Skip to main content
Home/Services
Penetration Testing Services

Offensive Security Testing Scoped for Canada

Senior-led penetration testing across cloud, network, web, mobile, and API attack surfaces. Every engagement includes detailed reproduction proofs, executive summaries, and free retesting countersigned by certified Canadian specialists.

Our Capabilities

Seven Targeted Security Assessments

Choose a focused assessment or bundle internal, external, and application testing into a unified risk assurance program.

Internal Network Penetration Testing

Simulate an assumed-breach adversary inside your network - attacking Active Directory, escalating privileges, and moving laterally to your crown-jewel assets.

Duration: 1-2 weeks From $9,500

External Network Penetration Testing

Test your internet-facing perimeter the way a real threat actor would - with OSINT, exposed service discovery, and exploit chaining against live targets.

Duration: 1 week From $5,500

Cloud Penetration Testing

Uncover misconfigurations, IAM privilege escalation paths, and exploitable architecture flaws across your AWS, Azure, or GCP environment before an attacker does.

Duration: 1-2 weeks From $7,500

Cloud Configuration Review

A systematic CIS benchmark audit of your AWS, Azure, or GCP environment - delivered as an audit-ready baseline and engineering remediation plan.

Duration: 1 week From $4,500

Web Application Penetration Testing

Deep, human-led security testing of your web applications - uncovering complex authorization flaws, business logic bypasses, and injection vulnerabilities that scanners miss.

Duration: 1-2 weeks From $6,500

Mobile Penetration Testing

Rigorous security testing for iOS and Android applications against OWASP MASVS - assessing binary security, local storage, runtime manipulation, and API backends.

Duration: 1-2 weeks From $8,500

API Penetration Testing

Targeted security assessments of REST, GraphQL, and gRPC APIs - hunting for BOLA, broken function authorization, mass assignment, and data exfiltration vectors.

Duration: 1-2 weeks From $5,500
Canadian Operations

Local Expertise in Calgary & Toronto

Lorikeet Security Canada conducts technical security testing compliant with OSFI Guideline B-13, PIPEDA, Alberta PIPA, and Quebec Law 25. We provide both on-site physical presence in Alberta and Ontario as well as secure remote appliance deployments across all Canadian provinces.

Calgary HubAlberta Operations
Toronto HubOntario Operations
Social Proof

Trusted by Fast-Growing Companies

JBWeb

Digital Agency

“From Pentest to malware analysis these guys know what they're doing.”

We came to Lorikeet Security with not so small task of tracking down the source of a cyber incident. Lorikeet Security looked at attack vectors and they set up a full test environment and really showed they knew what they were doing. With amazing analytics reports on down to the minute of login attempts. The level of detail that Cyber Insurance Companies wish they had in house - Those reports are an invaluable tool and give confidence and value add to the executive level for pre or post ransomware attacks.

SOCaaS Incident Response
Flowtriq

SaaS Platform

“Streamlined Security Testing with White Glove Service”

We used Lorikeet Security for a PTaaS pentest and briefly tried their ASM tool - both were amazing. Fast tests, accurate findings, and everything handled through a modern interface. The report summary, live chat, asset management, and live quoting features of the portal really stand out. Their 'white glove' touch contributed to a 10/10 experience. They're truly changing the pentest game with the new portal clients can use.

Penetration Testing Continuous Assessments
Next Steps

Scope Your Engagement in One Call

Tell us what is in scope and we come back with a fixed flat-rate price and a clear start date. No discovery-call maze, no hourly estimates that move.