Your Security Team, On-Demand

We handle penetration testing, vulnerability scanning, and compliance so your team can focus on building. Work with us on a single project or bring us in for ongoing security support.

Trusted by teams at
EchoWin
Maru AI
Naked Denver
Weird Gloop
Destination Dutchess
EchoWin
Maru AI
Naked Denver
Weird Gloop
Destination Dutchess
EchoWin
Maru AI
Naked Denver
Weird Gloop
Destination Dutchess
Where to start

What needs to happen next?

A customer needs a pentest

Standalone testing from $3,000. Scope your application and workflows, get findings and remediation guidance. No annual plan required.

Explore penetration testing

A security review is holding up a deal

Review the questionnaire, framework requirements, and evidence gaps with the people who will help do the work.

Explore compliance support

Your engineers also own security

An ongoing team for testing, monitoring, incident response, and security advisory. Startup plan eligibility and framework add-ons are explained below.

Compare plans and pricing
Discuss your scope (opens Google Calendar in a new tab)
Customer work

See what the work looked like.

Infinite Outdoors

A four-person team with payment data, no security function, and a Series A closing.

Read the case study

echowin

HIPAA attestation held and SOC 2 underway, with the whole department owned by us.

Read the case study

The Academy of Charter Schools

A penetration test their IT team rode along on, plus a roadmap of what to harden.

Read the case study
What's covered

Testing, monitoring, and
compliance support.

An ongoing security team for the work below. The Startup base plan is $20,000 per year; compliance frameworks are $3,000 per year each in addition.

01

Penetration testing

We attack your stack like the people who would - then hand you fixes, not a 60-page PDF.

See the process
02

Vulnerability management

Continuous scanning, triaged by humans. You hear about what matters, in order, with a plan.

03

Monitoring & detection

Eyes on your logs and endpoints around the clock. We catch the signal so you don't have to watch.

04

Incident response

Help investigating and containing an incident, with guidance from the engineers responding.

See the process
05

Compliance & GRC

SOC 2, questionnaires, the auditor's inbox. We handle the paperwork and the evidence behind it.

See the process
06

Security advisory

A security leader on call for the architecture call, the vendor review, the board slide.

How it works

We embed like we work here.

Security that feels in-house, without the headcount, the recruiting, or the ramp.

Step 01

We learn your stack

An engineer reviews your systems, requirements, and priorities with you to agree the scope.

Step 02

We cut the noise

We fix what's urgent, drop what isn't, and tell you the difference in plain English. The scythe does its job.

Step 03

We stay on call

One team, one shared channel, humans who answer. We embed like we work here - because for security, we do.

The Sythe Labs platform
One place to see everything we're doing.

The Sythe Labs platform is where your security lives - live monitoring, triaged findings, incident status, and reports in a single view. Log in any time to see exactly where things stand. We run it alongside you, around the clock.

Take a tour (opens Google Calendar in a new tab)
The Sythe Labs platform dashboard
Who you get

Real people. On a
first-name basis.

Not a ticket queue in another timezone. Every operator is a US-based Sythe employee - we never outsource, subcontract, or offshore any part of the work. The same engineers who break into systems for a living are the ones watching yours, and they pick up the phone.

Andrew Roe
Andrew Roe
CEO & Co-founder

Machine-learning engineer, 8 years in security across big MSSPs, startups, and government. Leads our LLM and application security testing.

Jarred Parr
Jarred Parr
CTO & Co-founder

Reformed physicist, M.S. Yale, 10 years in offensive security. Ex-Amazon, StockX, and BofA. 60+ confirmed vulnerabilities. Builds the Sythe Labs platform.

Pricing

A base plan.
Clear framework add-ons.

$23,000/year for the Startup base plus one framework: $20,000 base + $3,000 per framework. For companies under $5M revenue or 50 staff. Independent audit and certification fees are separate. Enterprise pricing is custom.

Startup plan
$20,000 / year

For companies under $5M revenue or 50 staff. Base security services included.

  • Penetration testing
  • Vulnerability management
  • Monitoring & detection 24/7
  • Incident response
  • Compliance & GRC support (frameworks priced separately)
  • A named human on call
  • The Sythe Labs platform, run by us
+ $3,000 / yr per compliance framework - SOC 2, HIPAA, ISO 27001, and more. Base plus one framework: $23,000 / year. Independent audit and certification fees are separate.
Book a call (opens Google Calendar in a new tab)
Enterprise
Custom

Over $5M revenue or 50 staff. Negotiated to your scale and obligations.

  • Everything in Startup
  • Dedicated security lead
  • Custom SLAs & response times
  • Audit & board reporting
  • Scaled to your headcount
  • Procurement & MSA support
Talk to us (opens Google Calendar in a new tab)
Pentest only

Just need a penetration test? Book a standalone engagement - no department subscription required.

See full details
Standard
$3,000 / test
Small apps with straightforward workflows. ~2-week manual pentest, compliance-ready report, instant re-testing.
Premium
$7,000 / test
Multi-module platforms with deeper access control and data models. ~4-week manual pentest.
Enterprise
Custom
Large portfolios that need testing across every release. Continuous offensive coverage, SSO & API.
Compliance billed per framework - pentests billed per engagement - no per-seat fees, ever.
In their words

Teams who stopped
worrying about it.

"
Jarred, Andrew, and their team are trusted partners - extensive penetration testing, code analysis, and security reviews that protect our users. We share a vision of prioritizing customer security above all else.
- EchoWin
"
Sythe Labs was great to work with. Extremely knowledgeable, responsive, and trustworthy. I'd recommend them to anyone looking for security or penetration testing.
- Maru AI
"
The strategic security recommendations from Sythe Labs have been invaluable. Their expertise helped us put real protection in place while keeping us moving fast.
- Naked Denver
Get started

Ready to cut through it?

A 30-minute Google Meet with Andrew Roe to discuss your scope, deadlines, and the next steps. No form required to see available times.