The Secops Group
The SecOps Group is a Cambridge-headquartered cybersecurity firm providing CREST-accredited, human-led and AI-augmented penetration testing services across web, network, mobile, cloud, and AI/ML systems, alongside the Pentesting Exams certification platform for enterprise clients and security recruiters.
- Company typePrivate
- Founded2021
- HeadquartersCambridge, United Kingdom
- Headcount11–50
- GTM typeB2B
- OfferingServices
What The Secops Group does
The SecOps Group is a privately held cybersecurity company headquartered in Cambridge, United Kingdom, with operating subsidiaries in Delaware, USA (The SecOps Inc.) and Gujarat, India (Security Ops India Pvt. Ltd.). Founded in 2021, the company operates two business units: a CREST-accredited security consultancy providing penetration testing services, and an education unit running the Pentesting Exams (pentestingexams.com) certification platform and the Vulnmachines practice-lab sub-brand. The consultancy delivers human-led, AI-augmented penetration testing across web applications, internal and external networks, mobile applications, source code, cloud environments (AWS, Azure), red team engagements, and AI/ML systems, integrating RedHunt Labs technology for external asset discovery.
The company's underlying methodology combines certified offensive-security consultants (OSCP, OSWE, AWS Solutions Architect, CREST) with AI-assisted vulnerability analysis and reporting. Service delivery is anchored in industry standards such as OWASP and supported by ISO 9001:2015 and ISO 27001 certifications. Customer evidence includes named enterprise engagements (MeridianLink, nVoq, Proplend) and brand-recognition logos (Meta, Google, Apple, Mastercard, Walmart, Sony, Red Bull, Dell), alongside a self-reported base of 10,000+ security assessments and a 98% client satisfaction rate.
The business model is dual-track. The consultancy generates revenue through project-based enterprise pentesting engagements sold via direct sales with custom-quoted pricing, typically structured as multi-year contracts. The education unit generates recurring subscription and pay-as-you-go revenue through the online, on-demand Pentesting Exams platform targeted at security recruiters, hiring managers, and practitioners. Go-to-market combines a sales-led enterprise motion with event-driven demand generation via participation at Defcon and BlackHat and ongoing technical content publishing for thought leadership. The company is founder-led (Sumit Siddharth, Founder & Director) with no disclosed external funding.
The Secops Group firmographics
Firmographics- Name
- The Secops Group
- Legal name
- The SecOps Group UK Limited
- Website
- https://secops.group
- Company type
- Private
- Founded year
- 2021
- Operating status
- Operating
- Headcount range
- 11–50 employees
- Short description
- The SecOps Group is a Cambridge-headquartered cybersecurity firm providing CREST-accredited, human-led and AI-augmented penetration testing services across web, network, mobile, cloud, and AI/ML systems, alongside the Pentesting Exams certification platform for enterprise clients and security recruiters.
- Ownership category
- akta.pro rank
The Secops Group industry classification
Industry- Product category
- Penetration Testing Services
- NAICS
- Computer Systems Design and Related Services (54151), Educational Support Services (611710)
- akta.pro primary industry
- Vulnerability Management & Penetration Testing Services (BPAEADAD)
- akta.pro secondary industries
- Cybersecurity (General) (EDAOAIAB), Application Security & Secure Software (DevSecOps) (EDAOAIAK)
Keywords
Where The Secops Group is headquartered
LocationHeadquarters
- HQ city
- Cambridge
- HQ country
- United Kingdom
- HQ region
- Europe
Offices3 records
Markets served
The Secops Group business model
Business model- GTM type
- B2B
- Offering type
- Services
- Cost components
- Personnel, Operations, Technology or R&D, Marketing or Sales, Infrastructure
Revenue model
- Security Consultancy Services: CREST-accredited pentesting and security advisory services for organizations. Services include web application, internal/external network, mobile application, cloud security, red team, and AI/ML pentesting. Revenue generated through project-based engagements with enterprise clients.
- Pentesting Certification Exams: Online, on-demand certification platform for assessing and recruiting pentesters. Real-world scenario-based exams that are modern, relevant, and represent real business risks. Operates through pentestingexams.com platform.
Pricing tiers
| Model | Billing | Price |
|---|---|---|
| Other | Multi-year contract | Enterprise Pentesting Services - Custom Quote |
| Subscription | Pay-as-you-go | Certification Exams - Online On-Demand |
Go-to-market motion2 records
Distribution channels2 records
Marketing channels5 records
The Secops Group product offering
Product offeringCore offering
The Secops Group is a CREST-accredited cybersecurity consultancy that delivers human-led, AI-augmented penetration testing services across web applications, internal and external networks, mobile applications, source code, cloud environments, red team engagements, and AI/ML systems. Alongside its consultancy unit, the firm operates an online, on-demand certification platform (Pentesting Exams) that provides real-world scenario-based assessments for evaluating and recruiting pentesters.
Product overview
The Secops Group operates two core business units: cybersecurity consultancy and education. The consultancy unit provides CREST-accredited penetration testing services across multiple domains including web applications, internal/external networks, mobile applications, source code, cloud environments, red team engagements, and AI/ML systems. The education unit operates the Pentesting Exams platform (pentestingexams.com), offering online certification assessments based on real-world scenarios for pentester recruitment and evaluation. The company takes a 'Human-led, AI-Augmented' approach to all penetration testing services.
Differentiator
Problem solved
Functional benefit
Brands
- Pentesting Exams: Online certification and assessment platform for pentesters based on real-world scenarios
- Vulnmachines
Products and services
- Web Application Pentest Penetration testing service for web applications performed beyond industry standards such as OWASP, identifying vulnerabilities in web-based systems for enterprise clients.
- Internal Network Pentest Internal network penetration testing service to discover exploitable vulnerabilities within an organization's internal network infrastructure.
- External Network Pentest External network penetration testing service that uses RedHunt Labs technology to identify publicly exposed digital assets and external-facing vulnerabilities.
- Mobile Application Pentest Deep-dive penetration testing assessment for mobile applications to identify weaknesses and ensure security across iOS and Android platforms.
- Source-Code Analysis Source-code level security analysis using static code analysis techniques to identify vulnerabilities at the code level before deployment.
- Cloud Security Assessment Comprehensive cloud security assessment service covering AWS, Azure, and other cloud environments to identify misconfigurations and security gaps.
- Red Team Assessment Full-scope black-box testing engagement simulating real-world attack scenarios to evaluate an organization's overall security posture.
- AI/ML Pentest Specialized security assessment for AI/ML-integrated applications, identifying weaknesses in AI/ML systems and safeguarding them from adversarial attacks including prompt injection.
- Pentesting Exams Online, on-demand certification platform providing real-world scenario-based assessments for evaluating and recruiting pentesters, delivered via pentestingexams.com.
Quantifiable outcome
- 10,000+ security assessments completed with 98% client satisfaction
Companies that use The Secops Group
Customer profileNamed customers12 records
Segments3 records
Ideal customer profiles2 records
The Secops Group technology and API
TechnologyTechnology focussed Yes
API detail
- Has API
- No
- API docs
- API detail
Core technology
AI maturity
App detail
AI capability3 records
Feature3 records
The Secops Group partnerships and signals
Strategic signalPartnerships
One partnership is on record.
- RedHunt LabscoreRedHunt Labs provides innovative technologies used by The SecOps Group to identify an organization's publicly exposed digital assets during external network penetration testing engagements.
Scale indicators4 records
Recent moves5 records
Expansion highlights5 records
The Secops Group competitors and assessment
Company assessmentEmerging players
- Pentera: Automated security validation vendor that simulates adversary techniques continuously, increasingly substituting for portions of traditional point-in-time pentesting. Important emerging alternative to time-and-materials pentest engagements.
- HackerOne: Bug bounty and vulnerability disclosure platform that offers an alternative crowdsourced model to traditional pentesting engagements. Competes for the same 'find vulnerabilities before attackers do' enterprise wallet share.
- PortSwigger: Creator of Burp Suite, the dominant web application security testing platform, and operator of the Web Security Academy. Adjacent to SecOps' web application pentest service line and to its practice/learning platform with Vulnmachines.
Direct peers
- OffSec: Provider of OSCP and OSWE certifications and related training labs (the same credentials SecOps consultants hold). It is the closest analog on the educational/certification side of SecOps' Pentesting Exams business.
- Bishop Fox: US-based boutique offensive-security consultancy specializing in application, network, and product penetration testing with a research-driven brand similar to SecOps. It is one of the canonical direct peers in the high-end pentesting segment.
- NCC Group: UK-headquartered CREST-accredited cybersecurity consultancy offering web, network, mobile, and cloud penetration testing, with a global delivery footprint and a comparable enterprise customer set. Closest like-for-like competitor to The SecOps Group's CREST-accredited pentesting practice.
- Cobalt: Pentesting-as-a-service platform that connects customers with vetted testers for web, mobile, API, and cloud engagements. Represents the tech-enabled, self-serve variant of the same enterprise pentest offering SecOps provides via traditional consultancy.
- SEC Consult: European-headquartered cybersecurity consultancy with strong web application, mobile, and IoT/embedded penetration testing practices and multiple international offices. Operates an enterprise pentesting model directly comparable in scope and geography to SecOps.
Broad incumbents
- Trustwave: Global MSSP offering managed security services alongside penetration testing, vulnerability management, and incident response. Represents the larger incumbent that enterprise buyers frequently compare against boutique firms like SecOps.
- Rapid7: Public cybersecurity platform company offering vulnerability management, application security testing, and managed services. A broad incumbent competing for the same enterprise security-assessment budget as SecOps.
Market position
Strengths5 records
Weaknesses5 records
Competitive moat4 records
Key risks6 records
Key highlights7 records
Customer concentration
The Secops Group social profiles
Digital presenceThe Secops Group compliance and trust
Trust signalCompliance3 records
The Secops Group financial estimates
Financial estimateRevenue estimate
Valuation estimate
The Secops Group leadership team
Management profileNumber of profiles
Profiles9 records
The Secops Group subsidiaries and ownership
Company hierarchySubsidiaries2 records
The Secops Group funding detail
Funding detailFunding overview
Funding rounds
Investors
Funding detail is available on the Subscription and Enterprise plan.Contact sales →
The Secops Group M&A and investment
M&A and investmentM&A
Investments
M&A and investment is available on the Subscription and Enterprise plan.Contact sales →
Frequently asked questions about The Secops Group
What does The Secops Group do?
The Secops Group is a CREST-accredited cybersecurity consultancy that delivers human-led, AI-augmented penetration testing services across web applications, internal and external networks, mobile applications, source code, cloud environments, red team engagements, and AI/ML systems. Alongside its consultancy unit, the firm operates an online, on-demand certification platform (Pentesting Exams) that provides real-world scenario-based assessments for evaluating and recruiting pentesters.
Is The Secops Group a public or private company?
The Secops Group is a private company. It is classified as founder individual operated bootstrapped and is currently operating.
When was The Secops Group founded?
The Secops Group was founded in 2021. It employs 11 to 50 people.
Where is The Secops Group based?
The Secops Group is headquartered in Cambridge, United Kingdom, in the Europe region.
How does The Secops Group make money?
Two revenue lines are on record. Security Consultancy Services are the primary driver. The others are pentesting Certification Exams.
Who are The Secops Group's main competitors?
Emerging players on record are Pentera, HackerOne and PortSwigger. Direct peers are OffSec, Bishop Fox, NCC Group, Cobalt and SEC Consult. Broad incumbents are Trustwave and Rapid7.
Does The Secops Group have an API?
No public API is recorded for The Secops Group.
What industry is The Secops Group in?
The Secops Group's product category is Penetration Testing Services. Its primary akta.pro industry code is BPAEADAD, Vulnerability Management & Penetration Testing Services, with a secondary code of EDAOAIAB, Cybersecurity (General). Its NAICS code is 54151.