Get a free audit
Red Team Partners — enterprise red teaming and penetration testing in Manila

Red Team Partners · Manila

Your red team in Manila.
Within reach.

Enterprise-grade cybersecurity, for the rest of the market. We hack it before they do, then we show you the walk-through and the fix.

White-label or wholesale. You keep the client and the margin. We run the operation under your name.

CRESTISO/IEC 27001Cyber EssentialsOffensive Security OSCPGIAC GXPNGIAC GWAPTGIAC Advisory BoardCompTIAOWASPNISTCRESTISO/IEC 27001Cyber EssentialsOffensive Security OSCPGIAC GXPNGIAC GWAPTGIAC Advisory BoardCompTIAOWASPNIST

The Philippine threat, in pesos

PhilHealth lost 13 million member records because an antivirus licence expired

You know these names. PhilHealth. Jollibee. COMELEC. The PSA. None of them lacked a firewall or an audit. PhilHealth's antivirus licence had lapsed on 15 April 2023. On 22 September the Medusa group walked in, demanded $300,000, and leaked the records of at least 13 million members. Lawmakers cited exposure of up to 42 million. The attackers did not crack a clever exploit. They found the door nobody was watching. Most Philippine organisations were breached in 2024, and the security industry names SMEs as the softest target. Believe that only happens to big companies and you become the easy target. An attacker walks through the door your auditor never sees. We test that door before they do.

₱5.82B
Lost to cyberattacks by BSP-supervised financial institutions in 2024, up from ₱5.67B in 2023

Bangko Sentral ng Pilipinas (BSP), via Business Inquirer

76%
Of 2025 fraud losses at BSP-supervised institutions came from social engineering, account takeover and identity theft. Hacking was second, at 13%

Bangko Sentral ng Pilipinas (BSP), via Business Inquirer

13M+
PhilHealth members confirmed affected by the Medusa ransomware attack. The antivirus licence had expired five months earlier

The Record (Recorded Future) / HIPAA Journal / Philstar

+423%
Surge in phishing websites in one year, from 731 in 2024 to 3,824 in 2025. 34,839 phishing incidents reported in 2025

Viettel Threat Intelligence, via Sangfor

Cybersecurity data and attack-surface visualisation

What you can do

Start with a free look. Stay for the cover

No prices on a page. Tell us what you are protecting and we will scope the right work. Need help protecting your business? Talk to us.

Not a partner? Get a free audit →

White-label delivery

We run the engagement under your brand. The client in Manila stays your client and never sees RTP. You set the price, you keep the margin.

Outcome: enterprise-grade work shipped under your name.

Red team assessment

We attack like a real adversary would: external surface, people, applications. Then we hand you the walk-through and the fix.

Outcome: a ranked list of the doors, with evidence.

Penetration testing

Targeted, scoped testing of a system, application or network. Clear findings, clear remediation, signed off by a CREST operator.

Outcome: a board-ready report you can act on.

A year of retests

One test, then we re-check as you change. RTP Robin keeps watch so what you see is exploitable today, never a snapshot from last quarter.

Outcome: cover that moves with your business.

The platform · RTP Robin

One test. A year of retests

RTP Robin is where the work lives. You log in to live findings, watch fixes land, and keep a year of retests after a single engagement.

  • One engagement, then we re-test as you change
  • Every finding human-verified by a CREST operator before it reaches you
  • Plain-language findings through to a board-ready report
RTP Robin
JM

You have 3 issues an attacker could use.

We are watching your systems around the clock. Nothing else needs your attention right now.

Scanning live Last run 4 minutes ago Next pass in 12 min
3 Things to fix We can walk you through each one
1,284 Checks run today All clear except the three above
Your security posture Needs attention
Issues over the past week Down from 9. Heading the right way.
You're covered while we keep watch.

Why us

Lean by design. The AI era is our edge

AI makes our operators faster and lets us red-team your own AI systems. That speed is what keeps us ahead. A human still signs off on every finding.

We run lean. You keep the difference.

Big-four red team Enterprise rates.
Ours Enterprise-grade, roughly a fifth under market.
White-label red teaming in Manila — the Red Team Partners network

[ WHITE-LABEL ] Partner with us

Resell RTP in Manila.

Put your name on the report. We run the operation, you own the Manila relationship. Enterprise scope, roughly a fifth under market, so the lean model leaves real room for your margin and we never undercut you direct.

Talk to us about partnering

From the network

What partners and clients say

Names withheld. The work is confidential, so these are anonymised: a role, a sector, a city. The voices are real to the kind of partner and client we work with in Manila.

  • I used to lose the bigger security jobs to firms in Makati with a fancier deck. Now I white-label RTP and the client thinks my shop did the red team. I keep the account and a real margin, and they have never once undercut me.

    — Founder · Managed IT provider · Manila

  • Our BSP examiner wanted an independent test under Circular 982. They scoped it on one call and phished a teller into handing over a login in under an hour. The report went straight to the board with no rewrite.

    — Information Security Officer · Digital bank · Taguig

  • We run client data for offshore banks, so a breach ends contracts. They walked in through a forgotten admin page nobody remembered, then showed us the exact fix. Plain English, no 90-page jargon dump.

    — Security Lead · BPO · Cebu

Questions, answered

The honest answers

Every assessment starts where an attacker would: outside, watching, looking for the one door left ajar. We find it, then we show you the walk-through.

What exactly is a red team assessment, in plain terms?

We act as the attacker. We pick an objective a real criminal would want, then break in to reach it. Phishing a staff member, walking through a forgotten login page, pivoting through a partner. At the end you get the attack chain we walked, the proof, and the fixes, ranked by what stops the most damage.

How much does it cost, and why are you cheaper than a traditional firm?

Start with a free audit: a short call and a free first-look scan. We scope the paid engagement with you from there, so you pay for the work and nothing else. We cut the cost without cutting the work. We carry no enterprise overhead, no account managers, no padded timelines. The operator who scopes your engagement is the one who breaks in. You pay a fraction of what a ransomware incident costs once it lands.

Do I need this if I already have antivirus, a firewall and a passing audit?

PhilHealth had antivirus. Its licence had expired, and 13 million member records leaked (The Record / HIPAA Journal / Philstar). Most Philippine organisations were breached in 2024 despite their controls. An auditor confirms boxes are ticked. An auditor never tests whether a real person can phish your staff and walk to your data. We attack exactly that gap.

Will a red team report satisfy BSP Circular 982, the NPC and my SOC 2 or ISO 27001 client requirements?

Yes. BSP Circular 982 requires an external, independent penetration test at least annually for banks offering digital financial services. We write the report so you hand it straight to your BSP or NPC auditor and to any client demanding SOC 2 or ISO 27001 evidence. Your annual deadline is already counting down, so book now and close the requirement before it does.

Will the test disrupt operations or break anything live?

No. We scope every engagement with you before we touch a system, agree what is in bounds, and run destructive techniques only with explicit sign-off. We prove a path exists, we do not take you offline. You get the proof without the outage.

Can someone really get in through my staff or a BPO partner rather than my systems?

That is the most common way in. 76% of 2025 fraud losses at BSP-supervised institutions came from social engineering, account takeover and identity theft (Bangko Sentral ng Pilipinas, via Business Inquirer). Hacking was a distant second at 13%. We test the human path and the partner path because that is where the money actually walks out.

Need help protecting your business?
Talk to us.

Book a short call. We tell you where an attacker would get in first, in plain language. No obligation, no sales pitch.

Become a partner

Resell enterprise-grade red teaming under your own brand.

  • White-label or wholesale
  • You keep the client
  • You keep the margin
  • Confidential, under NDA