PCA Cyber Security

Offensive automotive and embedded security: vehicle penetration testing, threat intelligence, and product SOC monitoring

Automotive CybersecurityCustom (contact sales)
How we work:This listing is aggregated from PCA Cyber Security's official documentation, public pricing pages, community discussions (Reddit, HN, forums), and real user feedback. We do not do hands-on testing. We aggregate and organize what's already out there. Last verified May 2026.

What is PCA Cyber Security?

PCA Cyber Security (formerly PCAutomotive) is a Budapest-based specialist in offensive security and threat intelligence for vehicles and embedded systems. The firm runs dedicated CyberLab and CyberGarage research facilities and has built a strong public reputation through repeated Pwn2Own Automotive participation and disclosed vehicle vulnerability research, including 21 vulnerabilities across Skoda and Volkswagen vehicles and their cloud backend. While rooted in automotive, PCA has expanded into fintech, manufacturing, consumer electronics, and energy. It is a services-led firm focused on penetration testing, TARA, verification and validation, and managed product SOC monitoring rather than off-the-shelf software.

Best for: OEMs and suppliers that need elite offensive testing, TARA, and managed monitoring for connected vehicles and embedded products
Pros
  • Elite offensive research talent — repeat Pwn2Own Automotive contestants in 2024 and 2025
  • Proven track record of high-impact disclosed vehicle research (Skoda/VW, Nissan Leaf)
  • Deep hands-on embedded and hardware expertise via dedicated lab facilities
  • TISAX Assessment Level 3 accredited; regular presence at Black Hat, Hexacon, and escar
Cons
  • Services and consulting model rather than a licensed product — value scales with engagements
  • Smaller team than the large platform vendors; project-based delivery with no public pricing
  • Less suited to buyers seeking an off-the-shelf, deployable security product

Key Features

Automotive and embedded penetration testing (ECUs, IVI, telematics, EV chargers)
Vehicle and product threat intelligence
Product Security Operations Center (PSOC) / Vehicle SOC monitoring
Threat Analysis and Risk Assessment (TARA)
Cybersecurity verification and validation (V&V) services
Remote attack surface analysis (mobile apps, backend APIs, cloud)
Security assessments supporting ISO/SAE 21434 compliance
UNECE R155 cybersecurity assessment support
Hardware and firmware research via dedicated CyberLab and CyberGarage facilities
Vulnerability research and coordinated responsible disclosure