CREST & CHECK Certified

Custodian Consulting

Offensive Security. Defensive Confidence.

custodian@c2:~$ ./custodian-framework --target client-scope.yml --profile stealth
[*] Custodian C2 Framework v4.2 — Initialising engagement pipeline
[+] Loaded 14 attack modules | AMSI/ETW bypass active
[+] Implant compiled — AES-256 encrypted | signed cert: microsoft.com
[+] Beacon established — mTLS over DNS | interval: 30s jitter: 40%
[!] Credential harvest: 3 domain admin hashes captured
[!] Lateral movement: 12 hosts compromised via RBCD delegation
[+] EDR bypass validated — 0/74 detections across all AV engines
[+] Full domain compromise achieved in 4h 23m
custodian@c2:~$ generate-report --classification CONFIDENTIAL --output engagement_2026-Q1.pdf
[+] Executive report generated — 47 findings | 6 critical | 12 high

We break things before the adversaries do.

Custodian Consulting is a UK-based offensive security firm built by penetration testers, for organisations that refuse to gamble on their security posture.

Our team holds CREST, CHECK, OSCP, and OSCE certifications. We have delivered engagements across NHS trusts, central government departments, financial services, and critical national infrastructure. Every finding we report is exploitable, every recommendation is actionable.

We do not sell fear. We sell evidence. Our reports give your board the clarity to make informed decisions about risk, and your engineers the technical detail to fix what matters.

CREST
CHECK
OSCP / OSCE
Cyber Essentials Plus
500+
Engagements Delivered
99.8%
Client Retention Rate
15+
Years Combined Experience
0
Breaches Post-Engagement

What We Deliver

End-to-end offensive security services, from scoping through to remediation validation. Every engagement is bespoke, every report is board-ready.

Built for organisations that take security seriously.

We are not a reseller with a scanner. We are hands-on-keyboard operators who understand your threat landscape.

CREST & CHECK Accredited

Certified to test UK government and CNI systems. Our testers hold individual CREST qualifications at CRT and CCT level.

Board-Ready Reporting

Executive summaries your leadership team can act on, technical appendices your engineers can build from. No filler, no recycled scanner output.

Manual-First Methodology

Automated tools find the low-hanging fruit. Our testers chain vulnerabilities, abuse business logic, and identify the attack paths that matter.

Proven Track Record

Trusted by NHS trusts, local authorities, MOD suppliers, and FTSE-listed organisations. We operate under NDA with the discretion your sector demands.

Rapid Turnaround

Most engagements scoped within 48 hours and scheduled within two weeks. Emergency incident response available with same-day mobilisation.

Remediation Validation

We do not just find problems and walk away. Every engagement includes a free retest window so you can verify your fixes hold under pressure.

Ready to test your defences?

Tell us what you need secured. We will scope the engagement, provide a fixed-price quote, and schedule your test — typically within two weeks.

Start a Conversation