CyberPulse
CyberPulse is an Australian cybersecurity consultancy in Sydney that delivers MDR, penetration testing, managed compliance, and GRC advisory to mid-market and enterprise clients across financial services, legal, SaaS, utilities, government, and healthcare, leveraging Rapid7 and Horizon3.ai platforms with local regulatory expertise in APRA CPS 234, Essential Eight, and IRAP.
- Company typePrivate
- Founded2020
- HeadquartersSydney, Australia
- Headcount11–50
- GTM typeB2B
- OfferingServices
What CyberPulse does
CyberPulse is an Australian cybersecurity consultancy headquartered in Sydney that provides integrated security and compliance services to mid-market and enterprise organisations across regulated industries. The company delivers four core service lines: Managed Detection and Response (MDR) operating a 24x7 SOC built on the Rapid7 Insight Platform (InsightIDR, InsightVM, Threat Command) with an Australian advisory overlay; Penetration Testing as a Service (PTaaS) combining autonomous Horizon3.ai NodeZero testing with human-led expert testing; Managed Compliance Services with API integrations across 350+ platforms and audit-ready evidence for ISO 27001, SOC 2, PCI-DSS, APRA CPS 234, IRAP, Essential 8, NIST, and HIPAA; and GRC advisory including virtual CISO, incident response, third-party risk management, and Microsoft security services. Recent additions include ISO 42001 AI governance audits and Agentic SOC Agents for autonomous security operations.
The business model combines project-based professional services (compliance certifications, pen tests, security assessments at fixed prices ranging from $3K to $80K+) with subscription-based managed services (MDR at $15-$35 per user per month across three tiers, vCISO at $5K-$15K per month, PTaaS annual programmes). Technology licensing and resale of Rapid7 and Microsoft security products provides an additional revenue stream. CyberPulse serves financial services, legal (including five of Australia's ten largest law firms), SaaS and technology providers, energy and utilities, government, healthcare, and startups pursuing first certifications. Named enterprise customers include MinterEllison, Veolia, Sydney Roosters/Easts Group, Oroton, and Utopia Digital. Go-to-market is exclusively direct, consultant-led enterprise sales with senior practitioners conducting every engagement, supported by content marketing, LinkedIn presence, and HubSpot-driven strategy call conversion.
Ownership is concentrated with founders Dinesh Aggarwal (Founder and CISO, 23+ years) and Paul Friend (Director Cyber Advisory, 30 years). The company is privately held with no disclosed institutional investors, has been recognised in Tech Partner News Fast 50 in 2023 and 2025, and operates entirely within Australia with no disclosed plans for international expansion.
CyberPulse firmographics
Firmographics- Name
- CyberPulse
- Legal name
- CyberPulse
- Website
- https://cyberpulse.com.au
- Company type
- Private
- Founded year
- 2020
- Operating status
- Operating
- Headcount range
- 11–50 employees
- Short description
- CyberPulse is an Australian cybersecurity consultancy in Sydney that delivers MDR, penetration testing, managed compliance, and GRC advisory to mid-market and enterprise clients across financial services, legal, SaaS, utilities, government, and healthcare, leveraging Rapid7 and Horizon3.ai platforms with local regulatory expertise in APRA CPS 234, Essential Eight, and IRAP.
- Ownership category
- akta.pro rank
CyberPulse industry classification
Industry- Product category
- Managed Cybersecurity and Compliance Services
- NAICS
- Other Computer Related Services (541519), Computer Systems Design and Related Services (54151)
- SIC
- Services-Computer Integrated Systems Design (7373)
- akta.pro primary industry
- Vulnerability Management & Penetration Testing Services (BPAEADAD)
- akta.pro secondary industries
- Endpoint Security Managed Services (EDR/XDR) (BPAEADAH), Vulnerability Assessment, Security Audits & Compliance Testing (BPAKAHAG), Security Awareness, Training & Compliance Attestation (HDADAIAJ)
Keywords
Where CyberPulse is headquartered
LocationHeadquarters
- HQ city
- Sydney
- HQ country
- Australia
- HQ region
- Oceania
Offices1 record
Markets served
CyberPulse business model
Business model- GTM type
- B2B
- Offering type
- Services
- Cost components
- Personnel, Technology or R&D, Operations, Marketing or Sales, Others
Revenue model
- Professional Services (GRC & Advisory): Cybersecurity consulting including GRC and advisory services, penetration testing, incident response, virtual CISO, security assessments, and vendor risk management. Delivered as fixed-price or scoped engagements with clear deliverables and timelines.
- Managed Security Services: Ongoing managed services including MDR (Managed Detection and Response), managed compliance, managed penetration testing, managed EDR, managed email security, IT/OT threat hunting, and breach and attack simulation. Delivered as subscription-based monthly per-user pricing.
- Penetration Testing as a Service (PTaaS): Fixed-price annual programme combining autonomous testing for infrastructure with expert human testing for applications. Replaces unpredictable ad-hoc testing costs with predictable annual investment covering continuous validation, expert analysis, and retesting.
- Technology Licensing and Resale: As an authorised Rapid7 partner and PACT Partner Program member, CyberPulse offers competitive licensing for Rapid7 products (InsightIDR, InsightVM, Threat Command) alongside implementation and managed services. Also offers Microsoft security licensing and deployment.
Pricing tiers
| Model | Billing | Price |
|---|---|---|
| Per seat | Monthly | MDR for Workspace - EDR & Email Monitoring |
| Per seat | Monthly | MDR Complete - SOC for 350+ Users |
| Per seat | Monthly | MDR 360 - Full-stack XDR |
Go-to-market motion1 record
Distribution channels3 records
Marketing channels7 records
CyberPulse product offering
Product offeringCore offering
CyberPulse is an Australian cybersecurity consultancy delivering integrated security and compliance programmes. Core offerings include co-managed Managed Detection and Response (MDR) built on the Rapid7 Insight Platform with a local advisory layer, Penetration Testing as a Service (PTaaS) combining autonomous Horizon3.ai NodeZero testing with human-led expert testing, and Managed Compliance Services automating evidence collection across ISO 27001, SOC 2, PCI-DSS, APRA CPS 234, IRAP, and Essential Eight frameworks.
Product overview
CyberPulse is an Australian cybersecurity consultancy offering an integrated portfolio of security and compliance services. The core offerings consist of managed detection and response (MDR) powered by global MDR platform technology with Australian advisory overlay, penetration testing as a service (PTaaS) combining autonomous Horizon3 NodeZero testing with human-led expert testing, and managed compliance services with API integrations across 350+ platforms. Supporting these core services are GRC advisory, virtual CISO, incident response, third-party risk management, advanced security assessments, and Microsoft security services. The company delivers both implementation and audit services under one roof, supporting compliance frameworks including ISO 27001, ISO 42001 (AI governance), SOC 2, ASD Essential Eight, APRA CPS 234, IRAP, and PCI-DSS. Recent additions include Agentic SOC Agents for autonomous security operations. The service model combines 24x7 SOC operations with strategic advisory and roadmap alignment, delivered by former CISOs and security practitioners.
Differentiator
Problem solved
Functional benefit
Products and services
- Managed Detection and Response (MDR) 24x7 SOC monitoring service combining global MDR platform technology with Australian cybersecurity advisory. Includes EDR monitoring, threat hunting, incident response, and vulnerability management delivered as a co-managed service for Australian organisations requiring always-on security operations.
- Penetration Testing as a Service (PTaaS) Continuous penetration testing programme combining autonomous testing (Horizon3 NodeZero) for infrastructure with expert human-led testing for web applications, APIs, and red team engagements at a fixed annual investment. Replaces unpredictable ad-hoc testing costs with predictable annual investment covering continuous validation, expert analysis, and retesting.
- Managed Compliance Services Automated compliance management service spanning ISO 27001, SOC 2, PCI-DSS, CPS 234, HIPAA, IRAP, Essential 8, and NIST. Includes API integrations across 350+ platforms, evidence repository, live dashboards, and audit support to maintain continuous audit-ready posture.
- GRC & Advisory Services Governance, risk and compliance advisory including gap analysis, audit readiness, external audit coordination, GRC platform deployment, trust portals, compliance automation, and security policy development for organisations pursuing ISO 27001, SOC 2, APRA CPS 234, IRAP, and other compliance frameworks.
- Penetration Testing Services Full suite of penetration testing including internal/external network, web application, mobile application, API, cloud and Kubernetes, wireless/VoIP, secure code review, Active Directory audits, and red/purple team engagements delivered by expert security testers.
- Virtual CISO (vCISO) Fractional executive cybersecurity leadership for organisations needing senior security guidance without full-time hire. Covers security strategy, compliance management, board reporting, and incident response oversight, with engagement typically ranging from $5,000 to $15,000 per month.
- Incident Response Services 24x7 emergency incident response including threat containment, digital forensics, ransomware remediation, cloud compromise investigation, and regulatory submission support for organisations experiencing active security incidents.
- Third-Party Risk Management Vendor risk management programme covering discovery, tiering, risk assessment, due diligence, continuous monitoring, and compliance mapping to ISO 27001, CPS 234, and NIST frameworks for organisations managing third-party supplier security risks.
- Microsoft Security Services Independent security assessment and hardening for Microsoft 365 and Azure environments aligned to ASD Essential Eight, ISM, and IRAP requirements. Includes Microsoft Security licensing, deployment, and ongoing management.
- Advanced Security Assessments Security maturity assessments, control validation against MITRE ATT&CK framework, detection rule validation, cloud security audits (AWS/Azure/GCP), ransomware readiness, and adversarial exposure validation for organisations requiring deep security posture evaluation.
- Managed Security Services Comprehensive managed cybersecurity programme including 24x7 SOC, managed EDR, managed email security, IT/OT threat hunting, managed breach and attack simulation, and security awareness training as an integrated service bundle.
- Cyber Solutions Security technology solutions bundle including endpoint security, email security, security awareness training, backup and recovery, and application security, supported by best-of-breed software vendors and integrated into CyberPulse managed services.
- Agentic SOC Agents AI-powered autonomous security operations centre agents that continuously monitor, detect, and respond to security threats with limited human intervention, providing Australian organisations with always-on defensive capabilities across endpoint, email, and network telemetry.
Quantifiable outcome
- 900+ projects delivered across Australia
- +9 more outcomes
Companies that use CyberPulse
Customer profileNamed customers7 records
Segments7 records
Ideal customer profiles2 records
CyberPulse technology and API
TechnologyTechnology focussed Yes
API detail
- Has API
- No
- API docs
- API detail
Core technology
AI maturity
App detail
Integration17 records
AI capability6 records
Feature4 records
CyberPulse partnerships and signals
Strategic signalPartnerships
Three partnerships are on record, tiered core.
- Rapid7coreAuthorised Rapid7 partner Australia and PACT Partner Program member. CyberPulse delivers end-to-end Rapid7 implementation and 24x7 managed security services built on the Rapid7 Insight Platform (InsightIDR, InsightVM, Threat Command). Provides deployment, integration, optimisation, and ongoing Managed Threat Complete operations with Australian data residency support. Certified technical staff deliver compliance-integrated security operations across ISO 27001, Essential Eight, APRA CPS 234, PCI DSS, and IRAP frameworks.
- MicrosoftcoreTechnology and platform delivery vendor. CyberPulse delivers independent security assessment and remediation of Microsoft 365 and Azure environments. Offers Microsoft Security services including deployment, assessment, and ongoing management aligned to ASD Essential Eight, ISM, and IRAP requirements. Complimentary Microsoft O365 audit offered as entry point.
- Horizon3.ai (NodeZero)coreAutonomous penetration testing platform powering CyberPulse's PTaaS (Penetration Testing as a Service). NodeZero is specifically designed for safe, production-grade attack simulation across internal network, external attack surface, cloud, Kubernetes, Active Directory, and hybrid environments.
Scale indicators8 records
Recent moves6 records
Expansion highlights6 records
CyberPulse competitors and assessment
Company assessmentRegional players
- Insomnia Security: Specialist penetration testing and red team firm operating in New Zealand and Australia. Comparable to CyberPulse's PTaaS and offensive security offering, though narrower in managed services depth.
- Aura Information Security: Trans-Tasman cybersecurity services firm (owned by Cert NZ-aligned group) offering penetration testing, managed security, advisory and incident response. Comparable to CyberPulse on service portfolio but primarily New Zealand-based.
Direct peers
- Triskele Labs: Australian MSSP delivering MDR, SOC-as-a-service, GRC, penetration testing and incident response to mid-market and enterprise customers. Closely comparable to CyberPulse on managed services, GRC and pen testing portfolio.
- Shearwater Solutions: Australian cyber and IT risk advisory firm providing GRC, penetration testing, security strategy and managed services, with a strong presence in financial services and government. Comparable to CyberPulse on advisory-led, regulated-vertical focus.
- Sekuro: Australian cybersecurity and digital risk firm providing managed security, GRC advisory, penetration testing and compliance services to mid-market and enterprise customers. Operates in the same MSSP/advisory niche as CyberPulse.
- Tesserent (Thales Cyber Solutions ANZ): Australian-headquartered full-service cybersecurity consultancy (now owned by Thales) providing advisory, managed security, GRC and incident response across federal government and regulated industries. Overlaps with CyberPulse across most of its core offerings.
- CyberCX: Australia's largest dedicated cybersecurity services firm, offering MSSP, advisory, GRC, MDR and penetration testing services to enterprise and government customers. Closest direct peer to CyberPulse by service mix, customer profile, and Australian market focus.
- Loop Secure: Australian cybersecurity consultancy offering penetration testing, GRC advisory, virtual CISO and managed security services to mid-market and enterprise customers. Directly comparable to CyberPulse on service mix and customer segment.
Broad incumbents
- Deloitte Australia — Cyber & Strategic Risk: Big 4 advisory practice offering large-scale cybersecurity consulting, GRC, managed services and incident response to ASX-listed and government clients. Competes with CyberPulse for larger enterprise and regulated-industry engagements.
- Accenture Security Australia: Global consulting and managed security services provider with a significant Australian cyber practice spanning managed detection, identity, GRC and advisory. Competes with CyberPulse for enterprise and government mandates.
Market position
Strengths5 records
Weaknesses5 records
Competitive moat5 records
Key risks5 records
Key highlights6 records
Customer concentration
CyberPulse social profiles
Digital presenceCyberPulse compliance and trust
Trust signalCompliance9 records
CyberPulse financial estimates
Financial estimateRevenue estimate
Valuation estimate
CyberPulse leadership team
Management profileNumber of profiles
Profiles2 records
CyberPulse funding detail
Funding detailFunding overview
Funding rounds
Investors
Funding detail is available on the Subscription and Enterprise plan.Contact sales →
CyberPulse M&A and investment
M&A and investmentM&A
Investments
M&A and investment is available on the Subscription and Enterprise plan.Contact sales →
Frequently asked questions about CyberPulse
What does CyberPulse do?
CyberPulse is an Australian cybersecurity consultancy delivering integrated security and compliance programmes. Core offerings include co-managed Managed Detection and Response (MDR) built on the Rapid7 Insight Platform with a local advisory layer, Penetration Testing as a Service (PTaaS) combining autonomous Horizon3.ai NodeZero testing with human-led expert testing, and Managed Compliance Services automating evidence collection across ISO 27001, SOC 2, PCI-DSS, APRA CPS 234, IRAP, and Essential Eight frameworks.
Is CyberPulse a public or private company?
CyberPulse is a private company. It is classified as founder individual operated bootstrapped and is currently operating.
When was CyberPulse founded?
CyberPulse was founded in 2020. It employs 11 to 50 people.
Where is CyberPulse based?
CyberPulse is headquartered in Sydney, Australia, in the Oceania region.
How does CyberPulse make money?
Four revenue lines are on record. Professional Services (GRC & Advisory) is the primary driver. The others are managed Security Services, penetration Testing as a Service (PTaaS) and technology Licensing and Resale.
Who are CyberPulse's main competitors?
Regional players on record are Insomnia Security and Aura Information Security. Direct peers are Triskele Labs, Shearwater Solutions, Sekuro, Tesserent (Thales Cyber Solutions ANZ), CyberCX and Loop Secure. Broad incumbents are Deloitte Australia — Cyber & Strategic Risk and Accenture Security Australia.
Does CyberPulse have an API?
No public API is recorded for CyberPulse.
What industry is CyberPulse in?
CyberPulse's product category is Managed Cybersecurity and Compliance Services. Its primary akta.pro industry code is BPAEADAD, Vulnerability Management & Penetration Testing Services, with a secondary code of BPAEADAH, Endpoint Security Managed Services (EDR/XDR). Its NAICS code is 541519 and its SIC code is 7373.