Tevora logo

Tevora

CREST-accredited California consultancy blending compliance expertise with penetration testing. First to earn ISO 17020 for MITRE ATT&CK and PTES frameworks.

Featured in: Best CREST Pen Testing Companies

Founded
2003
Team Size
51-200
Geography
Regional
Last verified: Mar 2026

About

Tevora is a CREST-accredited cybersecurity consulting firm based in Irvine, California, founded in 2003. The firm integrates deep compliance alignment with rigorous penetration testing services, making it a strong choice for organisations operating under PCI DSS, HITRUST, HIPAA, FedRAMP, and ISO frameworks.

Tevora is the first organisation to earn ISO 17020 accreditation for both NYS DFS (23 NYCRR 500) requirements and the MITRE ATT&CK Framework and PTES. They also hold ISO 27001 and ISO 27017 certifications. Their testing services include network and application penetration testing, purple teaming, physical penetration testing, and custom AI/LLM application pen testing.

The firm is particularly strong in regulated industries including financial services, healthcare, and government, where compliance evidence and audit-ready reporting are critical requirements.

Best For

EnterpriseMid-MarketGovernment

Methodologies

OWASPPTESNISTCREST

Is this your company?

Claim Tevora to verify the listing, update your services and pricing, respond to leads, and add the Verified badge to your profile. Free for companies, we just need to confirm your business email.

Claim This Profile