home / directory / frameworks

// framework

OWASP firms in Canada

Open community standards and testing guides for application security.

7 firms name this framework on its website

Full service · Greater Toronto Area, Ontario

3Tenets Consulting

Penetration testing, AI and LLM security, threat and risk assessment, incident resilience, privacy impact assessment and governance/vCISO services.

  • Pen testing
  • AppSec
  • GRC advisory
  • IR and forensics
  • Privacy
  • NIST CSF
  • CIS Controls
  • ISO 27001
  • MITRE ATT&CK
  • OWASP
Full service · Vancouver, British Columbia

Plurilock

Cybersecurity services firm covering adversary simulation, cloud and data protection, identity and compliance readiness, including CPCSC and CMMC readiness for defence suppliers.

  • Pen testing
  • Red team
  • Cloud security
  • IAM
  • GRC advisory
  • +2
  • CPCSC
  • CMMC
  • NIST 800-171
  • MITRE ATT&CK
  • OWASP
Full service · Etobicoke, Ontario

PlutoSec

Etobicoke firm covering penetration testing, red team, compliance readiness (ISO 27001, SOC 2, PCI DSS, HIPAA), cloud security, managed SOC/MDR, secure development and incident response.

  • Pen testing
  • Red team
  • GRC advisory
  • Audit and certification
  • Cloud security
  • +3
  • ISO 27001
  • SOC 2
  • PCI DSS
  • NIST CSF
  • ITSG-33
  • +2
Specialist · Ottawa, Ontario

Software Secured

Manual penetration testing for web, API, mobile, cloud, infrastructure, AI and IoT; secure code review, red teaming, threat modeling, PTaaS and developer training on the OWASP Top 10.

  • Pen testing
  • Red team
  • AppSec
  • Cloud security
  • Training
  • SOC 2
  • HIPAA
  • ISO 27001
  • PCI DSS
  • GDPR
  • +1
Specialist · Toronto, Ontario

Stingrai

Penetration testing for applications, networks and cloud, social engineering, and red/purple team exercises, delivered with a PTaaS platform and retesting.

  • Pen testing
  • Red team
  • AppSec
  • Cloud security
  • SOC 2
  • ISO 27001
  • CMMC
  • PCI DSS
  • HIPAA
  • +1
Full service · Ottawa, Ontario

TwelveDot Incorporated

Ottawa technology and security consulting practice offering virtual CSO, ethical hacking, cloud, mobile and IoT assessments, ISO 27001 implementation and audit, breach mitigation and incident response.

  • GRC advisory
  • Pen testing
  • Cloud security
  • Audit and certification
  • IR and forensics
  • +1
  • ISO 27001
  • OWASP
Focused · Toronto, Ontario

Vumetric

Penetration testing and security assessment provider covering network, application, API, specialized (medical device, IoT, SCADA/ICS), red team and social engineering testing, plus vulnerability assessment.

  • Pen testing
  • Red team
  • Vulnerability mgmt
  • AppSec
  • OT and ICS
  • PCI DSS
  • SOC 2
  • ISO 27001
  • GDPR
  • OWASP
  • +1

// more

Other frameworks