Penetration Testing Service Provider (PTSP) Certification

With the ever-increasing cyber threats and the dependence of public and private entities on third party security testers to provide assurance to various stakeholders, there is a dire need ‘to increase professionalism in the cyber security testing industry in Malaysia. In order to ensure the competitiveness of local cyber security testing companies, a department under CyberSecurity Malaysia (CSM), Information Security Certification Body (ISCB) has establish a Penetration Test Service Provider Scheme (PTSP) to ensure penetration testing services is delivered by local cyber security consulting companies is meeting the requirement set by CyberSecurity Malaysia.


Objective

The objective of the PTSP Scheme are as follows:

  1. Focus on penetration test service provider development and competitiveness among the service providers.
  2. Ensure service provider operates in accordance to globally accepted best practices and guidelines.
  3. Provide platform to foster cooperation and industry collaboration among the service providers.
  4. Continuously monitor compliance and maintain certification integrity.


Certification Benefits

Under this program, once successfully meet PTSP requirement the service provider is registered as a complied and will be recognized as locally owned penetration test service providers.




Certified Provider

Click here





How To Apply


Certification Guideline

Business Legitimacy Criteria

The Applying company must be recognized as a legal entity with the following minimum legal criteria:

  1. Registered with SSM
  2. Minimum 50% Locally Owned
  3. Head Office in Malaysia
  4. Registered with Ministry of Finance (MOF) Malaysia
  5. Must be at least two (2) years in operation


Certification Process


  1. Apply
    • Interested candidate needs to fill in PTSP application form.
    • Submit to ISCB once the application form completely fills.
  2. Accept
    • ISCB will perform pre-assessment which consist of review the documents and evidence based on PTSP requirements. 
    • Once accepted, registration application prepared by establish quotation, audit plan, certification agreement and related documents.
  3. Execute
    • Perform/conduct onsite and offsite audit to verify the conformity against the PTSP Program requirements 
    • Resolve any finding or non-conformity (if any)
    • Develop the audit report for approval process.
  4. Certify
    • Present the final audit report for management approval 
    • Once approve, the successful candidate will be given as below;
      • Certificate - a certificate to acknowledge that the companies has been audited and certified 
  5. Register
    • The service providers’ details will be published on ISCB website.


Please complete the application form and send to ptsp@cybersecurity.my

PTSP Application Form






Certification Fees

PTSP Program fees  must be paid to CyberSecurity Malaysia during the ACCEPT phase according to the issued invoice.



Contact

For any enquiry please contact:
enquiry@cybersecurity.my

logo
CyberSecurity Malaysia is the national cyber security specialist agency under the purview of the Ministry of Digital (KD)
 
Contact Us

  • CyberSecurity Malaysia,
    Level 7 Tower 1, Menara Cyber Axis, Jalan Impact,
    63000 Cyberjaya, Selangor Darul Ehsan, Malaysia.

  • enquiry@cybersecurity.my

  • +603 - 8800 7999

  • +603 - 8008 7000

TOP