Best Penetration Testing Services - Page 2

How Many Penetration Testing Services Products Does G2 Track?

Total Products under this Category: 263

Category Stats (Sep 2026)

  • Average Rating: 4.75/5 The average rating of products in this category, based on all submitted ratings
  • Top Trending Product: ScienceSoft (+1.78%) - Among all products in this category, ScienceSoft recorded the largest rating increase compared to last month

Last updated: September 05, 2026

How Does G2 Rank Penetration Testing Services Products?

Why You Can Trust G2's Software Rankings:

  • 30 Analysts and Data Experts
  • 1,000+ Authentic Reviews
  • 263+ Products
  • Unbiased Rankings

G2's software rankings are built on verified user reviews, rigorous moderation, and a consistent research methodology maintained by a team of analysts and data experts. Each product is measured using the same transparent criteria, with no paid placement or vendor influence. While reviews reflect real user experiences, which can be subjective, they offer valuable insight into how software performs in the hands of professionals. Together, these inputs power the G2 Score, a standardized way to compare tools within every category.

G2 Grid® for Penetration Testing Services

G2 Grid® for Penetration Testing Services plotting products by satisfaction and market presence

Highlighted products: PlutoSec, CyStack Security Services, ThreatSpike, Vynox Security, Insight Assurance, CyberFortify, Packetlabs, and Vumetric Cybersecurity.

Underlying data: [Grid® JSON](https://www.g2.com/categories/penetration-testing-services/grids.json?focus%5B%5D=plutosec&focus%5B%5D=cystack-security-services&focus%5B%5D=threatspike&focus%5B%5D=vynox-security&focus%5B%5D=insight-assurance&focus%5B%5D=cyberfortify&focus%5B%5D=packetlabs-ltd-packetlabs&focus%5B%5D=vumetric-cybersecurity)

Cybri

Founded in 2017 in New York City, CYBRI provides Penetration Testing as a Service (PTaaS), helping organizations identify and remediate vulnerabilities across web applications, cloud, and network environments. We deliver auditor-ready reports supporting SOC 2, ISO 27001, NYDFS, HIPAA, and GDPR compliance.

Average Rating: 4.9/5.0

Total Reviews: 10

Who Is the Company Behind Cybri?

  • Seller: CYBRI
  • Year Founded: 2017
  • HQ Location: New York, US
  • LinkedIn® Page: www.linkedin.com
    10 employees on LinkedIn®

Who Uses This Product?

  • Top Industries: Computer Software
  • Company Size: 60% Medium, 40% Small

What Are Recent G2 Reviews of Cybri?

GRSee Consulting

Cybersecurity compliance you can confidently show your clients. GRSee is a cybersecurity and compliance services firm that helps organizations achieve, maintain, and operationalize security certifications without the complexity and guesswork typically associated with audits. We provide end-to-end support across frameworks such as SOC 2, ISO 27001, PCI DSS, GDPR, HIPAA, CMMC, and NIST, combining audit services, penetration testing (web, API, cloud, mobile, and AI systems), and ongoing security programs like vCISO and DevSecOps. GRSee delivers a hands-on, white-glove experience. Clients work directly with experienced security professionals who understand real-world architectures and risks, not generic auditors following rigid templates. From initial readiness through certification and continuous compliance, GRSee acts as an extension of your team, providing clear guidance, structured processes, and proactive support to ensure there are no surprises, delays, or unnecessary rework. The result is more than just a certification. Organizations leave the process with a security posture they understand, controls that reflect how they actually operate, and the confidence to share their compliance program with customers, partners, and stakeholders as a true trust signal, not just a checkbox. Organizations choose GRSee when they want clarity, speed, and confidence that their security program is both audit-ready and business-ready.

Average Rating: 4.9/5.0

Total Reviews: 22

Who Is the Company Behind GRSee Consulting?

Who Uses This Product?

  • Company Size: 73% Medium, 18% Small

What Are Recent G2 Reviews of GRSee Consulting?

Cognisys

Cognisys is a global cybersecurity services, consulting partner and CREST-accredited penetration testing provider. We turn security from a business blocker into a business enabler, working with fast-growing companies and established enterprises to reduce risk, unlock revenue, and build customer confidence with security programmes that are practical, measurable, and built to scale. As Vanta’s #1 Global Service Partner, we combine GRC platform automation with hands-on expertise so teams prove trust faster and stay continuously audit-ready. Our consultants support security and privacy compliance across leading frameworks, including SOC 2, ISO 27001, HIPAA, ISO 42001 and the EU AI Act. Our CREST-accredited penetration testing simulates real-world attack paths across web applications, APIs, cloud environments, and infrastructure. We help you validate controls, uncover exploitable weaknesses, and prioritise remediation based on true risk. We align our testing to recognised best practices, including OWASP, MITRE, and NCSC guidance, and we deliver clear, business-focused findings that engineering teams can act on immediately.

Average Rating: 4.7/5.0

Total Reviews: 58

Who Is the Company Behind Cognisys?

  • Seller: Cognisys
  • Company Website:
  • Year Founded: 2019
  • HQ Location: Leeds, England, United Kingdom
  • LinkedIn® Page: www.linkedin.com
    125 employees on LinkedIn®

Who Uses This Product?

  • Top Industries: Computer Software, Information Technology and Services
  • Company Size: 83% Small, 15% Medium

What Are Recent G2 Reviews of Cognisys?

CrowdStrike Security Services

CrowdStrike Services, including Incident Response (IR), Strategic Advisory Services and Technical Advisory Services, play a crucial role in helping organizations mature their security postures and stop breaches. CrowdStrike IR Services are designed to enable organizations to quickly and effectively respond to any cybersecurity incident, ensuring you get back to business faster. CrowdStrike also offers an array of strategic advisory services and technical advisory services to help customers better understand the depth and maturity of their existing cybersecurity practices. With a CrowdStrike Services Retainer in place you will be best prepared to react quickly and effectively to a cybersecurity incident and also benefit from CrowdStrike proactive services.

Average Rating: 4.9/5.0

Total Reviews: 7

Who Is the Company Behind CrowdStrike Security Services?

  • Seller: CrowdStrike
  • Year Founded: 2011
  • HQ Location: Sunnyvale, CA
  • Twitter: @CrowdStrike
    110,809 Twitter followers
  • LinkedIn® Page: www.linkedin.com
    21,058 employees on LinkedIn®
  • Ownership: NASDAQ: CRWD

Who Uses This Product?

  • Company Size: 57% Medium, 29% Large

What Are Recent G2 Reviews of CrowdStrike Security Services?

Framework Security

Framework Security is an award-winning cybersecurity firm specializing in penetration testing, AI governance, virtual CISO services, SOC 2 compliance, and full-spectrum security program development. We help organizations identify vulnerabilities, eliminate threats, and build robust security programs through a combination of expert-led assessments and automation. Our team is vendor-agnostic, highly experienced, and trusted by clients ranging from growth-stage tech companies to regulated enterprises. Recognized by industry leaders like Gartner, Clutch, and AWS Marketplace, FWS is committed to delivering tailored, transparent, and results-driven cybersecurity solutions that align with your business goals.

Average Rating: 5.0/5.0

Total Reviews: 15

Who Is the Company Behind Framework Security?

  • Seller: Framework Security
  • Year Founded: 2019
  • HQ Location: Austin, TX.
  • Twitter: @FrameworkSec
    91 Twitter followers
  • LinkedIn® Page: www.linkedin.com
    7 employees on LinkedIn®

Who Uses This Product?

  • Top Industries: Information Technology and Services
  • Company Size: 53% Small, 47% Medium

What Are Recent G2 Reviews of Framework Security?

What Are G2 Users Discussing About Framework Security?

StickmanCyber

StickmanCyber provides Cybersecurity As a Service to help you achieve your cybersecurity goals quickly, efficiently. Started almost 2 decades ago in Sydney in 2006, we began delivering a number of security programs of work including a large PCI DSS program for Energy Australia and since then, have grown to one of Australia's most trusted and respected Cyber Security firms. In 2020, we became a member of the NSW Government Cybersecurity Taskforce. We are also a member of the Australian Cyber Security Centre. Today, we service over 200 mid-tier and ASX-listed companies, providing them with comprehensive cyber security solutions tailored to their individual needs.

Average Rating: 4.5/5.0

Total Reviews: 9

Who Is the Company Behind StickmanCyber?

Who Uses This Product?

  • Company Size: 56% Small, 44% Medium

What Are Recent G2 Reviews of StickmanCyber?

Axipro Technology

Axipro is a compliance and security consultancy helping companies accelerate certification, reduce complexity, and stay continuously audit-ready. Axipro combines expert-led guidance, security-first practices, and powerful automation through Drata to shorten timelines, reduce stress, and give you a dedicated team committed to your long-term compliance success.

Average Rating: 4.9/5.0

Total Reviews: 40

Who Is the Company Behind Axipro Technology?

Who Uses This Product?

  • Who Uses This: CEO
  • Top Industries: Computer Software, Information Technology and Services
  • Company Size: 50% Small, 35% Medium

What Are Recent G2 Reviews of Axipro Technology?

OnSecurity Services

OnSecurity is the CREST-accredited AI-augmented penetration testing platform that unifies expert-led manual testing, continuous vulnerability management, and remediation tracking in one connected programme. Built by penetration testers for security and engineering teams, OnSecurity's Platform moves organisations beyond one-off, point-in-time pentests to an always-on offensive security programme. The platform gives teams live visibility into findings as they're discovered, free retesting and remediation workflows, and a single source of truth for vulnerability status across the business, cutting manual admin and reporting effort by 30-50% and saving security teams significant time on every test cycle. OnSecurity helps secure over 500 organisations including Gousto, Lidl, Yonder, Retail in Motion, Incident.io, L&G Group and many more...

Average Rating: 5.0/5.0

Total Reviews: 6

Who Is the Company Behind OnSecurity Services?

  • Seller: On Security
  • Year Founded: 2018
  • HQ Location: Bristol, GB
  • Twitter: @weareonsecurity
    1,338 Twitter followers
  • LinkedIn® Page: www.linkedin.com
    62 employees on LinkedIn®

Who Uses This Product?

  • Company Size: 50% Small, 50% Medium

What Are Recent G2 Reviews of OnSecurity Services?

Sekurno

Sekurno is a cybersecurity company that provides security services beyond mere compliance. As a globally recognised top cybersecurity company, we are dedicated to enhancing the current state of security in the business environment as well as implementing best engineering practices. We possess wide experience in cybersecurity and our professional industry-recognized certifications prove our expertise. Sekurno provides the following services: • Penetration Testing • Compliance (SOC2, ISO27001, GDPR, DORA, HIPAA, etc.) • S-SDLC (DevSecOps, Application Security, Code Review) • Security Awareness Training

Average Rating: 5.0/5.0

Total Reviews: 5

Who Is the Company Behind Sekurno?

  • Seller: Sekurno
  • Year Founded: 2019
  • HQ Location: Tallinn, EE
  • LinkedIn® Page: www.linkedin.com
    11 employees on LinkedIn®

Who Uses This Product?

  • Company Size: 100% Small

What Are Recent G2 Reviews of Sekurno?

Prescient Security

Prescient Security is a renowned leader in multi-framework compliance auditing, security assessments, and penetration testing, eliminating compliance gaps and enabling a fortified security stance for organizations. Using a Risk-Based Audit Approach versus a Requirement-Based Audit Approach, paired with the ability to customize audit deliverables based on specific client needs, Prescient Security operates from a cybersecurity standpoint first, is comprehensive yet granular, and in a fraction of the time.

Average Rating: 4.8/5.0

Total Reviews: 22

Who Is the Company Behind Prescient Security?

Who Uses This Product?

  • Top Industries: Computer Software
  • Company Size: 54% Small, 17% Medium

What Are Recent G2 Reviews of Prescient Security?

Software Secured

Software Secured offers comprehensive penetration testing services designed to help organizations identify, understand, and remediate security vulnerabilities in their applications and networks. By combining manual testing methodologies with industry-standard frameworks, Software Secured ensures a thorough assessment of your security posture, enabling compliance with standards such as SOC 2, ISO 27001, PCI DSS, HIPAA, GDPR, and CCPA. Key Features and Functionality: - Manual Penetration Testing: Conducted by full-time, Canadian-based security experts, ensuring in-depth and accurate assessments. - Comprehensive Coverage: Testing mapped to five industry frameworks, including OWASP Top 10, SANS Top 25, WSTG, ASVS, and NIST, to maximize coverage and uncover potential security gaps. - Actionable Reporting: Detailed reports with steps to reproduce and remediate vulnerabilities, calibrated using CVSS and DREAD methodologies to prioritize issues effectively. - Remediation Support: Consultative assistance throughout the remediation process, including multiple rounds of retesting to validate the closure of identified vulnerabilities. - Vulnerability Management Portal: A dedicated dashboard for managing and tracking vulnerabilities, facilitating efficient remediation and compliance efforts. Primary Value and Problem Solved: Software Secured addresses the critical need for organizations to achieve and maintain robust security postures, ensuring compliance with industry standards and protecting sensitive data. By identifying and mitigating vulnerabilities, their services help reduce the risk of cybersecurity breaches, enhance client trust, and support business growth. The combination of expert manual testing, comprehensive coverage, and ongoing remediation support empowers organizations to manage risk effectively and demonstrate security maturity to clients, partners, and investors.

Average Rating: 4.9/5.0

Total Reviews: 4

Who Is the Company Behind Software Secured?

Who Uses This Product?

  • Company Size: 50% Medium, 50% Small

What Are Recent G2 Reviews of Software Secured?

360 Advanced

360 Advanced is a relationship-focused cybersecurity and compliance firm offering security, privacy and compliance-oriented solutions customized to meet your organization and your clients' needs. Through our team of seasoned professionals, we take a hands-on approach to build a customized roadmap that outlines your security and compliance journey. We are focused on delivering tangible results that enable you to open doors to opportunities your organization would otherwise not have access to and allows the retention of the business you work hard to secure. In order to fully support your security and compliance journey, we are a licensed PCI Qualified Security Assessor (QSA), an ISO Certification Body, HITRUST CSF Assessor, and a State/FedRAMP 3PAO, and offer the SOC Suite (SOC 1, SOC 2, SOC 3) of services through our independent CPA firm. We are also properly credentialed to perform many of the other required security and privacy related frameworks. Additionally, our 360 Cyber team is focused on delivering services such as - penetration testing, vulnerability, gap and risk assessments, remediation, GRC administration and other related advisory services. Our Mission: Making Better Businesses 360 Advanced is driven by a singular passion making businesses better. By evaluating risk and fostering trust, we help organizations navigate the complexities of cybersecurity and compliance. While our expertise has positioned us as an industry leader, our true mission is empowering businesses to thrive securely in the digital age.] Additional Information: [*360 Advanced, Inc., an independent licensed CPA firm provides attest services while 360 Advanced Cybersecurity, LLC delivers business advisory and non-attest services in strict adherence to all applicable laws, regulations, and standards. Together under the 360 Advanced brand, we offer a comprehensive suite of cybersecurity and complianc

Average Rating: 5.0/5.0

Total Reviews: 16

Who Is the Company Behind 360 Advanced?

Who Uses This Product?

  • Company Size: 56% Medium, 25% Small

What Are Recent G2 Reviews of 360 Advanced?

Biz Serve IT

Our sole objective in establishing Biz Serve IT was to become the most reliable ally in safeguarding the industry against cyber attacks. With a dedicated group of cybersecurity experts, we aim to help you enhance compliance, address talent gaps, and ensure that your organization remains under the radar, allowing you to concentrate on your core priorities.

Average Rating: 4.8/5.0

Total Reviews: 6

Who Is the Company Behind Biz Serve IT?

Who Uses This Product?

  • Company Size: 50% Small, 50% Medium

What Are Recent G2 Reviews of Biz Serve IT?

What Are G2 Users Discussing About Biz Serve IT?

Echelon Risk + Cyber

Echelon Risk + Cyber is a cybersecurity professional services firm built on the belief that security and privacy are basic human rights. Protecting them requires more than tools or checklists. It requires focus, expertise, and a deep understanding of how risk impacts real businesses. Cybersecurity, privacy, and technology risk continue to evolve and create meaningful disruption across industries. Echelon was built to address those challenges head-on. We partner with organizations that want honest guidance, clear priorities, and security programs that actually work in practice. What We Do Echelon partners with organizations to design, build, operate, and mature cybersecurity and compliance programs aligned to business goals, regulatory requirements, and real-world risk. We take the time to understand each organization’s environment, constraints, and risk tolerance, then deliver practical solutions that drive measurable improvement. We do not believe trust is built through fear or complexity. It is built through transparency, accountability, and consistent execution. Core Services vCISO-Led Security Team as a Service Strategic security leadership and execution delivered by experienced vCISOs and practitioners who operate as an extension of your team. This includes governance, roadmap development, risk management, and day-to-day security leadership. Offensive Security and Adversary Simulation Real-world testing designed to identify gaps before attackers do. Services include penetration testing, red teaming, purple teaming, and adversary simulation tailored to your threat landscape. Defensive Security and Hardening Hands-on defensive services focused on reducing attack surface and improving resilience. This includes cloud security, identity and access management, endpoint protection, vulnerability management, and security architecture hardening. Risk Advisory and GRC Governance, risk, and compliance services that help organizations build, scale, and sustain security programs. Echelon supports frameworks and regulations including SOC 2, ISO 27001, NIST, HIPAA, GDPR, and CMMC. Managed Security Services Ongoing monitoring, advisory support, and operational security services designed to complement internal teams and provide consistent protection as organizations grow. Who We Work With and Partner With Echelon works with publicly traded and privately held organizations across industries, including renewable energy companies like Montauk Renewables and high-profile professional sports organizations such as the Detroit Pistons. We also partner with leading cybersecurity and compliance technology providers including Drata and CrowdStrike to help clients operationalize security and compliance at scale. From mid-sized organizations to enterprise leaders, Echelon is trusted to deliver forward-thinking, actionable cybersecurity programs that strengthen resilience, reduce risk, and support long-term business objectives. Why Organizations Choose Echelon Clients choose Echelon for a human-led, execution-focused approach to cybersecurity. Our teams combine deep technical expertise with business context to deliver outcomes, not just reports. We tailor every engagement to the organization’s environment and risk profile. We prioritize practical improvements over theoretical perfection. And we remain accountable long after assessments are complete.

Average Rating: 5.0/5.0

Total Reviews: 8

Who Is the Company Behind Echelon Risk + Cyber?

  • Seller: Echelon Risk + Cyber
  • Company Website:
  • Year Founded: 2021
  • HQ Location: Pittsburgh, US
  • LinkedIn® Page: www.linkedin.com
    65 employees on LinkedIn®
  • Ownership: Private

Who Uses This Product?

  • Company Size: 63% Medium, 25% Small

What Are Recent G2 Reviews of Echelon Risk + Cyber?

ITECS Outsourcing

Since 2002, ITECS has provided customized turn-key services to a variety of high-profile clients, including Frito Lay, Pizza Hut, Miller Brewing, Kraft, and more. We scale our services to any business size and offer rapid on-site and remote IT support, cybersecurity, consulting, and cloud hosting solutions. Our dedicated team of agents is capable of meeting the demands of your business no matter what industry you're in. At ITECS, we treat every client interaction as an opportunity to improve our reputation and grow together. ITECS is a unique technology solutions provider that sets itself apart from its competitors by offering a personalized and flexible approach to IT services. Unlike traditional help desk models, ITECS assigns a pod of experts to each client to establish a more personal and collaborative relationship. This allows for a deeper understanding of the client's business needs and challenges, leading to tailored solutions that align with their goals. ITECS also offers scalable services that can grow alongside businesses, providing a wide range of technologies and services that meet their unique requirements. By offering this customized and adaptable approach, ITECS stands out as a reliable partner for businesses looking to enhance their technological capabilities.

Average Rating: 4.9/5.0

Total Reviews: 11

Who Is the Company Behind ITECS Outsourcing?

  • Seller: ITECS
  • Year Founded: 2002
  • HQ Location: Dallas TX
  • LinkedIn® Page: www.linkedin.com
    15 employees on LinkedIn®

Who Uses This Product?

  • Company Size: 64% Small, 36% Medium

What Do G2 Reviewers Say About ITECS Outsourcing?

AI-generated summary from verified user reviews

Pros
  • Users value the courteous and professional customer support provided by ITECHS, meeting all their IT needs.
  • Users praise the professionalism of ITECHS staff, highlighting their courteous and friendly service for all IT support needs.
Cons
  • Users find ITECHS expensive, yet believe the quality of service justifies the cost.

What Are Recent G2 Reviews of ITECS Outsourcing?

Lauren Worth
LW
Researched and written by Lauren Worth
Updated October 3, 2024