---
title: Red Teaming | Alchemy Security Consulting
description: Test prevention, detection and response with a controlled red team campaign. Get evidence of attack paths and clear priorities for stronger defences.
---

[Skip to Content](https://www.alchemysec.com.au/services/offensive/red-teaming#body)

**University of Sydney Code Library Breach:** Disclosed 18 Dec, 2025

Personal details of about 27,500 current and former staff exposed.

18 Dec 2025 - Syd Uni breached

[Read more](https://www.sydney.edu.au/news-opinion/news/2025/12/18/notification-of-cyber-and-data-breach.html)

[![Alchemy\_Security\_Consulting\_Logo\_B2\_Cropped\_White\_400](https://www.alchemysec.com.au/hs-fs/hubfs/Alchemy_Security_Consulting_Logo_B2_Cropped_White_400.png?width=200&name=Alchemy_Security_Consulting_Logo_B2_Cropped_White_400.png)](https://www.alchemysec.com.au/?hsLang=en-au)

- Offensive Security
- Defensive Security
- Managed Services
- Company
- Resources

[Have you been breached?](https://www.alchemysec.com.au/breached?hsLang=en-au) [Book a consult](https://www.alchemysec.com.au/contact?hsLang=en-au)

[Offensive Security](https://www.alchemysec.com.au/services/offensive?hsLang=en-au) [Penetration Testing](https://www.alchemysec.com.au/services/offensive/pentest?hsLang=en-au) [Red Teaming](https://www.alchemysec.com.au/services/offensive/red-teaming) [Adversary Simulation](https://www.alchemysec.com.au/services/offensive/adversary-simulation?hsLang=en-au) [Purple Teaming](https://www.alchemysec.com.au/services/offensive/purple-teaming?hsLang=en-au)

[Defensive Security](https://www.alchemysec.com.au/services/defensive?hsLang=en-au) [Incident Response](https://www.alchemysec.com.au/breached?hsLang=en-au) [SIEM, Logging & Detection Engineering](https://www.alchemysec.com.au/services/defensive/siem-logging?hsLang=en-au)

[Managed Services](https://www.alchemysec.com.au/services/managed?hsLang=en-au) [Managed Detection & Response](https://www.alchemysec.com.au/services/managed/mdr?hsLang=en-au) [Managed SOC](https://www.alchemysec.com.au/services/managed/soc?hsLang=en-au) [Continuous Threat Emulation](https://www.alchemysec.com.au/services/managed/continuous-threat-emulation?hsLang=en-au)

[About Us](https://www.alchemysec.com.au/about?hsLang=en-au) [Contact Us](https://www.alchemysec.com.au/contact?hsLang=en-au)

[Blog](https://www.alchemysec.com.au/blog?hsLang=en-au)

- Offensive Security
  
  [Offensive Security](https://www.alchemysec.com.au/services/offensive?hsLang=en-au) [Penetration Testing](https://www.alchemysec.com.au/services/offensive/pentest?hsLang=en-au) [Red Teaming](https://www.alchemysec.com.au/services/offensive/red-teaming) [Adversary Simulation](https://www.alchemysec.com.au/services/offensive/adversary-simulation?hsLang=en-au) [Purple Teaming](https://www.alchemysec.com.au/services/offensive/purple-teaming?hsLang=en-au)
- Defensive Security
  
  [Defensive Security](https://www.alchemysec.com.au/services/defensive?hsLang=en-au) [Incident Response](https://www.alchemysec.com.au/breached?hsLang=en-au) [SIEM, Logging & Detection Engineering](https://www.alchemysec.com.au/services/defensive/siem-logging?hsLang=en-au)
- Managed Services
  
  [Managed Services](https://www.alchemysec.com.au/services/managed?hsLang=en-au) [Managed Detection & Response](https://www.alchemysec.com.au/services/managed/mdr?hsLang=en-au) [Managed SOC](https://www.alchemysec.com.au/services/managed/soc?hsLang=en-au) [Continuous Threat Emulation](https://www.alchemysec.com.au/services/managed/continuous-threat-emulation?hsLang=en-au)
- Company
  
  [About Us](https://www.alchemysec.com.au/about?hsLang=en-au) [Contact Us](https://www.alchemysec.com.au/contact?hsLang=en-au)
- Resources
  
  [Blog](https://www.alchemysec.com.au/blog?hsLang=en-au)

[Have you been breached?](https://www.alchemysec.com.au/breached?hsLang=en-au) [Book a consult](https://www.alchemysec.com.au/contact?hsLang=en-au)

# Test what an attacker could achieve.

Controlled red team campaigns that test your ability to prevent, detect and respond to a realistic attack.

## What can an attacker achieve?

![](https://www.alchemysec.com.au/hs-fs/hubfs/Images/Icons/penetration-testing@2x.png?width=40&height=40&name=penetration-testing@2x.png)

### Reach critical assets

 Test whether a realistic attack path can reach the systems, data or business objectives that matter most to your organisation.

![red-purple-teaming@2x](https://www.alchemysec.com.au/hs-fs/hubfs/Images/Icons/red-purple-teaming@2x.png?width=40&height=40&name=red-purple-teaming@2x.png)

### Test detection

 Discover which stages of a multi-step attack your security controls detect, and where gaps in visibility allow activity to continue.

![adversary-simulation@2x](https://www.alchemysec.com.au/hs-fs/hubfs/Images/Icons/adversary-simulation@2x.png?width=40&height=40&name=adversary-simulation@2x.png)

### Assess response

 See how people, processes and technology work together under realistic conditions, with clear priorities for strengthening your response.

## How the campaign works

### 1. Agree the objectives

Define the critical assets, threat profile, success measures and permitted attack surfaces with your trusted control group.

### 2. Set the boundaries

Agree rules of engagement, operational constraints, escalation contacts and stop conditions before testing begins.

### 3. Execute the campaign

Follow realistic attack paths within the agreed scope, recording evidence of prevention, detection and response.

### 4. Prioritise improvements

Review the attack narrative together and turn the findings into a prioritised control and detection improvement backlog.

## What you receive

### Evidence you can act on

- Executive and technical reports covering objectives, attack paths and supporting evidence.
- Observations on prevention, detection and response across the campaign.

### A clear improvement plan

- A prioritised control and detection improvement backlog.
- A stakeholder readout, with workshops or retesting where included in scope.

## Red teaming questions

When is red teaming the right choice?

Red teaming suits organisations with established security foundations that want to test resilience across multiple controls. If you need to identify weaknesses in a specific system, penetration testing may be the better starting point.

How is the campaign controlled?

A trusted customer control group agrees the objectives, boundaries, deconfliction process and stop conditions. Social engineering, physical activity, persistence and other higher-risk techniques require explicit authorisation. Campaign artefacts are removed and cleanup is checked.

How does this differ from purple teaming?

Red teaming tests a realistic attack against your defences, often with limited defender awareness. Purple teaming brings attackers and defenders together to observe activity, improve controls and retest the results.

## Ready to test your defences?

Let’s define the objectives and boundaries for your red team campaign.

[Discuss a red team engagement](https://www.alchemysec.com.au/contact?hsLang=en-au)

---

![Alchemy Security Consulting](https://www.alchemysec.com.au/hubfs/Images/Logos/Alchemy/Alchemy_Security_Consulting_Logo_B2_Cropped_White_350.png)

 Offensive, defensive and managed security expertise to help you understand your exposure, strengthen your defences and validate improvement.

#### Get In Touch

##### Location

 30 Pirie St, Adelaide, South Australia 5000

##### Contact

###### Phone :

[1300 792 870](tel:+611300792870)

###### Email :

[sales@alchemysec.com.au](mailto:sales@alchemysec.com.au)

#### Services

- [Penetration Testing](https://www.alchemysec.com.au/services/offensive/pentest)
- [Red Teaming](https://www.alchemysec.com.au/services/offensive/red-teaming)
- [Adversary Simulation](https://www.alchemysec.com.au/services/offensive/adversary-simulation)
- [Purple Teaming](https://www.alchemysec.com.au/services/offensive/purple-teaming)
- [Incident Response](https://www.alchemysec.com.au/breached)
- [SIEM, Logging & Detection Engineering](https://www.alchemysec.com.au/services/defensive/siem-logging)
- [Managed Detection & Response](https://www.alchemysec.com.au/services/managed/mdr)
- [Managed SOC](https://www.alchemysec.com.au/services/managed/soc)
- [Continuous Threat Emulation](https://www.alchemysec.com.au/services/managed/continuous-threat-emulation)

#### Company

- [About Us](https://www.alchemysec.com.au/about)
- [Blog](https://www.alchemysec.com.au/blog)
- [Contact](https://www.alchemysec.com.au/contact)
- [Book a Consult](https://www.alchemysec.com.au/contact)
- [Privacy Policy](https://www.alchemysec.com.au/privacy-policy)

© Alchemy Security. All rights reserved | [Privacy Policy](https://www.alchemysec.com.au/privacy-policy?hsLang=en-au)

```json
{
  "@context" : "https://schema.org",
  "@id" : "https://alchemysec.com.au/#organization",
  "@type" : "Organization",
  "address" : {
    "@type" : "PostalAddress",
    "addressCountry" : "AU",
    "addressLocality" : "Adelaide",
    "addressRegion" : "SA",
    "postalCode" : "5000",
    "streetAddress" : "30 Pirie St"
  },
  "description" : "Cybersecurity consultancy providing offensive security, defensive security and managed security services.",
  "email" : "sales@alchemysec.com.au",
  "name" : "Alchemy Security Consulting",
  "telephone" : "+611300792870",
  "url" : "https://alchemysec.com.au/"
}
```