Penetration Testing Pricing

Choose between a focused one-shot penetration test or a continuous security testing program. TIDUM tailors every engagement to your scope, risk level, compliance needs, and remediation goals.

Basic

One-shot Penetration Testing

For organizations that need a focused annual penetration test for compliance, client assurance, or validation of a defined application, API, cloud, or infrastructure scope.

Let's Talk
  • Fast kickoff after scope validation
  • Secure project onboarding
  • Manual penetration testing
  • Progress and results summary
  • Direct collaboration with the TIDUM team
  • Ticketing workflow support where relevant
  • Customizable executive and technical reports
  • Clear remediation guidance
  • One remediation retest window

Premium

Continuous Penetration Testing

For teams that need an ongoing security testing program covering new features, APIs, exposed assets, and recurring assessments throughout the year.

Request a Quote
  • Everything in Basic
  • Continuous testing for new features and APIs
  • Comprehensive penetration testing twice a year
  • Attack surface monitoring
  • Periodic vulnerability scanning with manual validation
  • Cloud, web, API, and infrastructure exposure review
  • Remediation follow-up
  • Security advisory sessions
  • Executive and technical reporting over time

Frequently Asked Questions

  • How do the Basic and Premium plans differ?

    Basic is designed for a focused, one-shot penetration test on a defined scope. Premium runs as a continuous security testing program with recurring assessments, testing of newly deployed features and APIs, attack surface monitoring, remediation follow-up, and periodic reporting.

  • How are payment terms defined?

    Payment terms are set in the commercial proposal after the scoping discussion. One-shot assessments can be structured around project milestones, while continuous programs can be set up as a recurring engagement or annual agreement.

  • How is penetration testing pricing calculated?

    Pricing depends on the number of assets in scope, the complexity of the application or infrastructure, the selected testing method, the number of user roles, the depth of manual testing, reporting requirements, retesting needs, and the expected delivery timeline.

  • Can we start with a consultation before requesting a proposal?

    Yes. TIDUM can start with a short scoping call to understand your objectives, assets, constraints, and expected deliverables. This helps define the right engagement model and prepare a tailored proposal.

Ready to strengthen your security posture?

Tell us about your applications, infrastructure, cloud environment, or security goals. TIDUM will help you define the right engagement model and prepare a tailored proposal.

Contact Us