Cost factors for a pentest or cyber audit

Understand what influences pentest or cyber audit pricing.

Short answer

The cost of a pentest or cyber audit mainly depends on scope, expected depth, number of assets, test accounts, production constraints, reporting level and whether a retest is needed. A serious quote always starts with scoping.

Main factors

A short audit on a simple application does not require the same effort as an internal pentest with Active Directory, Wi-Fi, pivoting and detailed restitution. Test windows, sensitive environments and deliverable expectations also affect the effort.

How to get a reliable estimate

The best approach is to share the context, objectives, scope and known constraints. QS Cybersecurity can then propose a mission sized to the real risk and expected outcome.