About Siege Cyber

We're an Australian cybersecurity company that helps businesses get certified and stay protected, without the complexity or the budget surprises.

Australian team, every engagement. Every person you work with is based in Australia. No offshore outsourcing, no language barriers, no chasing responses across time zones. When you call, you speak to the people doing the work.

We service all of Australia. It doesn't matter where you're based; we work with clients in every state and territory.

Fixed pricing, no budget creep. Our services are delivered as fixed-price packages, so you know exactly what you're paying before we start. No day-rate consulting, no surprise invoices.

Certified specialists, not generalists. Our penetration testers and compliance consultants hold industry-recognised certifications. You're getting people who know what auditors expect, because they've done this hundreds of times.

Two services. One goal. Get you certified and protected.

Penetration Testing We find the vulnerabilities in your systems before someone else does. Our certified testers assess your web applications, infrastructure, and networks, then give you a clear, actionable report, not a 100-page document nobody reads. Whether you need a pentest for compliance, a client requirement, or peace of mind, we make the process simple and straightforward.

Compliance Certification Need ISO 27001 or SOC 2? We handle the heavy lifting. Our fixed-price packages take you from starting point to audit-ready, with a clear timeline, minimal disruption to your team, and hands-on guidance at every step. No open-ended consulting. No guesswork.

Why we do what we do

I started Siege Cyber with a simple goal: to help Australian businesses get cybersecurity right without the complexity, the jargon, or the budget blowouts.

After 25 years in this industry, I've seen too many companies pay for advice they can't action, or get handed a compliance certificate that doesn't actually make them safer. That's not how we operate.

At Siege Cyber, we do two things really well: we test your defences through penetration testing, and ensure you PASS and MAINTAIN compliance certifications like ISO 27001 and SOC 2. We do it at a fixed price, on a clear timeline, and we stick with you until it's done.

Our goal is straightforward: we want to be the cybersecurity partner that Australian businesses actually trust to get them across the line.

If that sounds like what you're looking for, I'd love to have a chat.

Whether you need a penetration test, a clear path to ISO 27001 or SOC 2, or you just want to talk through your options, we're here to help. Book a free, no-obligation call and let's work out the best next step for your business.

30 minutes with Peter Stewart, our founder. No pitch, no obligation. You leave with a fixed price, or a straight answer about what you actually need.

Our Core values

Every consultancy publishes a values list. These are ours written as things you can hold us to, rather than words.

The person who tests writes the report. No handoff to a report writer who was not in the engagement, and no account manager fielding your technical questions afterwards. You talk to whoever found the finding.

Fixed price, fixed scope. The number in the proposal is the number on the invoice. Scope is written down in enough detail that neither side can be surprised by it later.

We will tell you when you do not need the work. Advisory engagements regularly end with a recommendation to do something smaller, or to close known gaps before testing rather than paying us to confirm them. That costs us revenue in the short term and it is the main reason clients come back.

Findings ranked by what they would let an attacker do. Not by a scanner score. A report your engineers can act on and your auditor will accept, with reproduction steps and specific remediation.

Australian team, every engagement. Every person who touches your environment is based in Australia. No offshore subcontracting and no time zone gaps.

Accreditation you can verify. Siege Cyber is a CREST-accredited company for penetration testing. You can confirm that yourself on the CREST Australia New Zealand approved companies register rather than taking our word for it.

testing methodologies

Cyber Security Testing Methods to Suit Australian Business.

We adapt and tailor our testing methodologies to accommodate the distinct requirements of our customers' businesses, guaranteeing that our cyber security assessments and solutions are precisely designed to address the specific needs of each Australian organisation.

Certifications

Australia's Most Skilled Cyber Security Professionals.

In the rapidly evolving landscape of Cyber Security, it is crucial to remain up-to-date with the latest trends and threats. At Siege Cyber, we prioritise continuous training and actively pursue cybersecurity certifications to ensure our team is equipped with the most current knowledge and skills.

JOIN THE TEAM - Protect Australia with cyber security solutions

At Siege Cyber, our team comprises of highly experienced cyber security professionals dedicated to helping you achieve your career goals. Working alongside like-minded individuals who share a passion for cyber security, a career with us means immersing yourself in a community that lives and breathes cyber security.

As cyber threats evolve, computer security companies must continuously innovate to stay ahead of attackers. Cyber security consultants play a crucial role in helping organisations navigate the complex landscape of digital threats.

We foster a culture of continuous learning and growth, actively encouraging and supporting all team members to participate in capture the flag (CTF) security labs and events where you can further enhance your skills and knowledge.

Our industries

Through direct collaborations with businesses and managed service providers, we have delivered comprehensive cyber security services, advisory and penetration testing to various industries, including manufacturing, commercial, legal, and various others.

Our expertise spans a broad spectrum, allowing us to cater to the unique cyber security needs of organisations across different sectors.

  • Mining
  • Agriculture and Farming
  • Manufacturing
  • Healthcare and social assistance
  • Education and training
  • Construction
  • Retail and consumer goods
  • Finance and insurance
  • Tourism
  • Technology
  • Legal

Common questions

What does Siege Cyber do?

Siege Cyber is an Australian cyber security consultancy based in Brisbane. It delivers two things: CREST accredited penetration testing across networks, web applications, APIs, mobile applications and cloud environments, and fixed-price certification programmes that take organisations to ISO 27001, SOC 2 or ISO 42001.

Is Siege Cyber an Australian company?

Yes. Siege Cyber is the trading name of Siege Group Pty Ltd, ABN 14 639 942 877, based at Level 27, 32 Turbot Street, Brisbane, Queensland. Every person who works on an engagement is based in Australia. There is no offshore subcontracting.

What accreditations does Siege Cyber hold?

Siege Cyber is a CREST-accredited company for penetration testing, which is assessed and held at company level and can be verified on the CREST Australia New Zealand approved companies register. It also holds SMB1001 Gold Level 3 and was a finalist in the 2025/2026 Australian Cyber Awards. CREST accredits companies and certifies individuals, and accreditation is granted separately by discipline.

Who will I work with?

Engagements are led by Peter Stewart, the founder and Managing Director, who holds CISSP and MAICD and has more than twenty years in cyber security including senior engineering roles at SentinelOne. The person who does your testing is the person who writes your report and answers your questions afterwards.