White-label pentesting for consultancies
Technical partner for consultancies, security firms and agencies. You keep the client. I execute, and deliver under your brand if you prefer.
I cover applications and APIs, mobile, external infrastructure, cloud and GenAI/LLM systems. I can work behind your team, join as the technical lead or deliver the report on your template.
Your client needs independent technical testing to support their ISO 27001 work, but you do not run penetration tests in-house. I deliver the testing and evidence while you retain the client relationship.
A delivery model you control
You keep the relationship
I do not appear in front of your client unless you want me to. I deliver through you, under your brand if you prefer (white label).
I run the pentest
Manual testing, a report mapped to the controls, retest evidence. Exactly the deliverable in the sample report below.
Fixed price, your margin
I quote a fixed technical fee per project. You retain control of your commercial terms and client pricing.
What you can commit to your client
| Service | What it covers | Turnaround |
|---|---|---|
| Web application pentest (single app) | Authenticated and unauthenticated, every role, and the API behind it | 10 working days |
| External infrastructure pentest | The full external perimeter and every public-facing asset | 7 working days |
| Verification retest | Included in every engagement | 3 days |
Typically booking 4–8 weeks out.
These are two common scopes. Mobile, cloud, full-scope and GenAI/LLM work is quoted after scoping. Fixed price per project, never by the hour; you set what your client pays. Mutual NDA and rules of engagement in writing before anything starts.
The deliverable that will carry your brand
A full anonymised sample report: executive summary, findings mapped to ISO 27001 and SOC 2 controls, proof-of-concept and concrete remediation. Show it to your client. No email required.
Whose name you'd be putting on the work
Published CVEs, open-source tooling and a professional history your team and client can review before the engagement.
The questions consultancies ask
Do you deliver white label?
Yes. I can deliver the report on your template, with your logo, and stay out of sight entirely. Or I join a call as your technical lead if that helps you close. Your call, per engagement.
Do you contact my client directly?
Not unless you ask me to. By default you are the only interface. I do not pitch, upsell or approach your client for other work.
Who signs the NDA?
A mutual NDA between us, before any scoping that touches sensitive information. If your client requires a tripartite agreement, I sign that too.
What if my client needs to test in production?
By default testing runs against a staging environment with demo or synthetic data. If production testing is genuinely required, it happens only under a specific, detailed contract defining the window, safeguards, data involved and responsibilities.
How fast can you turn one around?
10 working days for a web application, 7 for external infrastructure, from the moment I have access. I book 4 to 8 weeks out, so a shared pipeline view helps me hold a slot for you.
Do you carry professional indemnity insurance?
Yes, professional indemnity cover specific to penetration testing work, and I can send the certificate before we sign. This one matters more when you are subcontracting: you answer to your client for the work, so your own procurement or insurer will usually want it on file before the engagement starts.
Send the scope before you commit a date
Tell me the scope and the deadline and I will come back with a fixed price and a delivery date. The sample report shows exactly what your client would receive.