For Australian MSPs & IT Consultancies · Wholesale Capacity
Buy pentest capacity once. Deploy it whenever your clients need it.
No per-deal sales cycle. Your brand, our delivery. Volume pricing that gets better the more you commit.
Prepay for a block of engagements at a partner rate. Draw down whenever a client needs a test. We stay invisible.
Prepaid
No per-deal re-quoting
5–10 days
Per-engagement turnaround
100%
White-labelled — your brand only
AU-based
Australian team & operations
Buy a block. Deploy as needed.
Engagements are pre-purchased at a partner rate. Each client job draws one engagement from your block — no per-deal approval, no re-quoting.
Trial
1–2 engagements
$2,500
$2,500 / engagement · no discount
- ✓No volume commitment
- ✓Low-friction entry point
- ✓Standard delivery SLA
- ✓Full white-label report
Starter
5 engagements
$11,250
$2,250 / engagement
10% off standard rate
- ✓Volume discount on all engagements
- ✓Priority scheduling
- ✓Full white-label report
Growth
10 engagements
$20,000
$2,000 / engagement
20% off standard rate
- ✓Best discount-to-commitment ratio
- ✓Priority scheduling
- ✓Dedicated partner contact
Scale
20 engagements
$35,000
$1,750 / engagement
30% off standard rate
- ✓Deepest per-engagement rate
- ✓Priority scheduling
- ✓Dedicated partner contact
- ✓Co-marketing support available
Enterprise / Custom
20+ engagements · custom terms
For partners with high-volume pipelines. Custom block sizes, dedicated account management, negotiated rates, and co-marketing options. Talk to us directly.
SMB1001 assessments. Pre-purchased in bulk.
For MSPs with clients pursuing SMB1001 certification. Buy a block of compliance assessments at a partner rate and deploy them as clients are ready.
Assessment Blocks
Flat-rate, count-based. One unit = one SMB1001 assessment scoped per client. Pricing proposed — confirm before publishing.
Uplift Blocks
Dollar-credit pool, not count-based. Suited to full done-for-you Gold uplift + certification work (~$5k–$15k per client). Partner draws down against each quoted uplift engagement.
Custom Uplift Pool
$100,000+ · negotiated rate
Not sure which block type fits your clients? Book a 30-minute partner call and we'll map it out with you.
Buy once. Deploy on demand.
The block model removes the per-deal friction. Once your block is active, you can move from client request to engagement kick-off in hours, not days.
Buy a block upfront
Choose the block size that fits your pipeline. Pay once — no per-deal approvals, no invoice negotiation when a client comes in.
Submit requests as clients need them
When a client engagement is ready, submit a request against your block using our briefing template. No re-quoting, no waiting — already paid.
We deliver under your brand
Our testers run the engagement. Reports and all client-facing output carry your branding. We are invisible to your end client.
Block balance depletes with use
Each completed engagement draws one unit from your block. You can track your remaining balance at any time.
Renew or upgrade when balance runs low
We'll notify you when your block is running low. Partners typically move up a tier on renewal as their pipeline grows.
What We Deliver on Every Engagement
Testing scope
- ✓External Network Penetration Testing
- ✓Web Application Penetration Testing
- ✓Internal Network Penetration Testing
- ✓Cloud Configuration Review (AWS / Azure)
- ✓Social Engineering & Phishing Simulation
- ✓Compliance-Mapped Reporting (SOC 2, ISO 27001, PCI-DSS, HIPAA)
Report & process
- ✓Fully editable, unbranded report in DOCX + PDF
- ✓Executive summary written for non-technical stakeholders
- ✓Remediation guidance for every finding
- ✓5–10 business day turnaround
- ✓Methodology: OWASP, NIST, PTES-aligned
- ✓Post-report technical support for your team
Want to see what the report actually looks like?
Download Sample ReportA credible partner your clients will respect.
Backed by Spectrum Stream
Powered by Aussie Pentest — the penetration testing arm of Spectrum Stream Pty Ltd, an Australian cybersecurity company with clients across Victoria, NSW, and Queensland.
Industry-standard methodology
Every engagement follows OWASP, NIST, and PTES-aligned methodology. Your clients receive the same rigour they'd expect from a top-tier security firm.
Compliance-ready output
Reports are structured to satisfy SOC 2, ISO 27001, PCI-DSS, HIPAA, and NIST audit requirements — tailored per engagement.
Zero brand exposure
We operate entirely under your brand. No Aussie Pentest watermarks, no cross-sell attempts, no contact with your clients without your explicit instruction.
Questions from Partners
What counts as one engagement?
TODO: confirm scope definition — e.g. one external network test up to X IPs, or one web application test up to Y URLs. Contact us to confirm current scope caps.
Do unused engagements expire?
TODO: confirm expiry and rollover policy — e.g. "unused engagements in a purchased block are valid for 12 months from the purchase date." Update this before publishing.
How do I submit a request against my block?
Once your block is active, you submit an engagement request via our partner portal or a scoping template we provide on onboarding. No re-quoting required — the engagement is already paid for.
What's the typical turnaround per engagement?
Standard turnaround is 5–10 business days from the time scoping details are confirmed. Priority scheduling is available on Starter blocks and above.
Will your name ever appear to my client?
Never. All reports and client-facing communications carry your branding only. Aussie Pen Test does not appear anywhere in the deliverables and has no direct relationship with your end client.
Will you ever contact my clients directly?
Never. You own the client relationship entirely. Our name doesn't appear anywhere in the deliverables, and we have no commercial relationship with your end clients.
Do you sign NDAs?
Yes. We sign mutual NDAs before any engagement begins.
What if a client asks a technical question I can't answer?
We provide post-report support for your team. If a client has technical follow-up questions, we can brief you or join a call as a "technical consultant" under your brand.
What scope information do I need to provide?
We handle scoping with you — you don't need to be a technical expert. We'll walk you through what we need in a 30-minute call before any engagement.
What industries do your reports support compliance for?
Our reports are structured to support SOC 2, ISO 27001, PCI-DSS, HIPAA, and NIST frameworks. We'll tailor the executive summary for your client's specific audit requirement.
Ready to add pentest capacity to your portfolio?
Book a 30-minute partner call. We'll walk through block sizes, pricing, and what your first engagement looks like — no commitment required.
Or send us a message
We'll be in touch within one business hour