
UK offensive security consultancy delivering CREST-accredited penetration testing, adversary simulation and CBEST, TIBER-EU and TBEST threat-led testing, mainly for financial services and other large organisations.
APAC
Singapore-based penetration testing providers serving the Southeast Asian market.
Singapore is a major financial centre with strict cybersecurity requirements from the Monetary Authority of Singapore (MAS).
Singapore providers serve the broader ASEAN region from a market shaped by MAS TRM guidelines for financial institutions and CSA Cybersecurity Act obligations for critical information infrastructure. Engagements routinely span Singapore, Indonesia, Malaysia, and the Philippines, with providers offering multilingual reporting and regional threat-intelligence context.
Most relevant: ISO 27001 pen testing providers.

UK offensive security consultancy delivering CREST-accredited penetration testing, adversary simulation and CBEST, TIBER-EU and TBEST threat-led testing, mainly for financial services and other large organisations.
Singapore-headquartered cybersecurity firm acquired by Bitdefender. CREST-accredited pen testing paired with the Warden CSPM platform. MAS TRM, OJK, and PDPA specialism.
Singapore CREST-accredited and CSA-licensed offensive security boutique. Manual, senior-led testing with strong MAS TRM and PDPA expertise.

Cybersecurity consulting division of global insurance leader Aon, uniquely combining penetration testing with cyber risk quantification and insurance expertise.

World's largest ethical hacker platform with over one million researchers, offering bug bounties and structured penetration testing to the US DoD and Fortune 500.

Global risk advisory firm with a 400+ person cyber practice. IR-led penetration testing that feeds active breach intelligence straight into test scoping.

World-renowned cybersecurity firm now part of Google Cloud, delivering threat intelligence-led penetration testing and red teaming informed by front-line incident response experience.

Vienna-headquartered Austrian cybersecurity consultancy with a prolific Vulnerability Lab research program and deep expertise in IoT and embedded systems security across the DACH region.

Cybersecurity division of the Thales Group, with ANSSI, CREST, FedRAMP 3PAO, and NATO-cleared personnel. Defence, government, and critical infrastructure penetration testing worldwide.

Global managed security provider with the elite SpiderLabs penetration testing team and deep PCI DSS compliance expertise.

Helsinki-headquartered Finnish cybersecurity firm with roots dating to 1988, offering CREST-accredited penetration testing and deep expertise in EU regulatory compliance including GDPR, NIS 2, and TIBER-EU.
Swiss cybersecurity firm with major Singapore operation. CREST accredited, CSA-licensed in Singapore. Manual exploitation focus with the proprietary MAD reporting platform.
We currently list 12 penetration testing providers serving Singapore. You can filter by service type, accreditation, compliance expertise, and pricing to find the best fit for your requirements. Each provider profile includes verified accreditations, service details, and independent scores based on our transparent methodology.
Of the 12 providers listed for Singapore, 7 hold CREST accreditation, the most widely recognised standard for penetration testing quality in the APAC region. Other valuable accreditations include CHECK (for UK government work), ISO 27001, and SOC 2. The right accreditations depend on your industry and regulatory requirements.
Penetration testing costs in Singapore vary significantly based on scope and complexity. A standard web application test typically ranges from $5,000 to $25,000, network penetration tests from $10,000 to $30,000, and comprehensive red team engagements from $30,000 to over $100,000. Key cost factors include the number of targets, required accreditations, testing methodology, and whether on-site presence is needed. See our general pricing guide for more detail.