled events or custom CTFs for organizations.
- Free Infrastructure Security Scan Free, public, non-intrusive scan that provides a quick snapshot of a website's public technology stack, known CVEs, and exposure data, serving as a cybersecurity check-up with no active exploitation.
Quantifiable outcome
- 78% security posture improvement for global financial institution client
- +4 more outcomes
Companies that use CyberX - The Ethical Hacking Services
Customer profileNamed customers19 records
Segments6 records
Ideal customer profiles4 records
CyberX - The Ethical Hacking Services technology and API
TechnologyTechnology focussed Yes
API detail
- Has API
- No
- API docs
- API detail
Core technology
AI maturity
App detail
AI capability6 records
Feature4 records
CyberX - The Ethical Hacking Services partnerships and signals
Strategic signalPartnerships
Four partnerships are on record, tiered minor and core.
- Hack3r RangersminorPartnership with Hack3r Rangers for co-marketing activities and cybersecurity awareness initiatives. Collaboration includes event participation such as Web Summit 2024.
- EXINcoreOfficial EXIN partnership for delivering ISO 27001 Foundation, Lead Implementer, and Lead Auditor certification training. CyberX Academy is authorized to deliver EXIN certification exams and provide official exam vouchers.
- CompTIAcoreAuthorized training partner for CompTIA Security+ certification. Provides official CompTIA labs, study guides, and exam vouchers for the 10-day live bootcamp program.
- CyberTech AccelerationminorPartnership for cybersecurity acceleration programs and initiatives, appearing on CyberX's partner showcase.
Scale indicators8 records
Recent moves6 records
Expansion highlights6 records
CyberX - The Ethical Hacking Services competitors and assessment
Company assessmentBroad incumbents
- Trustwave: Trustwave is a global MSSP and cybersecurity services provider offering penetration testing, managed detection, and compliance. A broader incumbent with overlapping offensive security services to CyberX.
- NCC Group: NCC Group is a large UK-based cybersecurity services firm offering source code review, penetration testing, and compliance consulting. Overlaps CyberX's pentest and compliance assessment portfolio but at much greater scale and breadth.
- WithSecure: WithSecure (formerly F-Secure corporate) delivers consulting-led cybersecurity services alongside products such as Elements and Exposure Management. Comparable to CyberX's services portfolio but with significantly broader capabilities and geographic reach.
Direct peers
- HackerOne: HackerOne runs a bug bounty and vulnerability disclosure platform powered by a global community of ethical hackers. Directly comparable to CyberX's ethical hacker services and phishing/crowdsourced testing angle.
- Bishop Fox: Bishop Fox is a US offensive-security services firm focused on penetration testing, red teaming, and adversary simulation for Fortune 500 companies. Closely aligned with CyberX's methodology-driven pentest portfolio and enterprise customer focus.
- Bugcrowd: Bugcrowd provides crowdsourced security testing including bug bounties, pentests, and attack surface management. Comparable to CyberX's offensive security services with a platform-based delivery model.
- IOActive: IOActive is a US-based offensive security consultancy specializing in penetration testing, vulnerability research, and red team operations for enterprise clients. Directly comparable to CyberX's core pentesting and red team service offering.
- Cobalt: Cobalt operates a pentest-as-a-service platform connecting organizations with vetted security testers for on-demand application and infrastructure testing. Comparable to CyberX's pentest services but delivered via a tech-enabled marketplace model.
Emerging players
- Pentera: Pentera provides automated security validation and continuous penetration testing as a productized platform. Adjacent to CyberX's pentest services, focused on enterprise buyers seeking scalable, automated offensive testing.
Regional players
- Sekurno: Sekurno is a Poland-based offensive security firm offering penetration testing, red teaming, and security audits. Comparable to CyberX in service mix but operating in Central/Eastern Europe rather than Iberia/Middle East.
Market position
Strengths5 records
Weaknesses5 records
Competitive moat6 records
Key risks6 records
Key highlights8 records
Customer concentration
CyberX - The Ethical Hacking Services social profiles
Digital presenceCyberX - The Ethical Hacking Services compliance and trust
Trust signalCompliance29 records
CyberX - The Ethical Hacking Services financial estimates
Financial estimateRevenue estimate
Valuation estimate
CyberX - The Ethical Hacking Services leadership team
Management profileNumber of profiles
CyberX - The Ethical Hacking Services funding detail
Funding detailFunding overview
Funding rounds1 record
Investors
Funding detail is available on the Subscription and Enterprise plan.Contact sales →
CyberX - The Ethical Hacking Services M&A and investment
M&A and investmentM&A
Investments
M&A and investment is available on the Subscription and Enterprise plan.Contact sales →
Frequently asked questions about CyberX - The Ethical Hacking Services
What does CyberX - The Ethical Hacking Services do?
CyberX is an offensive cybersecurity services firm that delivers ethical hacking engagements including web, API, WiFi, server, IoT, and mobile application penetration testing, vulnerability assessments, red team operations, phishing simulations, SAST/DAST code analysis, ISO 27001/DORA/NIS2/RJSC compliance assessments, and digital forensics and incident response. It complements professional services with tiered subscription security packages for startups, a self-serve training academy (CompTIA Security+ bootcamps, ISO 27001 certification, workshops, CTFs), and The O, an AI-powered threat intelligence platform sold to governments and intelligence agencies.
Is CyberX - The Ethical Hacking Services a public or private company?
CyberX - The Ethical Hacking Services is a private company. It is classified as founder individual operated bootstrapped and is currently operating.
When was CyberX - The Ethical Hacking Services founded?
CyberX - The Ethical Hacking Services was founded in 2011. It employs 11 to 50 people.
Where is CyberX - The Ethical Hacking Services based?
CyberX - The Ethical Hacking Services is headquartered in Porto, Portugal, in the Europe region.
How does CyberX - The Ethical Hacking Services make money?
Six revenue lines are on record. Penetration Testing Services are the primary driver. The others are security Assessments, training Services, startup Security Packages, forensics & Incident Response and partner Commissions.
Who are CyberX - The Ethical Hacking Services's main competitors?
Broad incumbents on record are Trustwave, NCC Group and WithSecure. Direct peers are HackerOne, Bishop Fox, Bugcrowd, IOActive and Cobalt. Pentera is listed as an emerging player. Sekurno is listed as a regional player.
Does CyberX - The Ethical Hacking Services have an API?
No public API is recorded for CyberX - The Ethical Hacking Services.
What industry is CyberX - The Ethical Hacking Services in?
CyberX - The Ethical Hacking Services's product category is Cybersecurity Services. Its primary akta.pro industry code is BPAKAHAO, Fraud, Cybercrime Investigations & Brand/Dark Web Monitoring, with a secondary code of BPAEANAF, Cybersecurity Training & Awareness Programs. Its NAICS code is 541519 and its SIC code is 7370.