Home / Certifications / ISO 42001

Find a pentest company with ISO 42001

47 companies have this certification

ISO 42001: AI Management System Certification


Origin


ISO 42001 was published in December 2023 by the International Organization for Standardization (ISO) and the International Electrotechnical Commission (IEC) as ISO/IEC 42001. It was created to address the growing need for governance and responsible management of artificial intelligence systems. The standard emerged from collaborative efforts by international experts in response to increasing concerns about AI risks, ethics, and the lack of unified frameworks for organizations developing or deploying AI technologies.


Industry Importance


ISO 42001 is valued in the industry because it provides organizations with a structured framework to manage AI systems responsibly while addressing risks related to bias, transparency, privacy, and safety. Certification demonstrates to stakeholders, customers, and regulators that an organization has implemented robust controls for AI governance, which is increasingly critical as AI regulations emerge globally. The standard helps organizations build trust, ensure compliance with evolving legal requirements, and differentiate themselves in a market where responsible AI practices are becoming a competitive advantage and expectation.

Featured
Rhymetec

Rhymetec

Web Application Penetration Te...
New York, United States 46 employees

Rhymetec LLC is a cybersecurity firm specializing in penetration testing and offensive security services; 37 employees with 27.8% YoY growth; based in New York, NY, founded in 2015. The company offers web, mobile, and network penetration testing, including AI-powered solutions, and is actively expanding through partnerships and geographic growth.

Virtual CISO
Penetration Testing
ISO Internal Audits
+3 more
Visit Website
Vanta

Vanta

Automated Penetration Testing
San Francisco, United States 1553 employees

Software development company specializing in automated compliance, vendor risk management, and trust platform solutions; 999 employees (+106.5% YoY growth), $210.1M annual revenue, $503M total funding; provides penetration testing services via external partners and platform integrations, including partnerships with XBOW and Heyhack; headquartered in San Francisco, California, United States; trusted by 14,000+ customers including Atlassian and Duolingo.

Vanta Provides Ai-powered Trust Management Services Including Automated Compliance
Continuous Governance
Risk And Compliance (grc)
+4 more
Bay Mountain Security

Bay Mountain Security

Cloud and Network
San Francisco, United States 2 employees

Bay Mountain Security is a private computer and network security company based in San Francisco, California, founded in 2014; specializing in ISO training, certification, consulting, and security frameworks, with a focus on penetration testing services. The firm has 2 employees, $316.7K annual revenue, and experienced a -33.3% YoY growth. They serve clients across the U.S., including California, Arizona, Texas, Illinois, and more, with a modest web presence of 304 monthly visits and a global rank of #12,021,898.

Bay Mountain Security Offers Penetration Testing
Security And Compliance Frameworks Advisory And Implementation
Certification Audits
+3 more
Consilium Labs

Consilium Labs

Network
Sunnyvale, United States 19 employees

Cybersecurity assurance company specializing in penetration testing, ISO 27001 family, SOC2, and ISO 42001; 15 employees with 72.7% YoY growth; based in Sunnyvale, California, USA; founded in 2020; accredited by ANAB and IAS, with SOC2 auditors under AICPA supervision.

Consilium Labs Offers Cybersecurity Audit And Certification Services Including ISO/IEC 27001/27701
CSA STAR Certification
ISO/IEC 42001
+4 more
VioletX

VioletX

Enterprise Penetration Testing
Los Angeles, United States 8 employees

VioletX is a private software development firm specializing in cybersecurity solutions, including virtual CIO services, SOC2 attestations, and incident response. Based in Los Angeles, California, with 7 employees and $18.5M annual revenue, they provide penetration testing services with a focus on real, manual testing methods, and actively engage in cybersecurity assessments, compliance, and risk management.

The Company Offers Enterprise-grade Compliance
Security
AI Evaluation Programs
+5 more
Insight Assurance

Insight Assurance

Comprehensive Penetration Test...
Tampa, United States 161 employees

Cybersecurity and compliance firm specializing in security audits, penetration testing, and regulatory certifications; 116 employees (+67.7% YoY growth); founded 2020; Tampa, FL; serves over 1,500 clients; offers SOC, PCI DSS, ISO, HITRUST, CSA STAR, NIST, HIPAA assessments.

Compliance Audits (soc 1
SOC 2
SOC 3
+5 more
A-LIGN

A-LIGN

Network and Web Application Te...
Tampa, United States 780 employees

Cybersecurity and compliance provider based in Tampa, Florida; 572 employees, $92.2M annual revenue, $54.5M funding; specializes in cybersecurity compliance, penetration testing, and cyber risk management; offers active penetration testing and red team services, with a focus on high-quality, efficient programs.

Penetration Testing
Red Team Services
SOC Assessments (soc 1
+5 more
Ad

Stop wasting time on security questionnaires

ResponseHub uses AI to automate your security questionnaire responses. 100% confidence, save days, unblock deals.

Learn more
Elevate

Elevate

Web Application Testing
Miami, United States 20 employees

Business consulting and staffing firm specializing in cybersecurity, IT compliance, and audit services; based in Florida with 13 employees, $5.3M revenue, founded in 2008. Offers penetration testing services across frameworks like CMMC, ISO 27001, SOC 2, and more, with a focus on attack simulations and certification support.

Penetration Testing
Audit Readiness For CMMC Level 2
ISO 27001
+5 more
Schellman

Schellman

Application Penetration Testin...
Florida 400 employees

IT compliance and cybersecurity attestation provider; based in Tampa, Florida; specializes in FedRAMP assessments and offers extensive penetration testing services across multiple disciplines, including application, network, mobile, red teaming, social engineering, cloud, physical, hardware/IoT, and AI red team testing.

IT Compliance Attestation
Fedramp Assessments
Penetration Testing (application
+5 more
risk3sixty

risk3sixty

Cloud Penetration Testing
atlanta, United States 52 employees

risk3sixty is a private business consulting and services firm specializing in security, privacy, and compliance programs; offers penetration testing services as confirmed by its dedicated webpage; headquartered in Atlanta, Georgia, with 45 employees and a -13.3% YoY growth rate.

Penetration Testing
Security Compliance Program Audit And Implementation
Attack Surface Management
+5 more
Omni Group Consulting

Omni Group Consulting

Compliance-Focused Penetration...
atlanta, United States 11 employees

Cybersecurity consulting firm specializing in penetration testing, certification readiness, and CISO services; 4 employees with 20% YoY growth; based in Atlanta, Georgia, USA.

Certification Readiness For ISO27001
ISO27701
ISO42001
+5 more
AARC-360

AARC-360

Web Application
atlanta, United States 33 employees

AARC-360 is a private accounting firm specializing in assurance, advisory, risk, and compliance services with a global presence; 28 employees, founded in 2014, headquartered in Atlanta, Georgia, USA. They have recent cybersecurity accreditation achievements, including FedRAMP and RMAI audits, and offer penetration testing services such as vulnerability assessments, active exploitation, and social engineering across web, network, and cloud platforms.

Assurance Services Including SOC 1
SOC 2
SOC 3 Reports
+5 more
Coalfire

Coalfire

Offensive Security and Cloud P...
Chicago, United States 1053 employees

Coalfire is a cybersecurity and compliance services provider based in Chicago, Illinois, founded in 2001. With 676 employees and $200M annual revenue, it specializes in penetration testing, vulnerability assessments, FedRAMP, cloud migration, and AI risk management, serving enterprise, healthcare, and finance sectors. The company has received $9.4M in funding and is known for offensive security capabilities, including penetration testing services.

Advisory And Trust Engineering
Assessment Services
Cybersecurity Services
+4 more
StackAware

StackAware

AI System Penetration Testing
Bartlett, United States 4 employees

StackAware is a private cybersecurity company specializing in managing AI-related cybersecurity, privacy, and compliance risks; founded in 2022 with 3 employees (+33.3% YoY growth), headquartered in Bartlett, New Hampshire, USA. The company provides penetration testing services, including AI risk assessments, red teaming, and application penetration testing, emphasizing proactive security and risk management in AI environments.

Penetration Testing
AI Risk Assessment
AI Governance Program Development
+2 more
Ad

Advertise on pentest.fyi

You could be here!

Learn more
E Com Security Solutions

E Com Security Solutions

Web Application Penetration Te...
New York, United States 31 employees

IT services and consulting company specializing in cybersecurity and compliance; 27 employees, founded 2008, headquartered in New York, USA; offers penetration testing services for networks and web applications, with categories including network penetration testing and web application penetration testing; 1,106 monthly website visits, global rank #11,587,344, employer rating 5.0/5.0.

Penetration Testing
Vulnerability Assessment
Security Consulting
+5 more
KPMG

KPMG

Comprehensive Penetration Test...
New York 47 employees

Global professional services firm headquartered in New York, US; specializes in audit, tax, advisory, and cybersecurity testing services including penetration testing, vulnerability assessments, and red teaming; confirmed presence in New York and offering advanced security testing capabilities.

Audit
Tax
Advisory
+4 more
KirkpatrickPrice

KirkpatrickPrice

Web Application Testing
Nashville, United States 129 employees

IT services and consulting firm specializing in information security assurance, including penetration testing, PCI audits, and risk assessments; 90 employees (+8.4% YoY), $6.8M revenue, founded 2005, Nashville, TN; provides advanced ethical hacking and vulnerability assessments, serving over 2,000 clients worldwide.

SOC 1 Audit
SOC 2 Audit
PCI DSS Audit
+5 more
Prescient Security

Prescient Security

Compliance Penetration Testing
Nashville, United States 265 employees

Cybersecurity company specializing in penetration testing, compliance, and web application security; 196 employees (+52% YoY growth), $23.9M revenue, founded 2018 in Nashville, Tennessee, serving over 5,000 clients worldwide.

Compliance Penetration Testing
Vulnerability Scanning
Network And Iot Testing
+5 more
RSI Security

RSI Security

Network Penetration Testing
Southlake, United States 49 employees

Cybersecurity-focused IT services and consulting company specializing in risk management, cyber engineering, assessment, and advisory services; provides penetration testing services explicitly listed on its website; headquartered in Southlake, Texas, with 26 employees, $5.9M annual revenue, and 22.5% YoY growth.

Penetration Testing
Vulnerability Management
Incident Response
+5 more
SecureIT

SecureIT

Web Application Security
Virginia 44 employees

Cybersecurity firm headquartered in Reston, VA, providing penetration testing, security assessments, and compliance advisory; offers active exploitation and simulated cyberattack services to enhance client security posture.

Penetration Testing
Compliance Advisory
Audit & Assessment
+3 more
Mirai Security

Mirai Security

Application Security
Seattle, United States 27 employees

Cybersecurity company specializing in governance, risk management, compliance, cloud security, and application security; offers penetration testing services supported by case studies; 20 employees with 12.5% YoY growth; headquartered in Seattle, Washington, USA.

Penetration Testing
Incident Response
Cloud Security
+3 more
CurlSeK

CurlSeK

Continuous AI-Powered Web Appl...
Sheridan, United States 5 employees

CurlSeK is a private technology firm based in Sheridan, Wyoming, founded in 2025, with 4 employees. It specializes in autonomous, agent-driven AI for offensive security, including penetration testing, vulnerability discovery, and validation, providing rapid and precise security assessments beyond traditional methods.

Penetration Testing
Continuous Pentesting
Ai-powered Penetration Testing
+4 more
CIS - Certification & Information Security Services

CIS - Certification & Information Security Services

Threat Led Penetration Testing
Austria 26 employees

Austrian cybersecurity company headquartered in Vienna; offers penetration testing services including threat-led assessments, with a focus on certifications like ISO 42001 for AI management; specializes in cybersecurity consulting and standards compliance.

Provides Penetration Testing Including Threat-led Assessments
Certifications In Information Security And AI Management (iso 42001
ISO/IEC 27001)
+5 more
Tcss Trusted Cyber Security Solutions Gmbh

Tcss Trusted Cyber Security Solutions Gmbh

Comprehensive Penetration Test...
Austria 10 employees

Cybersecurity company based in Vienna, Austria; specializes in penetration testing, vulnerability analysis, and incident response services; provides consulting with a focus on proactive security measures.

Provides Penetration Testing
Vulnerability Assessments
Incident Response
+5 more
Tcss Trusted Cyber Security Solutions Gmbh

Tcss Trusted Cyber Security Solutions Gmbh

Comprehensive Penetration Test...
Austria 10 employees

Cybersecurity company based in Vienna, Austria; specializes in penetration testing, vulnerability analysis, and incident response services; provides consulting with a focus on proactive security measures.

Provides Penetration Testing
Vulnerability Assessments
Incident Response
+5 more
Eleven Labs

Eleven Labs

Application Penetration Testin...
Paris, France 95 employees

Private IT consulting and web development firm based in Paris, France; 74 employees, founded 2011, with $158K annual revenue. Known for technical excellence and security services including penetration testing supported by a Trust Center with pentest reports. Maintains a modest online footprint with 23,429 monthly visits and a global rank of 1,079,127.

IT Consulting
Audit
Penetration Testing
+5 more
SAFFRON Sp. z o.o.

SAFFRON Sp. z o.o.

Web and Mobile Application Pen...
Gdaล„sk, Poland 9 employees

Poland-based IT services and consulting company specializing in cybersecurity, GRC-as-a-Service, and penetration testing; 6 employees with 28.6% YoY growth; founded 2015; headquartered in Gdaล„sk, Poland; offers security testing, risk management, compliance, and cybersecurity governance services.

Provides Penetration Testing
Vulnerability Assessments
IT Security Consulting Services Focused On Building Digital Resilience.
Izertis

Izertis

Penetration Testing and Red Te...
Spain 1930 employees

Spain-based technology consulting company specializing in digital transformation and cybersecurity; offers penetration testing and red team services; headquartered in Gijรณn, Spain, founded in Gijรณn, with a focus on security assessments and digital metamorphosis.

Digital Transformation
Cybersecurity
Penetration Testing
+5 more
Insicon Cyber

Insicon Cyber

Managed Autonomous Pen Testing
Australia 18 employees

Australian cybersecurity firm based in North Sydney; provides penetration testing services including managed autonomous pentesting; confirmed by contact and operations pages, industry reports, and partnership details.

Provides Penetration Testing
Cyber Advisory
Managed Security Services
+5 more
Ad

Stop wasting time on security questionnaires

ResponseHub uses AI to automate your security questionnaire responses. 100% confidence, save days, unblock deals.

Learn more
CyberImmune

CyberImmune

Comprehensive Penetration Test...
Toronto, Canada 10 employees

CyberImmune is a cybersecurity consulting firm based in Toronto, Canada, specializing in cloud security, DevSecOps, application, and network security. With 5 employees and 25% monthly growth, they perform security and compliance assessments, penetration testing on web, network, mobile, and cloud assets, supported by dedicated VAPT pages on their website.

Penetration Testing
Vulnerability Assessment
Security Consulting
+5 more
Sabytel Technologies, Inc.

Sabytel Technologies, Inc.

Application, Wireless, and Web...
Canada 18 employees

Canadian cybersecurity company founded in 2002; headquartered in Ottawa, Ontario, Canada; offers penetration testing services including application, wireless, and web testing, as well as social engineering and phishing assessments; emphasizes a business-first approach to cybersecurity resilience.

Penetration Testing
Social Engineering Testing
CISO As A Service (cisoaas)
+5 more
Irm Consulting & Advisory

Irm Consulting & Advisory

Penetration Testing and Bug Bo...
Canada 5 employees

Cybersecurity consulting firm based in Toronto, Canada; specializes in penetration testing and bug bounty programs, offering testing of web applications, cloud, and network environments. The company is headquartered in Toronto, Ontario, Canada, with verified sources confirming its location and service offerings.

Virtual CISO Services
Governance Risk & Compliance (grc)
Process Risk & Controls
+5 more
Coral eSecure Private Limited

Coral eSecure Private Limited

Cybersecurity Consulting and P...
Oakville, Canada 4 employees

Canadian-based cybersecurity consulting firm specializing in penetration testing, privacy, and compliance standards; with 20+ years of experience, $10M annual revenue, and a focus on certification support for standards like SOC, NIST, HIPAA, GDPR, and ISO 27701.

Cybersecurity Consulting
Penetration Testing
Privacy And Data Protection Consulting
+4 more
Cybercontrols.io

Cybercontrols.io

Offensive Security
Morpeth, United Kingdom 8 employees

Cybercontrols.io is a UK-based infosec consultancy providing cybersecurity and compliance services, including penetration testing, internal audits, and endpoint security; founded in 2022, with 4 employees and +300% YoY growth, headquartered in Morpeth, UK.

Compliance Consulting
Penetration Testing
Cybersecurity Strategy
+4 more
Mobius Consulting

Mobius Consulting

Hands-On Penetration Testing
United Kingdom 11 employees

UK-based cybersecurity company specializing in penetration testing and security assessments; listed on UK Companies House with registration numbers 13538454 and 06958601; offers comprehensive security testing including penetration testing and vulnerability scanning.

Penetration Testing
Security Testing
Information Security
+5 more
๐๐ž๐ญ๐Ÿ๐จ๐ซ๐ญ๐ž ๐‚๐จ๐ง๐ฌ๐ฎ๐ฅ๐ญ๐ข๐ง๐  ๐‹๐ญ๐

๐๐ž๐ญ๐Ÿ๐จ๐ซ๐ญ๐ž ๐‚๐จ๐ง๐ฌ๐ฎ๐ฅ๐ญ๐ข๐ง๐  ๐‹๐ญ๐

Advanced Penetration Testing
London, United Kingdom 2 employees

Cybersecurity solutions company specializing in advanced penetration testing services; based in London, UK, founded in 2023, with 2 employees and 100% YoY growth. Focuses on safeguarding digital assets and fortifying defenses against cyber threats.

Penetration Testing
Cybersecurity Audits
ISO 9001/27001/42001 Implementation
+3 more
Cognisys

Cognisys

Advanced Infrastructure, Appli...
Leeds, United Kingdom 86 employees

UK-based IT services and cybersecurity company specializing in penetration testing, security assessments, and compliance; 63 employees with 95.5% YoY growth; founded in 2017; CREST-accredited penetration testing services; headquartered in Leeds, UK.

Penetration Testing
Vulnerability Management
Security Compliance Acceleration
+2 more
Spritzmonkey

Spritzmonkey

CREST-Certified Penetration Te...
United Kingdom 7 employees

Cybersecurity consultancy based in the United Kingdom; specializes in CREST-certified penetration testing and vulnerability scanning services, actively marketing these capabilities and participating in industry events as a recognized provider.

Penetration Testing
Vulnerability Scanning
ISO Certification Compliance
+5 more
Nestor Consulting Pte Ltd.

Nestor Consulting Pte Ltd.

Vulnerability and Penetration ...
Singapore 8 employees

Nestor Consulting Pte Ltd. is a Singapore-based IT services and consulting firm specializing in cybersecurity, ISO standards, and internal audits; offers vulnerability and penetration testing services; 5 employees, founded 2020, +14.3% YoY growth.

Provides Vulnerability And Penetration Testing
ISO Standard Implementation And Internal Audit Services
Cybersecurity Strategy And Implementation
+3 more
Privasec

Privasec

Comprehensive Penetration Test...
Singapore 42 employees

Cybersecurity firm based in Singapore; incorporated in 2018 with main office at 10 Anson Road, International Plaza; provides comprehensive penetration testing services including web, mobile, cloud, wireless, and IoT assessments; CREST-Approved for high standards in pentest expertise.

Provides Penetration Testing
Adversary Simulation And Red Teaming
Governance And Compliance Services
+4 more
ใ‚คใƒณใƒ•ใ‚ฉใ‚ปใƒƒใ‚ฏใ‚ขใƒ‰ใƒใ‚คใ‚ถใƒชใƒผๆ ชๅผไผš็คพ

ใ‚คใƒณใƒ•ใ‚ฉใ‚ปใƒƒใ‚ฏใ‚ขใƒ‰ใƒใ‚คใ‚ถใƒชใƒผๆ ชๅผไผš็คพ

Network Vulnerability, Web and...
Japan

Japan-based cybersecurity consulting company headquartered in Tokyo; provides penetration testing, ISO certification support (ISO27001, ISO27017, ISO42001), NIST compliance assistance, and security outsourcing; known for experienced consultants and comprehensive security services.

Penetration Testing
ISO27001 Certification Support
ISO27017 Certification Support
+5 more
Whitesec ID

Whitesec ID

Vulnerability Assessment & Pen...
Jakarta Selatan, Indonesia 5 employees

IT services and consulting company specializing in cybersecurity, IT consulting, and GRC; based in Jakarta Selatan, Indonesia; founded in 2024; 5 employees with +150% YoY growth; offers penetration testing and security auditing services.

Whitesec ID Offers Cybersecurity Consulting
ISO 27001 And 27701 Certification Services
Penetration Testing
+3 more
AADIT Technologies

AADIT Technologies

network security pentesting
India 44 employees

Cybersecurity company based in Bangalore, India, with 17 employees and 10% YoY growth; specializes in penetration testing, vulnerability assessments, and cybersecurity audits; offers cloud strategy and infrastructure services; 1,608 monthly visits, global rank #7,910,340, active social media presence.

Cloud Adoption Strategy
Security As A Service
Cloud Services
+5 more
Vynox Security

Vynox Security

web application pentesting
Pune, India 11 employees

Vynox Security is a private cybersecurity company based in Pune, India, with 6 employees. They specialize in security testing services such as penetration testing, cloud security, infrastructure security, and source code audits, with a focus on helping organizations mitigate risks and defend against evolving digital threats.

Vulnerability Assessment And Penetration Testing
Compliance And Audit Services For ISO And SOC Standards
Managed Virtual CISO And Security Services.
IARM Information Security

IARM Information Security

crest certified penetration te...
Chennai, India 45 employees

Cybersecurity company based in Chennai, India, founded in 2016 with 30 employees; specializes in consulting, managed security, IoT security, and CREST-certified penetration testing for network, application, cloud, and LLM systems; offers end-to-end global security solutions with a focus on innovation and specialized pentesting capabilities.

Cybersecurity Consulting
Penetration Testing
Vulnerability Assessment
+4 more
Mahindra Group

Mahindra Group

external attack surface pentes...
Mumbai, India 230463 employees

Multinational federation based in India; 8,426 employees (+1.9% YoY), $20.4B revenue, INR 4.3B market cap, $264.9M funding; offers penetration testing through Tech Mahindra's CARTA automated red-teaming platform to identify vulnerabilities and simulate cyber threats.

The Mahindra Group Provides Diverse Services Including Automotive Manufacturing
Farm Equipment
Financial Services
+5 more
Infosys

Infosys

application penetration testin...
Bangalore, India 362415 employees

Global IT services and consulting firm based in Bangalore, India, with 210,146 employees and $19.8B annual revenue; offers next-generation digital transformation and cybersecurity services, including CREST-certified penetration testing and vulnerability assessments; founded in 1981, market cap INR 7.55 trillion, with recent acquisitions and a strong international presence.

Next-generation Digital Services And Consulting
Cybersecurity Including Penetration Testing And Vulnerability Assessment
Cloud Services
+3 more