5 firms name this framework on its website
3Tenets Consulting
Penetration testing, AI and LLM security, threat and risk assessment, incident resilience, privacy impact assessment and governance/vCISO services.
- Pen testing
- AppSec
- GRC advisory
- IR and forensics
- Privacy
- NIST CSF
- CIS Controls
- ISO 27001
- MITRE ATT&CK
- OWASP
eSentire
24/7 managed detection and response and SOC service with digital forensics and incident response, response and remediation, and autonomous penetration testing and continuous threat exposure management.
- MDR and SOC
- IR and forensics
- Pen testing
- SOC 2
- ISO 27001
- MITRE ATT&CK
Field Effect
Managed detection and response across endpoint, network, cloud and identity, with a 24x7 SOC, incident response, IR readiness and cybersecurity assessments. Focus on small and mid-sized organisations and their partners.
- MDR and SOC
- IR and forensics
- MITRE ATT&CK
Plurilock
Cybersecurity services firm covering adversary simulation, cloud and data protection, identity and compliance readiness, including CPCSC and CMMC readiness for defence suppliers.
- Pen testing
- Red team
- Cloud security
- IAM
- GRC advisory
- +2
- CPCSC
- CMMC
- NIST 800-171
- MITRE ATT&CK
- OWASP
Vumetric
Penetration testing and security assessment provider covering network, application, API, specialized (medical device, IoT, SCADA/ICS), red team and social engineering testing, plus vulnerability assessment.
- Pen testing
- Red team
- Vulnerability mgmt
- AppSec
- OT and ICS
- PCI DSS
- SOC 2
- ISO 27001
- GDPR
- OWASP
- +1
// more
Other frameworks
- ISO/IEC 27001
- SOC 2
- PCI DSS
- NIST Cybersecurity Framework
- NIST SP 800-171
- CMMC
- CPCSC
- ITSG-33
- CIS Controls
- PIPEDA
A firm appears here only when its own website names the framework. That is not a statement that it is certified, accredited, or qualified for it. Confirm with the firm. How the directory works.