Newcastle cyber security

Penetration testing and compliance for Newcastle and Hunter businesses, including critical infrastructure operators.

Group 273

We specialise in cyber security services

What drives security spending in Newcastle. The Port of Newcastle is one of the world's largest coal export terminals, and the region is in the middle of a serious energy transition, with renewables, hydrogen and grid infrastructure projects running alongside the existing industrial base. Add defence shipbuilding, advanced manufacturing, a large health sector and the University of Newcastle.

The result is a concentration of critical infrastructure obligations that is unusual outside a capital city, sitting on top of industrial sites whose control systems were designed decades before anyone thought about network security.

The frameworks that come up most.

  • Security of Critical Infrastructure Act, heavily. Port operators, energy generators and transmission businesses carry risk management programme obligations and mandatory incident reporting, and some assets attract enhanced obligations as systems of national significance.
  • ISO 27001 for the engineering and professional services firms supplying them, usually because a client asked rather than because a regulator did.
  • ASD Essential Eight as a baseline, and a common contractual requirement in the supply chain.
  • Cyber Security Act 2024 ransomware payment reporting, in force since 30 May 2025 for businesses over $3 million turnover, with a 72 hour deadline.

The operational technology problem, stated honestly. Hunter industrial sites run control systems that predate modern security thinking and cannot simply be patched on a Tuesday afternoon. Testing them requires a different approach to corporate IT, and a tester who does not understand that can cause the outage they were hired to prevent. Scope this deliberately, and be sceptical of any provider who quotes an operational technology environment from a standard price list without asking what is in it.

CREST Accredited Penetration Testing in Newcastle

Siege Cyber is a CREST-accredited company for penetration testing. The accreditation is assessed and held at company level and is verifiable on the CREST member register. In Newcastle that matters most around the port, energy and grid infrastructure work, where operational technology environments need testers who can evidence their competence rather than just their tooling.

What we actually do. External and internal network, web application, API and cloud penetration testing, boundary testing between corporate and operational environments, and fixed-price ISO 27001 programmes. We are Brisbane based and work with Hunter clients remotely, on site where the environment genuinely requires it.

Australia's top talent

We have a team of highly skilled and well-respected cybersecurity professionals based in Australia. With extensive expertise in areas such as penetration testing, incident response, compliance and cloud security, our professionals deliver top-notch solutions to help businesses effectively safeguard their digital assets.

Partnering with Managed Service Providers (MSP)

We partner with other cyber security organisations, such as MSPs, Resellers, Cyber Insurance providers, Consultants and Compliance professionals to maximise their cyber security capabilities and protect their clients.

By building relationships with our partners, we are able to better understand and service their clients' need. Our partners can trust that their clients receive the industry-best cyber security services from Australia's leading cyber security experts.

Battle Ready, tried and true

Siege Cyber is an Australian owned and operated company, bringing together over 30 years of experience in providing cyber security solutions.

threats-logo

testing methodologies

Cyber Security Testing Methods to Suit Newcastle Businesses.

Hunter engagements frequently involve the boundary between corporate IT and operational technology, which is where the serious findings usually sit. Where active testing carries real operational risk we will run a passive assessment instead and state clearly which findings we could not verify, rather than risk an outage to tick a box.

Certifications

Australia's Most Skilled Cyber Security Professionals.

In the rapidly evolving landscape of Cyber Security, it is crucial to remain up-to-date with the latest trends and threats. At Siege Cyber, we prioritise continuous training and actively pursue cybersecurity certifications to ensure our team is equipped with the most current knowledge and skills.

OUR partners Say