SecureTeam
SecureTeam Ltd is a CREST-accredited UK cybersecurity consultancy delivering penetration testing, application security, configuration hardening, and risk and compliance services to UK public sector bodies, enterprises, SMBs, and critical infrastructure operators.
- Company typePrivate
- Founded2000
- HeadquartersLondon, United Kingdom
- Headcount11–50
- GTM typeB2B
- OfferingServices
What SecureTeam does
SecureTeam Ltd is a UK-based cybersecurity consultancy headquartered at Kemp House, 152 City Road, London, founded around 2000 and operating as a private limited company (Companies House number 10257784). The firm delivers penetration testing and security assessment services to UK public sector bodies, large private enterprises, small and medium businesses, and critical infrastructure operators — with named customers including the NHS, UK Parliament, Derbyshire County Council, Nutanix, FMC Corporation, Fresenius Medical Care, Royal Haskoning DHV, and Lexxika.
The company organises its offering into four core service lines — network and infrastructure penetration testing (external/internal networks, wireless, VoIP, segregation), application security assessment (web, mobile, desktop, API, and AI/LLM testing), device and configuration security hardening (AWS, Azure, Microsoft 365, Linux, Windows against CIS and NCSC benchmarks), and governance, risk and compliance (Cyber Essentials, ISO 27001, NCSC CAF, NHS Secure Email, vCISO). All testing is delivered by CREST- and Tigerscheme-accredited consultants following OWASP, PTES, OSSTMM, and NCSC methodologies; the firm holds ISO 27001 and ISO 9001 certification and is an IASME-accredited Cyber Essentials Certification Body. A proprietary STORM appliance enables remote internal network pentesting without on-site consultants.
Revenue is generated primarily through project-based professional services engagements priced per scope (pentesting), tiered subscription vulnerability scanning packages (Bronze/Silver/Gold at £1,440–£3,360 per year), and tiered Cyber Essentials certification (£310–£550 base, £1,350 for Plus). Distribution is direct via a website quote-request workflow, online self-serve booking for Cyber Essentials, and on-site or remote consultancy delivery. The GTM is consultative enterprise sales with no channel partners, supported by content marketing, a monthly newsletter, and active LinkedIn/Twitter/Facebook presence. No external funding has been disclosed.
SecureTeam firmographics
Firmographics- Name
- SecureTeam
- Legal name
- SecureTeam Ltd
- Website
- https://secureteam.co.uk
- Company type
- Private
- Founded year
- 2000
- Operating status
- Operating
- Headcount range
- 11–50 employees
- Short description
- SecureTeam Ltd is a CREST-accredited UK cybersecurity consultancy delivering penetration testing, application security, configuration hardening, and risk and compliance services to UK public sector bodies, enterprises, SMBs, and critical infrastructure operators.
- Ownership category
- akta.pro rank
SecureTeam industry classification
Industry- Product category
- Cybersecurity Consulting
- NAICS
- Computer Systems Design and Related Services (54151)
- SIC
- Services-Prepackaged Software (7372)
- akta.pro primary industry
- Vulnerability Management & Penetration Testing Services (BPAEADAD)
- akta.pro secondary industries
- Vulnerability Assessment, Security Audits & Compliance Testing (BPAKAHAG), Network Security Managed Services (Firewall/IDS/IPS/SASE) (BPAEADAG)
Keywords
Where SecureTeam is headquartered
LocationHeadquarters
- HQ city
- London
- HQ country
- United Kingdom
- HQ region
- Europe
Offices1 record
Markets served
SecureTeam business model
Business model- GTM type
- B2B
- Offering type
- Services
- Cost components
- Personnel, Operations, Technology or R&D, Marketing or Sales, Infrastructure
Revenue model
- Penetration Testing Services: Professional services revenue from conducting network, application, wireless, and infrastructure penetration testing. Services are priced per engagement with tiered options for vulnerability assessments.
- Security Hardening & Configuration Reviews: Consultancy services for hardening servers, cloud environments, and applications against cyber threats. Includes AWS, Azure, Microsoft 365, Linux, and Windows configuration reviews.
- Risk & Compliance Services: Governance, risk and compliance consultancy including Cyber Essentials certification, ISO 27001 gap analysis, CAF maturity assessments, and vCISO services.
- Managed Vulnerability Scanning: Recurring subscription-based vulnerability assessment services with monthly, quarterly, or 6-monthly scanning packages in Bronze, Silver, and Gold tiers.
Pricing tiers
| Model | Billing | Price |
|---|---|---|
| Unit Pricing | Pay-as-you-go | Bronze tier - Individual scan |
| Unit Pricing | Pay-as-you-go | Silver tier - Enhanced reporting |
| Unit Pricing | Pay-as-you-go | Gold tier - Full service with debrief |
| One time/ perpetual license | Pay-as-you-go | Cyber Essentials Certification - Micro (0-9 employees) |
| One time/ perpetual license | Pay-as-you-go | Cyber Essentials Certification - Small (10-49 employees) |
| One time/ perpetual license | Pay-as-you-go | Cyber Essentials Certification - Medium (50-249 employees) |
| One time/ perpetual license | Pay-as-you-go | Cyber Essentials Certification - Large (250+ employees) |
| One time/ perpetual license | Pay-as-you-go | Cyber Essentials Plus Certification |
Go-to-market motion1 record
Distribution channels4 records
Marketing channels7 records
SecureTeam product offering
Product offeringCore offering
SecureTeam is a UK-based cybersecurity consultancy that delivers penetration testing and security assessment services across network infrastructure, applications, and cloud configurations, together with security hardening reviews and risk and compliance consultancy (including Cyber Essentials, ISO 27001, NCSC CAF, and vCISO). Engagements are delivered by CREST-accredited, security-vetted consultants using industry-standard methodologies such as OWASP, PTES, OSSTMM, and CIS benchmarks, supplemented by proprietary STORM appliances for remote internal testing and tiered managed vulnerability scanning subscriptions (Bronze, Silver, Gold).
Product overview
SecureTeam is a UK-based cybersecurity consultancy offering a comprehensive portfolio of penetration testing and security assessment services. The core offerings are organized into four main service lines: Network & Infrastructure Penetration Testing (covering external/internal networks, wireless, VoIP, and network segregation), Application Security Assessment (covering web, mobile, desktop applications, APIs, and AI/LLM security), Device & Configuration Security Hardening (covering cloud platforms and server builds), and Risk & Compliance Services (covering Cyber Essentials, ISO 27001, NCSC CAF, and Virtual CISO). Supporting the core services are STORM Appliances for remote testing, External Network Vulnerability Assessments with tiered pricing, Simulated Cyber Attacks (red teaming), Bespoke Assessments for specialized testing needs, and Security Awareness Training. All services are delivered by CREST-accredited consultants following industry-standard methodologies including OWASP, PTES, and OSSTMM.
Differentiator
Problem solved
Functional benefit
Products and services
- Network & Infrastructure Penetration Testing Comprehensive penetration testing services for network infrastructure including external networks, internal networks, wireless networks, VoIP systems, and network segregation testing to identify vulnerabilities before attackers can exploit them. Delivered to organisations requiring infrastructure assurance and regulatory compliance.
- Application Security Assessment Application testing services ranging from web and mobile application penetration testing through to desktop application assessments, API testing, restricted application breakout testing, and AI/LLM security assessments using OWASP methodologies. Targeted at organisations that build or operate applications handling sensitive data.
- Device & Configuration Security Hardening Secure configuration review services for servers, cloud environments, and applications including AWS, Azure, Microsoft 365, Linux, and Windows systems, benchmarked against CIS, NCSC, ISO 27001, and PCI DSS standards. Intended for organisations seeking to harden infrastructure against configuration-based attacks.
- Risk & Compliance Services Governance, risk and compliance services including NCSC Cyber Assessment Framework assessments, Cyber Essentials certification, ISO 27001 gap analysis, NHS Secure Email Standard assessments, supply chain risk assessments, and Virtual CISO/DPO services. Intended for organisations needing compliance certifications and risk management advisory.
- STORM Appliances Remote testing appliances shipped to customers for internal network penetration testing. The STORM devices enable remote assessment capabilities when on-site testing is not possible, supporting engagements across multiple geographies.
- External Network Vulnerability Assessment Automated vulnerability scanning of Internet-facing perimeter networks with tiered pricing (Bronze, Silver, Gold packages) offering regular scanning, detailed reports, remediation support, and vulnerability trend analysis. Targeted at organisations seeking ongoing external attack surface visibility.
- Simulated Cyber Attacks Red team exercises including ransomware simulation, spear phishing assessments, social engineering, and open-source intelligence gathering to test organisational defences against realistic attack scenarios. Targeted at organisations seeking to validate defensive readiness.
- Bespoke Assessments Specialised testing services including hardware security assessments, network protocol fuzzing, radio protocol testing, RFID security assessments, and IoT security testing for specialised requirements. Targeted at critical infrastructure operators and organisations with bespoke technology stacks.
- Security Awareness Training Industry-leading security awareness training that empowers staff to identify and defend against cyber threats. Targeted at organisations seeking to reduce phishing and social engineering risk through workforce education.
- Artificial Intelligence (AI) Security Assessment & LLM Penetration Testing Assessment that helps organisations identify security weaknesses in their Large Language Model (LLM) applications, including risks of sensitive information exposure, model behaviour manipulation, and reverse-engineering of proprietary AI designs. Delivered using OWASP Top 10 for LLM Applications methodology with custom-written LLM penetration testing tools combined with manual testing of LLM responses and API endpoints.
Quantifiable outcome
- 24-hour assessment turnaround for Cyber Essentials certification
- +3 more outcomes
Companies that use SecureTeam
Customer profileNamed customers15 records
Segments4 records
Ideal customer profiles4 records
SecureTeam technology and API
TechnologyTechnology focussed No
API detail
- Has API
- No
- API docs
- API detail
Core technology
AI maturity
App detail
AI capability4 records
Feature3 records
SecureTeam partnerships and signals
Strategic signalPartnerships
Four partnerships are on record, tiered core.
- Center for Internet Security (CIS)coreSecureTeam uses CIS hardening benchmarks and security standards as the foundation for their configuration reviews and security hardening services, including AWS Cloud Security Reviews, Microsoft Azure reviews, and server build reviews.
- National Cyber Security Centre (NCSC)coreSecureTeam aligns their testing and consultancy services with NCSC frameworks including the Cyber Assessment Framework (CAF) and references NCSC guidance for security hardening standards.
- OWASP (Open Web Application Security Project)coreAll application security testing is conducted using OWASP testing methodologies, including OWASP Top 10 for web applications, OWASP API Security Top 10, and OWASP Top 10 for LLM Applications.
- IASME (Information Assurance for Small and Medium Enterprises)coreSecureTeam is an accredited Cyber Essentials Certification Body authorised to perform both Cyber Essentials and Cyber Essentials Plus assessments on behalf of IASME.
Scale indicators4 records
Recent moves5 records
Expansion highlights5 records
SecureTeam competitors and assessment
Company assessmentDirect peers
- Bishop Fox: Bishop Fox is a US-headquartered elite cybersecurity consultancy specializing in penetration testing, red teaming, and application security assessments. Highly comparable to SecureTeam's service portfolio and consultative, expert-led delivery model, with comparable CREST-equivalent accreditations and Fortune 500 customer base.
- Pen Test Partners: Pen Test Partners is a UK-based CREST-accredited cybersecurity consultancy offering network, application, IoT, and hardware penetration testing. Near-identical service portfolio and delivery model to SecureTeam, with a comparable UK-focused customer base and similar specialism in IoT/OT testing.
- Bridewell Consulting: Bridewell is a UK-headquartered cybersecurity consultancy (formed via merger with Pentest Ltd) offering CREST-accredited penetration testing, managed security services, and compliance advisory. Direct competitor to SecureTeam in the UK mid-market and public sector, with similar service lines and CREST membership.
- NetSPI: NetSPI is a US-based penetration testing and attack surface management firm offering network, application, and cloud security testing alongside managed vulnerability scanning. Directly comparable to SecureTeam across the full pen testing stack, with a similar mid-market-to-enterprise focus and recurring vulnerability assessment tiering model.
- Cyberis: Cyberis is a UK-based cybersecurity consultancy providing penetration testing, security assessment, and Cyber Essentials certification services. Closely comparable to SecureTeam in scale, geographic focus, and service portfolio, including CREST accreditation and public/private sector customer mix.
Broad incumbents
- Trustwave: Trustwave is a global cybersecurity consultancy offering CREST-accredited penetration testing, MDR, and compliance services. Overlaps significantly with SecureTeam's pen testing and compliance portfolio but operates at substantially larger scale with managed security service capabilities beyond SecureTeam's scope.
- Coalfire: Coalfire is a US-based cybersecurity advisory firm offering penetration testing, compliance assessments (ISO 27001, SOC, PCI), and risk advisory. Overlaps with SecureTeam's pen testing and compliance services, though Coalfire is significantly larger with a stronger US enterprise footprint.
- NCC Group: NCC Group is the largest UK-listed cybersecurity consultancy, offering CREST-accredited penetration testing, application security, and managed detection services. Directly comparable to SecureTeam in core pen testing delivery, but operates at significantly greater scale with global offices and a much broader service portfolio.
- WithSecure (formerly F-Secure): WithSecure is a Nordic-headquartered cybersecurity firm offering penetration testing, managed detection, and consulting services globally. Comparable to SecureTeam in pen testing and application security offerings but operates at much larger scale with a software-led go-to-market.
Emerging players
- MGM Cyber (MGM Solutions): MGM Cyber is a UK-based penetration testing and security consultancy serving mid-market and enterprise clients with CREST-aligned methodologies. Comparable to SecureTeam in core pen testing offerings and UK focus, but typically smaller in scale and less established in public sector frameworks.
Market position
Strengths5 records
Weaknesses5 records
Competitive moat4 records
Key risks5 records
Key highlights4 records
Customer concentration
SecureTeam social profiles
Digital presenceSecureTeam compliance and trust
Trust signalCompliance6 records
SecureTeam financial estimates
Financial estimateRevenue estimate
Valuation estimate
SecureTeam leadership team
Management profileNumber of profiles
SecureTeam funding detail
Funding detailFunding overview
Funding rounds
Investors
Funding detail is available on the Subscription and Enterprise plan.Contact sales →
SecureTeam M&A and investment
M&A and investmentM&A
Investments
M&A and investment is available on the Subscription and Enterprise plan.Contact sales →
Frequently asked questions about SecureTeam
What does SecureTeam do?
SecureTeam is a UK-based cybersecurity consultancy that delivers penetration testing and security assessment services across network infrastructure, applications, and cloud configurations, together with security hardening reviews and risk and compliance consultancy (including Cyber Essentials, ISO 27001, NCSC CAF, and vCISO). Engagements are delivered by CREST-accredited, security-vetted consultants using industry-standard methodologies such as OWASP, PTES, OSSTMM, and CIS benchmarks, supplemented by proprietary STORM appliances for remote internal testing and tiered managed vulnerability scanning subscriptions (Bronze, Silver, Gold).
Is SecureTeam a public or private company?
SecureTeam is a private company. It is classified as unknown and is currently operating.
When was SecureTeam founded?
SecureTeam was founded in 2000. It employs 11 to 50 people.
Where is SecureTeam based?
SecureTeam is headquartered in London, United Kingdom, in the Europe region.
How does SecureTeam make money?
Four revenue lines are on record. Penetration Testing Services are the primary driver. The others are security Hardening & Configuration Reviews, risk & Compliance Services and managed Vulnerability Scanning.
Who are SecureTeam's main competitors?
Direct peers on record are Bishop Fox, Pen Test Partners, Bridewell Consulting, NetSPI and Cyberis. Broad incumbents are Trustwave, Coalfire, NCC Group and WithSecure (formerly F-Secure). MGM Cyber (MGM Solutions) is listed as an emerging player.
Does SecureTeam have an API?
No public API is recorded for SecureTeam.
What industry is SecureTeam in?
SecureTeam's product category is Cybersecurity Consulting. Its primary akta.pro industry code is BPAEADAD, Vulnerability Management & Penetration Testing Services, with a secondary code of BPAKAHAG, Vulnerability Assessment, Security Audits & Compliance Testing. Its NAICS code is 54151 and its SIC code is 7372.