Cyber Audit Team
Cyber Audit Team is an Australian private cybersecurity services firm headquartered in Southport, Queensland, offering Managed Detection & Response, vulnerability management, compliance, training, and its proprietary Australian Cyber Essentials (ACE) certification to government agencies, banks, blue-chip enterprises, and SMEs across Australia.
- Company typePrivate
- Founded2017
- HeadquartersSouthport, Australia
- Headcount11–50
- GTM typeB2B
- OfferingServices
What Cyber Audit Team does
Cyber Audit Team (CAT), legally Cyber Audit Team Pty Ltd, is an Australian private cybersecurity services firm headquartered in Southport, Queensland, founded in 2017 and led by Managing Director Damian Seaton. The company delivers end-to-end information security services exclusively within Australia, serving government agencies, tier 1 banks, blue-chip enterprises, law firms, accountants, charities, and SMEs. Its portfolio spans Managed Detection & Response (MDR) via a 24/7 Cyber Intelligence Centre (CIC), vulnerability management (assessments, penetration testing, social engineering, incident response), compliance services (PCI DSS, GDPR, Australian NDB), and training/consulting (awareness training, policy development, virtual CISO). CAT also developed the proprietary Australian Cyber Essentials (ACE) framework, an evidence-based, three-level certification (ACE Ready, ACE Robust, ACE Resilient) independently certified by Bureau Veritas, positioning the firm in the supply-chain assurance market.
The underlying technology is centred on the proprietary CIC platform, which provides Unified Security Management combining SIEM, log management, incident response, asset discovery, vulnerability assessment, and intrusion detection across on-premise, cloud, and hybrid environments. CAT extends this core with integrated third-party platforms including Tenable (vulnerability management, April 2023 MSSP partnership), Avertro CyberHQ (vCISO reporting, April 2023), LastPass (managed password security, November 2022), and 6clicks (GRC, July 2022). Free self-service tools include the Email Domain Security Checker (assessing DMARC, DKIM, SPF, BIMI, MTA-STS, TLS-RPT) and the Executive Cyber Security Health Check assessment, both functioning as top- and mid-funnel lead generators.
Revenue is generated through a hybrid model combining recurring subscription streams (MDR, CSAT awareness training, Managed IT Security Services) with project-based professional services (audits, penetration tests, compliance engagements, incident response) and certification fees for the ACE programme. Distribution is primarily direct enterprise field sales targeting boards, directors, and senior leadership, supplemented by a CSAT Reseller Programme allowing MSPs, MSSPs, and consultants to white-label the training platform. Pricing is quote-based and not publicly disclosed, with CAT emphasising affordability for SMEs versus the >$250,000 cost of building an in-house SOC. The firm remains privately held with no disclosed external funding.
Cyber Audit Team firmographics
Firmographics- Name
- Cyber Audit Team
- Legal name
- Cyber Audit Team Pty Ltd
- Website
- https://cyberauditteam.com
- Company type
- Private
- Founded year
- 2017
- Operating status
- Operating
- Headcount range
- 11–50 employees
- Short description
- Cyber Audit Team is an Australian private cybersecurity services firm headquartered in Southport, Queensland, offering Managed Detection & Response, vulnerability management, compliance, training, and its proprietary Australian Cyber Essentials (ACE) certification to government agencies, banks, blue-chip enterprises, and SMEs across Australia.
- Ownership category
- akta.pro rank
Where Cyber Audit Team is headquartered
LocationHeadquarters
- HQ city
- Southport
- HQ country
- Australia
- HQ region
- Oceania
Offices1 record
Markets served
Cyber Audit Team business model
Business model- GTM type
- B2B
- Offering type
- Services
- Cost components
- Personnel, Technology or R&D, Marketing or Sales, Operations, Infrastructure
Revenue model
- Managed Detection and Response (MDR) Services: Recurring monthly fees for 24/7 security monitoring, threat detection, incident response, and SOC-as-a-Service delivered through the Cyber Intelligence Centre. CAT positions MDR as the core revenue driver with a practicable and affordable monthly fee model tailored to client risk appetite and budget.
- Professional Cyber Security Consulting Services: One-time and project-based fees for services including cyber resilience assessments, penetration testing, vulnerability assessments, social engineering testing, incident response, CISO-as-a-Service (vCISO), and compliance management (PCI DSS, GDPR, ISO 27001, NDB scheme).
- Cyber Security Awareness Training (CSAT): Subscription-based training services delivered via a Learning Management System (LMS), including ongoing phishing simulations, seasonal campaigns, and compliance-ready reporting. CAT also offers a reseller programme allowing MSPs/MSSPs to white-label or co-brand the platform under their own brand.
- Australian Cyber Essentials (ACE) Certification: Certification programme fees covering guided assessments, 12 structured workshops, evidence submission, and Bureau Veritas independent review. Offered at three levels: ACE Ready, ACE Robust, and ACE Resilient.
- Managed IT Security Services (MISS): Ongoing managed IT security services complementing existing IT support, including Essential Eight assessments, MFA enforcement, password management (LastPass), and security configuration. Delivered as an extension of client IT teams.
Pricing tiers
| Model | Billing | Price |
|---|---|---|
| Subscription | Monthly | Custom enterprise pricing based on scope and risk profile |
Go-to-market motion3 records
Distribution channels4 records
Marketing channels9 records
Cyber Audit Team product offering
Product offeringCore offering
Cyber Audit Team delivers end-to-end managed cyber security services in Australia, centred on 24/7 Managed Detection and Response through its proprietary Cyber Intelligence Centre (CIC). The portfolio spans vulnerability management (assessments, penetration testing, social engineering, incident response), compliance and IT risk management (PCI DSS, GDPR, NDB Scheme), and cyber security training and consulting (awareness training, policy development, CISO-as-a-Service). The firm also operates the Australian Cyber Essentials (ACE) three-level certification programme, independently certified by Bureau Veritas, alongside a white-label training reseller programme for MSPs and MSSPs.
Product overview
Cyber Audit Team is a 100% Australian-based cyber security services company offering independent end-to-end cyber security services and solutions. The core portfolio centres on Managed Detection & Response (MDR) services delivered through a 24/7 Cyber Intelligence Centre, complemented by Vulnerability Management services (vulnerability assessment, penetration testing, social engineering testing, incident response), Cyber Security Compliance & IT Risk Management (audit and risk assessment, PCI DSS compliance, GDPR compliance, NDB scheme compliance), and Cyber Security Training & Consulting (awareness training, policy and strategy, CISOaaS). The company has developed its own Australian Cyber Essentials (ACE) certification program with three maturity levels (ACE Ready, ACE Robust, ACE Resilient), independently certified by Bureau Veritas. Additional offerings include a white-label training reseller program for MSPs/MSSPs, Managed IT Security Services (MISS), and free tools including an Email Domain Security Checker and Cyber Security Executive Health Check.
Differentiator
Problem solved
Functional benefit
Brands
- Australian Cyber Essentials (ACE): A three-level, evidence-based cyber security assurance framework for Australian supply chains, independently certified by Bureau Veritas.
Products and services
- Managed Detection and Response (MDR) Advanced managed security service providing 24/7 security information and event monitoring, incident analysis and response, threat intelligence and threat hunting delivered through the Cyber Intelligence Centre to organisations requiring proactive information security posture.
- SOC as a Service Fully outsourced Security Operations Centre delivering 24/7 monitoring, detection and response capabilities leveraging SIEM technology and trained cyber security professionals, enabling clients to avoid building an in-house SOC.
- Managed Security Information and Event Management (SIEM) Managed SIEM solution that aggregates log data, security alerts and events into a centralised platform for monitoring, analysis, investigation and triage by qualified security analysts.
- Cyber Security Threat Intelligence Active threat intelligence service helping organisations identify and recognise signs of an attack, often before it occurs, enabling more informed decisions during a cyber-attack.
- Cyber Security Threat Hunting Proactive targeted threat hunting service that actively hunts, identifies, contains and responds to cyber threats before they cause damage.
- Cyber Security Vulnerability Assessment Identifies and uncovers company vulnerabilities through scanning and assessment to protect business, brand and reputation.
- Penetration Testing (PEN Test) Real-world penetration testing service to identify security vulnerabilities and assess the effectiveness of security controls.
- Social Engineering Testing Services Testing services covering both physical and digital social engineering attack vectors including phishing, spear-phishing, pretexting, vishing and Business Email Compromise (BEC).
- Cyber Security Incident Response Incident response planning and recovery services to help organisations react swiftly and sensitively to data incidents or breaches.
- Cyber Security Audit and Risk Assessment Independent gap analysis and risk exposure assessment to identify areas of risk, gaps in policies or procedures, and exposure or non-compliance throughout an organisation.
- PCI DSS Compliance Assistance achieving and maintaining Payment Card Industry Data Security Standard compliance for organisations handling card payments.
- General Data Protection Regulation (GDPR) Compliance Compliance services for European Union General Data Protection Regulation requirements for organisations handling EU residents' personal data.
- Notifiable Data Breaches (NDB) Scheme Compliance Compliance services for the Australian Notifiable Data Breaches scheme requirements under the Privacy Act 1988.
- Cyber Security Awareness Training (CSAT) Comprehensive staff training including face-to-face workshops and Learning Management System delivery covering social engineering awareness, phishing prevention and security best practices, including ongoing phishing simulations and compliance-ready reporting.
- Chief Information Security Officer as a Service (CISOaaS) Virtual CISO service providing executive-level cyber security leadership, governance oversight and strategic guidance without the cost of a full-time hire.
- Australian Cyber Essentials (ACE) Certification Three-level evidence-based cyber security assurance framework for Australian supply chains (ACE Ready, ACE Robust, ACE Resilient) independently certified by Bureau Veritas, including 12 guided workshops and structured assessment.
- Cyber Security Awareness Training Reseller Program White-label or co-branded cyber security awareness training platform for MSPs, MSSPs and cyber consultants to resell under their own brand, including monthly phishing simulations, compliance reports and ongoing support.
- Managed IT Security Services (MISS) Managed IT security services complementing existing IT support, covering Essential Eight assessments and uplift, Identity and Access Management, Multi-Factor Authentication enforcement, and password hygiene management.
Quantifiable outcome
- Businesses can save over $250,000 by outsourcing SOC compared to building in-house capability
- +3 more outcomes
Companies that use Cyber Audit Team
Customer profileNamed customers6 records
Segments6 records
Ideal customer profiles5 records
Cyber Audit Team technology and API
TechnologyTechnology focussed Yes
API detail
- Has API
- No
- API docs
- API detail
Core technology
AI maturity
App detail
Feature7 records
Cyber Audit Team partnerships and signals
Strategic signalPartnerships
Five partnerships are on record, tiered core.
- AvertrocoreCAT announced a partnership with Avertro, incorporating Avertro's CyberHQ platform into CAT's vCISO (Chief Information Security Officer as a Service) offering. This delivers clients greater visibility around their cyber maturity in one platform while maintaining regulatory compliance and optimising return on security investment.
- TenablecoreCAT became a Tenable MSSP Partner, gaining access to Tenable's vulnerability assessment and exposure management platform. As an MSSP Partner, CAT offers clients greater visibility and insight into their risk exposure through Tenable's technology integrated into their managed security services.
- LastPasscoreCAT signed an agreement with LastPass, a leading global password manager serving over 100,000 businesses worldwide. CAT offers LastPass to its clients as a fully managed password management platform, providing enhanced support in Australia. The managed service delivers superior support levels including full platform utilisation, staff training, and ongoing management, adding a vital layer of 'defence in depth' to clients' overall cyber security posture.
- 6clickscoreCAT partnered with 6clicks, an Australian GRC (Governance, Risk and Compliance) platform. The 6clicks platform complements CAT's existing cyber assessment solutions and broadens their capabilities around regulatory compliance requirements. Integration enhances the delivery of CAT's managed services.
- Bureau VeritascoreBureau Veritas is the independent certification body for the Australian Cyber Essentials (ACE) framework developed by CAT. Bureau Veritas independently reviews supplier evidence submissions and issues ACE certifications when requirements are met. This partnership provides the independent, evidence-based credibility that distinguishes ACE from self-attestation approaches.
Scale indicators3 records
Recent moves6 records
Expansion highlights5 records
Cyber Audit Team competitors and assessment
Company assessmentOthers
- Avertro: Australian cyber governance platform (CyberHQ) used by CAT within its vCISO offering. A technology/ecosystem partner rather than a competitor, but adjacent to CAT's GRC and vCISO services.
Emerging players
- Arctic Wolf: Global MDR specialist with a security operations platform and concierge SOC model. Increasingly competing with CAT for Australian mid-market MDR contracts as it expands locally.
- eSentire: Pure-play MDR provider with 24/7 SOC, threat hunting and incident response. Competes with CAT's CIC/MDR offering for mid-market and enterprise customers expanding into Australia.
Broad incumbents
- Telstra Enterprise Security: Telstra's cyber security division offers managed security, consulting and compliance to large Australian enterprises and government. A scaled domestic incumbent competing for the same enterprise and regulated buyers as CAT.
- CrowdStrike: Global cybersecurity leader whose Falcon platform bundles EDR, XDR, SIEM and MDR. A broad incumbent entering Australia and pressuring regional MSSPs like CAT on price, scale and platform depth.
Regional players
- Insomnia Security: New Zealand-based cyber security consultancy and MSSP offering penetration testing, MDR and advisory. Comparable in service mix and scale to CAT, though primarily serving the trans-Tasman market.
Direct peers
- Sekuro: Australian cyber security and managed services provider covering MDR, offensive security, GRC and strategy. Closely overlaps with CAT's portfolio and target buyer (CISOs and boards at mid-market and enterprise).
- Tesserent (Thrive / Converged Networks Australia): Australian-headquartered MSSP delivering managed detection and response, advisory and compliance services. Competes head-to-head with CAT for mid-market and enterprise cyber engagements in Australia.
- CyberCX: Australia's largest pure-play cyber security services firm, offering MDR, SOC, consulting, GRC and training to enterprise and government. Direct competitor to CAT across every service line and customer segment in Australia.
- Loop Secure (formerly Salt Group): Australian cyber security services firm providing security advisory, managed security and identity solutions. Direct peer in mid-market and enterprise cyber services across Australia.
Market position
Strengths5 records
Weaknesses5 records
Competitive moat5 records
Key risks6 records
Key highlights7 records
Customer concentration
Cyber Audit Team social profiles
Digital presenceCyber Audit Team financial estimates
Financial estimateRevenue estimate
Valuation estimate
Cyber Audit Team leadership team
Management profileNumber of profiles
Profiles1 record
Cyber Audit Team funding detail
Funding detailFunding overview
Funding rounds
Investors
Funding detail is available on the Subscription and Enterprise plan.Contact sales →
Cyber Audit Team M&A and investment
M&A and investmentM&A
Investments
M&A and investment is available on the Subscription and Enterprise plan.Contact sales →
Frequently asked questions about Cyber Audit Team
What does Cyber Audit Team do?
Cyber Audit Team delivers end-to-end managed cyber security services in Australia, centred on 24/7 Managed Detection and Response through its proprietary Cyber Intelligence Centre (CIC). The portfolio spans vulnerability management (assessments, penetration testing, social engineering, incident response), compliance and IT risk management (PCI DSS, GDPR, NDB Scheme), and cyber security training and consulting (awareness training, policy development, CISO-as-a-Service). The firm also operates the Australian Cyber Essentials (ACE) three-level certification programme, independently certified by Bureau Veritas, alongside a white-label training reseller programme for MSPs and MSSPs.
Is Cyber Audit Team a public or private company?
Cyber Audit Team is a private company. It is classified as founder individual operated bootstrapped and is currently operating.
When was Cyber Audit Team founded?
Cyber Audit Team was founded in 2017. It employs 11 to 50 people.
Where is Cyber Audit Team based?
Cyber Audit Team is headquartered in Southport, Australia, in the Oceania region.
How does Cyber Audit Team make money?
Five revenue lines are on record. Managed Detection and Response (MDR) Services are the primary driver. The others are professional Cyber Security Consulting Services, cyber Security Awareness Training (CSAT), australian Cyber Essentials (ACE) Certification and managed IT Security Services (MISS).
Who are Cyber Audit Team's main competitors?
Avertro is listed as an others. Emerging players are Arctic Wolf and eSentire. Broad incumbents are Telstra Enterprise Security and CrowdStrike. Insomnia Security is listed as a regional player. Direct peers are Sekuro, Tesserent (Thrive / Converged Networks Australia), CyberCX and Loop Secure (formerly Salt Group).
Does Cyber Audit Team have an API?
No public API is recorded for Cyber Audit Team.