Tevora
CREST-accredited California consultancy blending compliance expertise with penetration testing. First to earn ISO 17020 for MITRE ATT&CK and PTES frameworks.
Featured in: Best CREST Pen Testing Companies
Last verified: Sept 2026
Key facts
- Holds CREST, ISO 27001, and PCI QSA accreditations.
- Founded in 2003.
- Headquartered in Irvine, California, United States.
- Team of 51-200 security professionals.
- Delivers 9 penetration testing services.
- Serves clients in North America.
- Specialises in Payment Security, Financial Services Security, and Multi-Framework Compliance.
- Compliance expertise across PCI DSS, HIPAA, FedRAMP, ISO 27001, and SOC 2.
About
Tevora is a CREST-accredited cybersecurity consulting firm based in Irvine, California, founded in 2003. The firm integrates deep compliance alignment with rigorous penetration testing services, making it a strong choice for organisations operating under PCI DSS, HITRUST, HIPAA, FedRAMP, and ISO frameworks.
Accreditations
CRESTISO 27001PCI QSA
Services
Web Application Penetration TestingNetwork Penetration TestingCloud Penetration TestingAPI Penetration TestingPurple TeamingSocial Engineering
+ Also offers 3 more services
Methodologies
OWASPPTESNISTCREST
Is this your company?
Claim Tevora to verify the listing, update your services and pricing, respond to leads, and add the Verified badge to your profile. Free for companies, we just need to confirm your business email.
Claim This Profile