
WorkNest Secure
PSN IT Health Check (ITHC)
Meet PSN requirements and strengthen your security posture.

Organisations connected to the Public Services Network (PSN) must meet stringent security standards to protect sensitive public sector data.
Organisations connected to the Public Services Network (PSN) must meet stringent security standards to protect sensitive public sector data.
Organisations connected to the Public Services Network (PSN) must meet stringent security standards to protect sensitive public sector data.
From compliance audits to comprehensive internal and external testing, we identify exploitable weaknesses, deliver clear risk ratings, and provide actionable remediation guidance to keep you compliant and secure.

From compliance audits to comprehensive internal and external testing, we identify exploitable weaknesses, deliver clear risk ratings, and provide actionable remediation guidance to keep you compliant and secure.
What is a PSN IT Health Check (ITHC)?

What is a PSN IT Health Check (ITHC)?

What is a PSN IT Health Check (ITHC)?
A PSN IT Health Check (ITHC) is a thorough security assessment of your organisation's IT environment, covering network infrastructure, endpoints, applications, and configurations.
It is a mandatory requirement for any organisation connecting to the PSN, a government-regulated network that demands rigorous cyber security standards to safeguard public data.
























































































Why WorkNest for Penetration Testing?
Security testing should strengthen your organisation - not overwhelm it. At WorkNest, we combine deep technical expertise with practical business understanding to deliver testing that drives measurable improvement.

CHECK & CREST certified
Have your testing conducted by qualified professionals to ensure the highest possible standards

Expertise and efficiency
We combine human expertise for in-depth analysis with efficient automation for ongoing scanning

GuardNest platform
Simplifies vulnerability management with real-time reporting, remediation tracking, and expert advice

Compliance support
We support adherence to relevant industry regulations and standards to avoid the risk of non-compliance

Remote testing
Our consultants offer thorough internal and external testing without on-site presence

Wide range of expertise
We offer testing across everything from infrastructure and mobile applications to cloud and IoT environments
Why should you conduct an ITHC?

Why should you conduct an ITHC?
Why should you conduct an ITHC?
Connecting to the PSN carries strict security obligations. Meeting them requires an expert, thorough assessment.
Identify and address vulnerabilities to defend against cyber threats and safeguard sensitive public data.
Ensure you meet the government’s mandatory regulatory requirements for PSN access.
Provide clarity on IT environment risks, enabling smarter, more targeted security investment decisions.

Connecting to the PSN carries strict security obligations. Meeting them requires an expert, thorough assessment.
Identify and address vulnerabilities to defend against cyber threats and safeguard sensitive public data.
Ensure you meet the government’s mandatory regulatory requirements for PSN access.
Provide clarity on IT environment risks, enabling smarter, more targeted security investment decisions.
Our services

PSN Compliance Audit
For organisations needing PSN access through a comprehensive and efficient audit.
Includes:
- External assessment
- Authenticated scanning
- Device build reviews
- Mobile device management (MDM) review
- Remote access review (VPN)
- PSN firewall
- Wireless assessment

PSN Compliance Audit Plus
For organisations requiring deeper testing of their infrastructure and PSN compliance.
Includes everything in the core package, plus:
- Discounted testing days
- External infrastructure scanning
- 10 remediation checks
- Third-party integrations
- Continuous email support
Methodology
We ensure testing has both depth and breadth by aligning with recognised methodologies such as CREST, OSSTMM, OWASP, and NIST.
This ensures a structured, consistent approach grounded in best practice and real-world threat intelligence.
We follow a clear seven-step process designed to deliver rigorous testing, meaningful insight, and practical remediation guidance at every stage.
We listen to your needs and develop a tailored project strategy, producing a scope that meets your unique requirements.
Where vulnerabilities are successfully exploited, our consultants assess their severity by determining which assets and networks can be accessed and what data may be exposed. Vulnerabilities are then ranked from low to critical within GuardNest.
We scan and enumerate the defined targets to identify existing vulnerabilities. This includes listening for open ports, identifying running services, and developing an attack plan based on the scan results.
Our consultants assess how deeply they can access your systems using leading industry techniques, custom-built tools, and their first-hand experience.
If a consultant successfully exploits a vulnerability, they assess its severity. This involves determining which assets and networks can be accessed and how much information can be gathered. Your vulnerabilities are then ranked from low to critical in GuardNest.
We publish the findings in a report on GuardNest, organised by category and type, with remediation advice for each exploit and vulnerability. On request, we also arrange debrief calls to review identified risks in detail and discuss remediation.
Your GuardNest licence includes continuous external infrastructure scanning to minimise risk between tests. We also offer a remediation check service, and every engagement includes a full consultative approach to ensure ongoing support even after the project is complete.

Ready to achieve PSN compliance?
What our clients say
We’ve always been very impressed with the cyber security services WorkNest provide us. Their professional approach, knowledge and flexibility have ensured they have become a key trusted partner in our supply chain.
Paymentsense
Founder
WorkNest Secure delivered a highly professional and thorough incident response service. Their team’s technical knowledge, attention to detail, and clear communication throughout the process made a complex area easy to navigate. The quality of the analysis and final reporting gave us real assurance and added value to our internal security efforts, minimising the impact to the business.
Shoezone
Head of IT
Our Penetration Testing services cover a wide range of endpoint categories, including App, Network, Cloud, Web, and API. We can deliver the Penetration Test you need to get the results you want.

Identify vulnerabilities or misconfigurations in Android, iOS, and cross-platform apps.

Uncover misconfigurations, privilege gaps, and architectural weaknesses before attackers do.

Uncover vulnerabilities and misconfigurations in Windows, macOS, and other desktop software.

Identify weaknesses in your human and physical defences.













