Tigerscheme
Tigerscheme is a UK-based certification scheme for penetration testers, operated under the University of South Wales Group. It issued QSTM and SST credentials (CHECK-equivalent) and provided an online verification portal for accredited testers before exiting NCSC provider status in 2024.
- Company typePrivate
- Founded2000
- HeadquartersPontypridd, United Kingdom
- Headcount1–10
- GTM typeB2B
- OfferingServices
What Tigerscheme does
Tigerscheme is a UK-based commercial certification scheme for technical security specialists, specifically ethical hackers and penetration testers, operated through USW Commercial Services Ltd under the University of South Wales Group. The scheme offers two credentialing levels: QSTM, equivalent to the NCSC CHECK Team Member qualification, and SST, equivalent to the CHECK Team Leader qualification. Each accredited tester is issued a unique identity card bearing a registration number in the format of the first three letters of surname plus a seven-digit member number, enabling verification through the organization's online database.
The scheme's core technology is the Verify Skills Portal, an online credential verification system accessible at tigerscheme.org/verify-skills.php, which allows organizations to confirm the accreditation status of individual testers by entering their registration number. The technology stack is managed by NetBop, an external provider handling website infrastructure. Tigerscheme's revenue model relies on one-time certification assessment fees charged to candidates seeking QSTM or SST credentials. Distribution is direct via the website, with no channel partners or resellers, and customer segments split between UK organizations requiring accredited penetration testing personnel and individual cyber security professionals seeking credentials for career advancement.
In 2024, Tigerscheme announced it will not continue as an NCSC-approved provider for CHECK equivalent assessments, effectively ending its primary credentialing function. Existing certifications remain valid until expiry, with renewal directed to competing certification bodies Cyberscheme or CREST. The organization has transitioned to a maintenance posture, retaining only the Verify Skills portal to support credential verification for currently accredited testers. The scheme is headquartered at USW Commercial Services Ltd, University of South Wales, Pontypridd, UK, and operates with a headcount of 1-10 employees.
Tigerscheme firmographics
Firmographics- Name
- Tigerscheme
- Legal name
- Tigerscheme
- Website
- https://tigerscheme.org
- Company type
- Private
- Founded year
- 2000
- Operating status
- Operating
- Headcount range
- 1–10 employees
- Short description
- Tigerscheme is a UK-based certification scheme for penetration testers, operated under the University of South Wales Group. It issued QSTM and SST credentials (CHECK-equivalent) and provided an online verification portal for accredited testers before exiting NCSC provider status in 2024.
- Ownership category
- akta.pro rank
Tigerscheme industry classification
Industry- Product category
- Cybersecurity Certification
- NAICS
- Other Technical and Trade Schools (611519), Testing Laboratories and Services (541380)
- SIC
- Services-Educational Services (8200), Services-Testing Laboratories (8734)
- akta.pro primary industry
- Penetration Testing, Red Team & Ethical Hacking (EDAOAIAH)
- akta.pro secondary industries
- Vulnerability Assessment, Security Audits & Compliance Testing (BPAKAHAG), Credential, Education & Professional License Verification (BPAKAEAI), Secure Browser, Device Lockdown & Exam Security Tools (EDAFADAI)
Keywords
Where Tigerscheme is headquartered
LocationHeadquarters
- HQ city
- Pontypridd
- HQ country
- United Kingdom
- HQ region
- Europe
Offices1 record
Markets served
Tigerscheme business model
Business model- GTM type
- B2B
- Offering type
- Services
- Cost components
- Personnel, Operations, Technology or R&D, Marketing or Sales
Revenue model
- Certification Assessment Fees: Tigerscheme generates revenue through certification assessments for penetration testers, including QSTM (CHECK Team Member equivalent) and SST (CHECK Team Leader equivalent) assessments. Fees are likely charged for examination and certification issuance.
Go-to-market motion1 record
Distribution channels1 record
Marketing channels2 records
Tigerscheme product offering
Product offeringCore offering
Tigerscheme is a commercial certification scheme that assesses and certifies penetration testing specialists against NCSC CHECK-equivalent standards. It issues two credentials — QSTM (equivalent to CHECK Team Member) and SST (equivalent to CHECK Team Leader) — and operates the Verify Skills portal that enables clients, employers, and other third parties to confirm the certification status and identity of credential holders.
Product overview
Tigerscheme is a certification scheme offering penetration testing credentials through two assessment levels: QSTM (CHECK Team Member equivalent) and SST (CHECK Team Leader equivalent). The primary offering is the Verify Skills Portal, which provides an online database for verifying the accreditation status of individual Tiger testers using their unique registration numbers. While Tigerscheme previously served as an NCSC-approved provider for CHECK equivalent assessments, the organization has announced it will not continue in this role; current certifications remain valid until expiry and can be renewed through Cyberscheme or CREST.
Differentiator
Problem solved
Functional benefit
Products and services
- QSTM Assessment
Companies that use Tigerscheme
Customer profileSegments2 records
Ideal customer profiles2 records
Tigerscheme technology and API
TechnologyTechnology focussed No
API detail
- Has API
- No
- API docs
- API detail
Core technology
AI maturity
App detail
Feature1 record
Tigerscheme partnerships and signals
Strategic signalPartnerships
Three partnerships are on record, tiered core and minor.
- University of South Wales GroupcoreTigerscheme is operated through USW Commercial Services Ltd under the University of South Wales Group. The scheme maintains a continued commitment to Cyber Security skills across the group.
- CyberschememinorFollowing Tigerscheme's decision to not continue as an NCSC-approved provider, individuals can renew their certification with either Cyberscheme or CREST.
- CRESTminorFollowing Tigerscheme's decision to not continue as an NCSC-approved provider, individuals can renew their certification with either Cyberscheme or CREST.
Scale indicators1 record
Recent moves4 records
Expansion highlights1 record
Tigerscheme competitors and assessment
Company assessmentBroad incumbents
- (ISC)²: International cybersecurity certification body offering CISSP, CCSP, and other credentials. While broader than Tigerscheme's pentesting focus, it is a comparable professional certification authority in the cyber security domain.
- EC-Council: Global certification body offering the Certified Ethical Hacker (CEH) and a broad portfolio of cybersecurity credentials. EC-Council competes in the same ethical hacking and penetration testing certification space but at much larger, international scale.
- GIAC (Global Information Assurance Certification): Cyber security certification body issuing technical credentials such as GPEN and GWAPT, including penetration testing-specific certifications. GIAC is a broader incumbent with overlapping content in offensive security certification.
- SANS Institute: Global cybersecurity training and GIAC certification provider covering penetration testing, incident response, and cyber defence. SANS is a broad incumbent in cyber skills certification and training and overlaps with Tigerscheme's ethical hacking curriculum area.
- CompTIA: Vendor-neutral IT certification body offering Security+, PenTest+, and other cybersecurity credentials. While broader in scope, it competes for entry-level and mid-level cyber certification candidates.
Others
- BCS (The Chartered Institute for IT): UK professional body for IT and cyber professionals offering register membership, certifications, and training. BCS is relevant as a UK-based adjacent credentialing organisation with overlapping professional audiences in the cyber security field.
- APMG International: Accreditation and certification body that administers frameworks such as Cyber Incident Planning and Response. APMG is comparable as an accreditation scheme operator adjacent to the UK cyber certification ecosystem.
Direct peers
- Cyberscheme: UK-based certification scheme for cyber security professionals offering CHECK-equivalent assessments. Cyberscheme is named alongside CREST as a direct renewal path for Tigerscheme certificate holders and competes in the same NCSC-aligned penetration testing accreditation niche.
- Offensive Security (OffSec): Provider of offensive cybersecurity certifications such as OSCP and OSEP, focused on penetration testing and ethical hacking skills. OffSec is a strong direct comparison in the technical pentesting-credential category, although it operates globally rather than exclusively in the UK.
- CREST: UK-based accreditation and certification body for penetration testing, threat intelligence, and incident response. CREST is the primary successor scheme referenced for Tigerscheme certificate renewals and is the leading NCSC-approved provider for CHECK assessments in the UK market.
Market position
Strengths3 records
Weaknesses4 records
Competitive moat2 records
Key risks6 records
Key highlights5 records
Customer concentration
Tigerscheme social profiles
Digital presenceTigerscheme compliance and trust
Trust signalCompliance1 record
Tigerscheme financial estimates
Financial estimateRevenue estimate
Valuation estimate
Tigerscheme leadership team
Management profileNumber of profiles
Tigerscheme funding detail
Funding detailFunding overview
Funding rounds
Investors
Funding detail is available on the Subscription and Enterprise plan.Contact sales →
Tigerscheme M&A and investment
M&A and investmentM&A
Investments
M&A and investment is available on the Subscription and Enterprise plan.Contact sales →
Frequently asked questions about Tigerscheme
What does Tigerscheme do?
Tigerscheme is a commercial certification scheme that assesses and certifies penetration testing specialists against NCSC CHECK-equivalent standards. It issues two credentials — QSTM (equivalent to CHECK Team Member) and SST (equivalent to CHECK Team Leader) — and operates the Verify Skills portal that enables clients, employers, and other third parties to confirm the certification status and identity of credential holders.
Is Tigerscheme a public or private company?
Tigerscheme is a private company. It is classified as state government owned and is currently operating.
When was Tigerscheme founded?
Tigerscheme was founded in 2000. It employs 1 to 10 people.
Where is Tigerscheme based?
Tigerscheme is headquartered in Pontypridd, United Kingdom, in the Europe region.
How does Tigerscheme make money?
One revenue line is on record: certification Assessment Fees.
Who are Tigerscheme's main competitors?
Broad incumbents on record are (ISC)², EC-Council, GIAC (Global Information Assurance Certification), SANS Institute and CompTIA. Others are BCS (The Chartered Institute for IT) and APMG International. Direct peers are Cyberscheme, Offensive Security (OffSec) and CREST.
Does Tigerscheme have an API?
No public API is recorded for Tigerscheme.
What industry is Tigerscheme in?
Tigerscheme's product category is Cybersecurity Certification. Its primary akta.pro industry code is EDAOAIAH, Penetration Testing, Red Team & Ethical Hacking, with a secondary code of BPAKAHAG, Vulnerability Assessment, Security Audits & Compliance Testing. Its NAICS code is 611519 and its SIC code is 8200.