
Intruder
Proactive exposure management for lean security teams
By Intruder Systems Ltd · HQ London, UK · 4.7/5 Value-Position score (estimate)
Positioning guardrails
Best for
- Lean security teams that need continuous vulnerability scanning without adding headcount
- Cloud-native companies scanning AWS, Azure and Google Cloud alongside web apps and APIs
- Teams that must evidence SOC 2, ISO 27001 or Cyber Essentials compliance
- Organisations wanting on-demand AI pentests instead of an annual human pentest cycle
- DevOps teams needing CI/CD and ticketing integrations such as GitHub, GitLab, Jira and Azure DevOps
Ideal size: 3-50 security and DevOps staff people · Cloud-native startup to mid-market with an in-house or fractional security lead
Not for
- Enterprises that require on-premise deployment of the scanning platform
- Teams looking for endpoint detection and response or a fully managed SOC
- Buyers who need published list pricing before evaluating large estates
- Vendors of off-the-shelf software they do not own or control
Value metrics scorecard
Time-to-Value
First scan in minutes; one-day implementation
~1 days to first production value
Total Cost of Ownership
On request
Subscription: base fee plus a small fee per target. Free tier plus Cloud, Pro and custom-quoted Enterprise plans; annual billing saves 20%. AI pentests are sold separately from $3,500 per test.
Implementation Friction
1/5
Engineering + admin effort required
Value-Position score
out of 5 · model estimate
Full cost breakdown
Mandatory implementation fee
None
Seat tiers
Free plan includes 3 users; paid plans include unlimited users. Capacity scales by scan targets (licenses) rather than by seat.
Add-on costs
- AI pentest from $3,500 per test
Company & support
Who is behind Intruder, and how your team gets help once it is live.
Company
- Founded
- 2015 · 11 yrs in business
- Headquarters
- London, UK
How you get support
- PhoneNot listed
- EmailNot listed
- Live chatAll plans
- Support portal / ticketsNot listed
- Community forumNot listed
- Help centre / docsPlan not stated
- Dedicated account managerEnterprise only
- In person / on-siteNot listed
- Hours
- Not recorded
- Response time
- Not stated
Vendor states it offers live chat support for all customers; Enterprise customers get additional access to dedicated security professionals. A knowledge centre is listed under support and services.
“Not listed” means the vendor’s public pages don’t mention that channel, not that it is unavailable. Ask about it during evaluation.
Market position
Where Intruder sits against its closest alternatives. Pick any two of cost, speed, friction and buyer score, and up to 9 companies to compare.
Quadrant view
Typical annual cost × Time-to-value
The lines cross at the median of the solutions shown, so about half sit on each side of each line.
Companies on the chart 6 / 10
- Intruder
- FaceUp
- Upwind
- usecure
- Barracuda
- Bugcrowd
Add or change companies
Up to 10 companies including Intruder. Listed closest first.
Stack fit signal
Compatibility with standard B2B ecosystems.
No supported MCP path today, so it cannot be driven from an AI client.
AI & MCP readiness
What Intruder ships in AI, and what it asks of your ecosystem.
AI features shipped
Vendor describes same-day AI pentesting run by AI agents that connect to code repos and return a compliance-ready report in hours, plus GregAI, a virtual security analyst, with AI investigation credits allocated per plan tier.
Your data & models
- Trains on your data
- Not recorded — ask the vendor
- Runs on
- Not recorded
- AI pricing
- Billed by usage or credits
In your ecosystem
- AI connection
- Not supported
- Model key
- Not recorded
- AI usage audit
- Not recorded
Compliance attestations
* IAPP AIGP certifies individuals, not products. It means named staff hold the credential — not that the platform does.
Bottom line
Intruder is a UK-founded exposure management platform for lean security teams: continuous external, cloud and web-app vulnerability scanning, attack surface monitoring, container and secrets scanning, plus AI pentesting and GregAI, a virtual security analyst. A free tier and self-serve onboarding give same-day time-to-value; paid tiers use a base fee plus per-target pricing, with Enterprise quoted. Best for cloud-native and mid-market teams that need compliance evidence without a large security function.
Frequently asked questions
How quickly can we get value from Intruder?
The vendor advertises a one-day implementation: connect cloud accounts, code repos and container registries, then launch a first scan in minutes. Continuous scanning, remediation scans and the cyber hygiene score start on the Free tier, which supports 5 infrastructure targets and 3 users.
What does Intruder cost?
There is a Free tier with weekly external and cloud scans. Cloud and Pro plans are priced as a base fee plus a small fee per target, billed monthly or annually with a 20% annual saving; Enterprise is quoted separately based on requirements and attack surface size. AI pentests are sold from $3,500 per test.
Can Intruder help us pass a SOC 2 or ISO 27001 audit?
Yes. The vendor states many customers use its reports to pass compliance with standards such as SOC 2, Cyber Essentials and ISO 27001, and for B2B supplier security audits. Compliance automation integrations with Drata and Vanta are listed on paid plans.
Does Intruder fit our cloud and DevOps stack?
It scans AWS, Azure and Google Cloud accounts, container images and web apps, and integrates with GitHub, GitLab, Bitbucket, DockerHub, Jira, ServiceNow, Azure DevOps, Slack, Teams, Okta, Drata, Vanta and Zapier, plus a public API and Microsoft Sentinel.
What support is included?
The vendor says it offers live chat support for all customers, including free users, alongside a knowledge centre. Enterprise customers additionally get access to dedicated security professionals. A dedicated Customer Success Manager is listed as an enterprise-tier support and service.
How does the AI pentesting work?
You connect code repositories, scope the engagement and launch in minutes. The vendor describes AI agents finding complex multi-step vulnerabilities and returning a compliance-ready pentest report within a few hours, with AI investigation credits allocated per plan tier.