Cybersecurity
Services Division

Penetration testing, threat intelligence, SOC operations, and security awareness — real-world capability backed by active research and MSc-level expertise.

Overview
Penetration Testing
Vulnerability Assessment
Threat Intelligence
SOC & Awareness
Overview
Penetration Testing
Vulnerability Assessment
Threat Intelligence
SOC & Awareness

Quatech Cybersecurity Services

Our Cybersecurity division delivers offensive and defensive security services grounded in active research, MSc-level academic training, and hands-on lab experience across Kali Linux, Metasploitable, and custom-built tooling. We help SMEs and enterprises understand their risk and reduce it.

Offensive Security
Offensive

Penetration Testing

Web, network, and infrastructure penetration testing using industry-standard methodology and tooling.

View service
Assessment
Assessment

Vulnerability Assessment & Scanning

Systematic scanning and analysis using Nmap, Nikto, and OpenVAS to enumerate and prioritise vulnerabilities.

View service
Intelligence
Intelligence

Threat Intelligence Services

IP reputation, geolocation, and threat context powered by our Netra platform integrating AbuseIPDB and live threat feeds.

View service
Defence
Defence

SOC-as-a-Service & Awareness Training

Security monitoring and detection for SMEs, plus staff awareness training and phishing simulation programmes.

View service
Live Tools Try them now — no account required

UK Compliance & Security Tools

Self-assessment tools built to NCSC, ICO, CSRB, and NCSC supply-chain frameworks. Free to use — built and maintained by Quatech.

🛡️
NCSC Aligned

Cyber Essentials Compliance Checker

31-question self-assessment covering all 5 NCSC Cyber Essentials controls. Returns PASS / AT_RISK / FAIL with a downloadable branded report.

Try live ↗
📋
ICO Aligned

UK GDPR Data Breach Impact Assessor

27-question breach severity assessment. Returns LOW–CRITICAL severity with ICO 72-hour notification recommendation and a pre-filled Article 33 letter.

Try live ↗
CSRB / NCSC

CSRB Incident Reporter

UK Cyber Security & Resilience Bill classification tool. 17 questions across 9 regulated sectors — classifies to REPORT_24H, REPORT_72H, MONITOR, or NEAR_MISS.

Try live ↗
🔐
RFC 6238

MFA Authenticator PWA

Offline TOTP authenticator. PIN-encrypted vault, QR code scanning, 30-second countdown. No account, no tracking — installs to your phone home screen.

Try live ↗
Cybersecurity / Offensive Security

Penetration Testing

Authorised, methodical attacks on your systems to find what real attackers would — before they do. Web, network, and infrastructure scopes available.

About This Service

Quatech's penetration testers apply a structured, PTES-aligned methodology to simulate the tactics, techniques, and procedures of real-world attackers. Our testing spans web application, external network, internal network, and wireless infrastructure scopes.

Our capability is grounded in active MSc Cybersecurity study including CO7042 penetration testing, hands-on Kali Linux and Metasploitable labs, and the 23-project CyberLab GitHub portfolio. We use industry-standard tooling: Nmap, Metasploit, Burp Suite, Hydra, and Nikto.

Every engagement concludes with a plain-English report: an executive summary for leadership, a full technical finding set for your IT team, and a prioritised remediation plan with CVSS-rated risk scores.

Web application penetration testing (OWASP Top 10 coverage)

External and internal network penetration testing

Wireless network security testing

CVSS-rated findings with executive and technical reports

Remediation guidance and re-test included

Written Rules of Engagement before every engagement

Engagement Methodology

01

Scoping & Rules of Engagement

We define authorised targets, test windows, emergency contacts, and exclusions in a signed Rules of Engagement document. No testing begins without written authorisation.

02

Reconnaissance

Passive and active information gathering: OSINT, DNS enumeration, WHOIS, port scanning, service fingerprinting, and technology stack identification.

03

Vulnerability Identification

Systematic identification of vulnerabilities through automated scanning (Nmap, Nikto, OpenVAS) and manual verification to eliminate false positives.

04

Exploitation

Safe, controlled exploitation of confirmed vulnerabilities to demonstrate real-world impact. Metasploit, custom scripts, and manual techniques are applied as appropriate.

05

Post-Exploitation & Pivoting

Where scope permits, we demonstrate lateral movement, privilege escalation, and data access to show the full chain of compromise an attacker could achieve.

06

Report & Debrief

A full report is delivered: executive summary, technical findings with evidence, CVSS scores, and a prioritised remediation plan. A debrief call is included.

Lab Portfolio & Evidence

COMING SOON
Kali Linux lab screenshot
COMING SOON
Metasploit session capture
VIDEO
COMING SOON
Pentest walkthrough demo
COMING SOON
Sample findings report

Credentials & Standards

MSc Cybersecurity — UoL

Penetration testing methodology grounded in CO7042 coursework at the University of Liverpool (Russell Group).

IN PROGRESS

CEH / eJPT

Certified Ethical Hacker and eLearnSecurity Junior Penetration Tester certifications targeted for all pentest team members.

TARGETED

PTES Methodology

All engagements follow the Penetration Testing Execution Standard for consistency and completeness.

STANDARD

OWASP Top 10

Web application testing covers the full OWASP Top 10 and OWASP Testing Guide methodology.

STANDARD

Book This Service / Request a Quote

How It Works

Describe your target environment and the scope you need tested. We'll come back with a scoped proposal and written Rules of Engagement within one business day.

1

Submit your target details and preferred test scope

2

We issue a scoped proposal and Rules of Engagement for sign-off

3

Testing is conducted and a full report delivered within the agreed timeline

All penetration testing is performed under signed written authorisation. We do not conduct any testing without explicit client approval.
Request a Quote — Penetration Testing

Enquiry Received!

Our penetration testing team will review your scope and respond within one business day.

Cybersecurity / Assessment

Vulnerability Assessment & Scanning

Systematic discovery and prioritisation of security weaknesses across your infrastructure — giving you a clear, actionable risk picture.

About This Service

A vulnerability assessment is the essential first step in any security programme. Quatech uses a combination of automated scanning and manual verification to identify, catalogue, and prioritise vulnerabilities across your web applications, servers, network devices, and endpoints.

We use industry-standard tooling including Nmap for network discovery and service fingerprinting, Nikto for web server analysis, OpenVAS/Greenbone for comprehensive host vulnerability scanning, and custom scripts from our CyberLab toolset.

Results are correlated against the National Vulnerability Database (NVD) and CVSS v3.1 scoring, then presented in a clear risk register with remediation priorities aligned to business impact.

Network discovery and port/service enumeration (Nmap)

Web server and application scanning (Nikto, custom tools)

Host vulnerability scanning (OpenVAS / Greenbone)

CVE cross-referencing and CVSS v3.1 severity rating

Risk register with prioritised remediation plan

Quarterly re-scan option for continuous assurance

Assessment Procedures

01

Scope Agreement

Target IP ranges, URLs, and exclusions are agreed in writing. Scanning windows are set to minimise impact on production systems.

02

Network Discovery

Nmap scans enumerate live hosts, open ports, running services, and OS fingerprints. UDP scanning is included where agreed.

03

Vulnerability Scanning

OpenVAS performs authenticated and unauthenticated host scans. Nikto analyses web servers for misconfigurations, outdated software, and common vulnerabilities.

04

Manual Verification

Automated findings are manually verified to eliminate false positives before reporting. Context and exploitability are assessed for each finding.

05

Risk Rating & Prioritisation

Each vulnerability is rated by CVSS v3.1 score and re-prioritised against your business context: asset criticality, exposure, and ease of exploitation.

06

Report Delivery

A risk register and technical report are delivered covering all findings, evidence, CVE references, and a prioritised remediation plan.

Lab Portfolio & Evidence

COMING SOON
Nmap scan output
COMING SOON
OpenVAS scan dashboard
VIDEO
COMING SOON
Scanning tool demo
COMING SOON
Sample risk register

Credentials & Standards

MSc Cybersecurity — UoL

Vulnerability assessment skills developed through MSc practical modules and active CyberLab tooling.

IN PROGRESS

CompTIA Security+

Security+ covers threat and vulnerability management aligned with our assessment methodology.

TARGETED

CVSS v3.1

All findings rated using CVSS v3.1 from the National Vulnerability Database for consistent, comparable risk scoring.

STANDARD

CyberLab GitHub Portfolio

23 active security tooling repositories demonstrating practical vulnerability research and tool development capability.

IN PROGRESS

Book This Service / Request a Quote

How It Works

Tell us what you need scanned and we'll respond with a scoped proposal within one business day.

1

Submit your target details and preferred assessment scope

2

We agree scope, scanning windows, and issue a formal quote

3

Assessment is conducted and a risk register report delivered

Quarterly vulnerability scanning retainers available at discounted rates. Ask us for details.
Request a Quote — Vulnerability Assessment

Enquiry Received!

Our assessment team will review your scope and respond within one business day.

Cybersecurity / Intelligence

Threat Intelligence Services

Know who is targeting you and why. IP reputation, threat context, and geolocation intelligence powered by our Netra platform and live threat feeds.

About This Service

Quatech's threat intelligence services are powered by Netra — our internally developed threat analysis platform that aggregates data from AbuseIPDB, IP geolocation services, and curated threat feeds to give you actionable intelligence on the IPs and domains interacting with your environment.

We deliver intelligence in three forms: on-demand IP and domain reputation lookup, continuous monitoring of your exposed assets against threat feeds, and contextual threat reporting that maps observed indicators to known attack campaigns and threat actor profiles.

Whether you're investigating a suspicious login, triaging a firewall alert, or building a threat-informed defence strategy, our intelligence services give your team the context to act quickly and confidently.

IP reputation and abuse scoring via AbuseIPDB integration

Geolocation and ASN context for suspicious sources

Domain and URL threat classification

Indicator of Compromise (IOC) matching against live feeds

Threat actor profiling and campaign mapping

Custom threat intelligence reports for your sector

Service Procedures

01

Intelligence Requirement Definition

We work with you to define your priority intelligence requirements (PIRs): what threats matter most to your organisation, sector, and asset profile.

02

Data Collection & Feed Integration

Relevant threat feeds, OSINT sources, and our Netra platform are configured to collect indicators relevant to your environment and industry.

03

Indicator Enrichment

Raw indicators (IPs, domains, hashes) are enriched with geolocation, ASN, abuse history, WHOIS, and passive DNS data to build complete context.

04

IOC Matching

Enriched indicators are matched against your firewall logs, SIEM data, or access logs to identify whether known bad actors have interacted with your environment.

05

Threat Reporting

Findings are packaged into a clear threat intelligence report: what we found, the likely threat actors, their techniques, and recommended defensive actions.

06

Ongoing Feed & Monitoring

For retainer clients, continuous monitoring detects new indicators as they emerge, with weekly or monthly briefings keeping your team informed.

Platform & Portfolio

COMING SOON
Netra dashboard screenshot
COMING SOON
IP reputation analysis
VIDEO
COMING SOON
Netra platform walkthrough
COMING SOON
Threat intelligence report sample

Credentials & Standards

Netra — Quatech Platform

Internally built threat intelligence platform integrating AbuseIPDB, geolocation APIs, and curated threat feeds.

IN PROGRESS

MITRE ATT&CK Framework

Threat actor profiling and campaign mapping aligned to the MITRE ATT&CK knowledge base.

STANDARD

MSc Cybersecurity — UoL

Threat intelligence practices grounded in MSc academic study in threat analysis and digital forensics.

IN PROGRESS

AbuseIPDB & OSINT Sources

Integrated with AbuseIPDB, Shodan, VirusTotal, and open-source threat intelligence feeds for comprehensive coverage.

IN PROGRESS

Built by Quatech: The Netra Platform

Our Threat Intelligence Platform

Netra — built in-house, powered by real threat feeds

Netra is Quatech's own threat intelligence platform: real-time network traffic analysis, IP geolocation mapping, AbuseIPDB integration, and SOC alert triage in one dashboard. It powers the threat intelligence services we deliver to clients — and will be available at netra.com.

FastAPI React PostgreSQL Folium AbuseIPDB SSE
See Netra

Book This Service / Request a Quote

How It Works

Tell us what you're investigating or what ongoing intelligence coverage you need. We'll respond with a proposal within one business day.

1

Submit your intelligence requirements and any indicators to investigate

2

We scope the engagement and agree deliverables and timelines

3

Intelligence is delivered as a report or integrated into your security workflow

Retainer-based threat monitoring available monthly. One-off investigation reports also available.
Request a Quote — Threat Intelligence

Enquiry Received!

Our threat intelligence team will review your requirements and respond within one business day.

Cybersecurity / Defence

SOC-as-a-Service & Awareness Training

Continuous security monitoring for SMEs who can't afford a full in-house SOC — plus staff awareness training to reduce the human-layer risk.

About This Service

Quatech's SOC-as-a-Service gives SMEs access to professional security monitoring without the cost of an in-house team. We monitor your endpoints, firewall logs, and cloud activity for signs of compromise, alerting your team and investigating incidents as they arise.

Our Security Awareness Training programme addresses the most common entry point for attackers: your people. We deliver tailored training sessions, phishing simulation campaigns, and a measurable awareness improvement programme aligned to the NCSC Cyber Essentials framework.

Both services are designed to be practical and affordable for growing businesses that take security seriously.

Log aggregation, correlation, and threat detection

24/7 alert monitoring with defined escalation paths

Incident response support and containment guidance

Phishing simulation campaigns (click-rate tracking)

Staff cybersecurity awareness training (online and in-person)

Cyber Essentials alignment and preparation support

Service Procedures

01

Environment Onboarding

Log sources are connected (firewall, endpoint, cloud), parsing rules configured, and a baseline of normal activity established over the first two weeks.

02

Detection Rule Development

Detection rules are tuned to your environment, reducing false positives while ensuring high-fidelity alerts for genuine threat behaviours.

03

Continuous Monitoring & Alerting

24/7 monitoring of your log streams. Alerts are triaged by our SOC team and escalated to you with clear context and recommended action.

04

Incident Response Support

When a confirmed incident is detected, we support your team through containment, evidence preservation, and recovery — and document the incident for post-mortem review.

05

Phishing Simulation

Simulated phishing campaigns are sent to your staff. Click rates are tracked and reported, and targeted follow-up training deployed to users who clicked.

06

Awareness Training & Reporting

Training modules covering phishing, password hygiene, social engineering, and safe browsing are delivered. Completion and assessment scores are reported to management.

Project Gallery

COMING SOON
SOC alert dashboard
COMING SOON
Phishing simulation results
VIDEO
COMING SOON
Awareness training module preview
COMING SOON
Monthly SOC report sample

Credentials & Standards

NCSC Cyber Essentials Aligned

SOC and awareness services aligned to NCSC Cyber Essentials and Cyber Essentials Plus frameworks.

STANDARD

CyberLab SOC Simulator

Internal SOC simulation tool built and published as part of the 23-project CyberLab GitHub portfolio.

IN PROGRESS

ISO/IEC 27001 Aligned

Security monitoring and awareness training aligned to ISO 27001 controls for human resource and incident management.

STANDARD

CompTIA CySA+

Cybersecurity Analyst certification targeted for all SOC team members, covering threat detection and response.

TARGETED

Book This Service / Request a Quote

How It Works

Tell us about your environment and what security outcomes matter most. We'll propose a monitoring and training package matched to your size and budget.

1

Submit your environment details and security objectives

2

We scope a monitoring and/or training package and provide pricing

3

Onboarding is completed within 10 working days of sign-off

SOC-as-a-Service is priced per user/month. Training programmes are quoted per cohort. Free initial consultation included.
Request a Quote — SOC & Awareness

Enquiry Received!

Our SOC team will review your requirements and be in touch within one business day.