Home/Capabilities

Capability catalog

Everything we bring to a hard problem.

Twelve interlocking domains — across security, forensics, engineering and the systems your business runs on — delivered by specialists and orchestrated as one program. Engage a single service or hand us the whole problem; the standard is the same.

DOMAIN 01

Cyber Defense & Operations

The day-to-day work of keeping a modern estate defensible — detection, response, and architecture that assumes the adversary is already trying.

Discuss your estate
01.1Managed Detection & Response

Continuous monitoring, triage and response across endpoint, identity and cloud — the SOC capability most teams can’t sustain in-house.

01.2Threat Hunting

Hypothesis-driven hunts for adversaries that evade automated tooling, surfacing dwell-time intrusions before they detonate.

01.3Incident Response

Rapid containment, eradication and recovery when an incident is live — with a retainer option for guaranteed response windows.

01.4Vulnerability & Exposure Management

Continuous discovery, prioritization and remediation guidance that reduces real attack surface rather than inflating ticket counts.

01.5Zero-Trust Architecture

Identity-centric segmentation and access design that limits blast radius and removes implicit trust from your network.

01.6Cloud & Infrastructure Security

Hardening and posture management for AWS, Azure, GCP and hybrid estates, mapped to how your workloads actually run.

01.7Security Architecture Review

Independent assessment of your design against the threats you face, with a prioritized roadmap to close the gaps.

01.8Platform & Control Optimization

Tuning the security tooling you already own — detections, policies and integrations — so it earns its license cost.

DOMAIN 02

Offensive Security

We attack your defenses the way a real adversary would — so the only people who find the gaps are the ones you hired to.

Commission a test
02.1Penetration Testing

Network, web, mobile, API and wireless testing against a defined scope, with findings ranked by exploitability and business impact.

02.2Red Team & Adversary Simulation

Goal-oriented, multi-vector campaigns that emulate named threat actors and test detection and response end to end.

02.3Social Engineering

Phishing, vishing and physical-access assessments that measure the human layer most controls assume away.

02.4Purple Team Exercises

Attackers and defenders working side by side to build, validate and tune detections against real techniques.

02.5Assumed-Breach Assessment

Starting from a foothold to measure how far an intruder could move, and how quickly you’d notice.

02.6Application Security Review

Source-assisted testing and threat modeling for the software your business depends on or ships to customers.

DOMAIN 03

Digital Forensics & Incident Response

Evidence-grade investigation that reconstructs what happened and proves it — to a standard that holds in the boardroom and the courtroom.

Engage an investigation
03.1Host & Disk Forensics

Forensic imaging and analysis of workstations and servers to recover artifacts, deleted data and the timeline of an event.

03.2Memory & Volatile Analysis

Capturing and dissecting live memory to expose in-memory malware, credentials and activity that never touches disk.

03.3Network Forensics

Reconstructing intrusions from packet captures, flow data and logs to map lateral movement and exfiltration.

03.4Cloud & SaaS Forensics

Investigation across cloud control planes, identity providers and SaaS audit trails where modern compromises increasingly live.

03.5Mobile Device Forensics

Structured extraction and analysis of phones and tablets, preserving evidential integrity throughout.

03.6Malware Analysis & Reverse Engineering

Static and dynamic analysis to determine capability, attribution indicators and the controls needed to stop it.

03.7eDiscovery & Litigation Support

Defensible collection, processing and review support for disputes, investigations and regulatory matters.

03.8Expert Witness & Chain of Custody

Documented methodology, exhibits and testimony that withstand legal challenge in our operating jurisdictions.

DOMAIN 04

Mobile Verification (MVTS)

Our Mobile Verification & Threat Service confirms whether a device has been targeted by mercenary spyware — and protects the people most likely to be.

Verify a device
04.1Mercenary Spyware Detection

Forensic examination for Pegasus-class and other commercial surveillance implants, using indicators drawn from current research.

04.2Device Integrity Assessment

A structured health check of a phone’s configuration, exposure and signs of tampering or compromise.

04.3Rapid Mobile Triage

Fast, consent-based acquisition and screening when a device may be compromised and time matters.

04.4High-Risk Individual Protection

Ongoing monitoring and hardening for executives, journalists, lawyers and others whose phones are a target.

04.5Mobile Hardening & Guidance

Configuration, segmentation and operational practice that shrink a device’s attack surface without breaking how people work.

04.6Travel & Burner Protocols

Pre- and post-travel device procedures for staff entering higher-risk environments.

DOMAIN 05

TEMPEST & Emanation Security

Compromising emanations leak data through the air and along cables, invisibly. We contain them — and certify the spaces that must stay secret.

Assess a facility
05.1TEMPEST Assessment & Zoning

Evaluating equipment and facilities for compromising emanations and defining the control zones needed to contain them.

05.2Emanation Testing & Measurement

Instrumented measurement of radiated and conducted emissions against recognized emanation-security thresholds.

05.3Shielding & Faraday Design

Specification of shielded enclosures, rooms and cabinets — from design through to verification of attenuation performance.

05.4SCIF & Secure-Space Support

Engineering and documentation support for the design and accreditation of sensitive compartmented and secure facilities.

05.5RF & EMI Survey

Spectrum surveys to baseline the electromagnetic environment and detect anomalies around sensitive areas.

05.6Emanation Remediation

Filtering, bonding, grounding and isolation work to bring an existing space within the required emanation profile.

DOMAIN 06

Technical Surveillance Countermeasures

Finding the devices designed not to be found. Physical and RF sweeps that re-establish privacy in the rooms where it matters.

Arrange a sweep
06.1Bug Sweeps (TSCM)

Comprehensive physical and electronic searches of rooms, vehicles and devices for covert audio, video and tracking implants.

06.2RF Spectrum Monitoring

Detection and characterization of unauthorized transmitters operating across the radio-frequency spectrum.

06.3Boardroom & Event Assurance

Pre-meeting sweeps and continuous monitoring for sensitive negotiations, board sessions and high-profile events.

06.4Line & Network Inspection

Examination of telephone, data and power lines for interception devices and anomalous connections.

DOMAIN 07

Secure Communications & Cryptography

Designing how your most sensitive information is stored and moved — and making sure it stays readable only to the right people, today and after quantum.

Design secure comms
07.1Encrypted Communications

Deployment and assurance of end-to-end encrypted voice, messaging and file exchange for teams that need confidentiality.

07.2PKI & Key Management

Design and operation of certificate and key-management infrastructure, including HSM integration and lifecycle governance.

07.3Cryptographic Review

Independent assessment of how cryptography is implemented in your products and systems, against current best practice.

07.4Post-Quantum Readiness

Crypto-agility assessment and migration planning toward quantum-resistant algorithms before the threat matures.

07.5Secure Data & Key Custody

Architecture for protecting data at rest and the keys that guard it, with separation-of-duty built in.

07.6Communications Hardening

Locking down the everyday channels — email, conferencing, mobile — that carry more secrets than anyone admits.

DOMAIN 08

Advanced Engineering & R&D

When the problem is genuinely new, the answer has to be built. Applied research and engineering aimed at the threat no product yet covers.

Scope a build
08.1Bespoke Security Tooling

Custom detection, automation and analysis tools engineered around your environment and the gaps in off-the-shelf coverage.

08.2Applied AI & ML for Detection

Models that find signal in volumes no analyst could read — built, validated and kept honest about their limits.

08.3Hardware & Embedded Security

Assessment and design for devices, firmware and embedded systems where the silicon is the attack surface.

08.4Secure Software Development

Security-first engineering and SDLC support, from threat modeling to hardened release pipelines.

08.5Capability Research

Focused research into emerging threats and techniques, translated into defenses you can deploy.

08.6Prototype & Proof of Concept

Fast, rigorous prototyping to prove an approach before you commit budget to it at scale.

DOMAIN 09

Governance, Risk & Compliance

Turning security from a checklist into a program — measurable, defensible and aligned to the frameworks your sector answers to.

Build your program
09.1Risk Assessment

Structured assessment of threats, vulnerabilities and impact, prioritized by what actually moves your risk.

09.2Framework Alignment

Programs mapped to the standards relevant to your work — NIST CSF, ISO 27001, SOC 2, GDPR, CMMC and CJIS among them.

09.3Security Program Development

Policy, process and governance built to fit your organization rather than a template that gathers dust.

09.4Maturity & Gap Assessment

An honest baseline of where you are, where you need to be, and the shortest credible path between them.

09.5Third-Party & Supply-Chain Risk

Assessment of the vendors and dependencies that extend your attack surface beyond your own walls.

09.6Security Awareness & Training

Role-based training and exercises that change behavior, not just completion rates.

DOMAIN 10

Managed Services & Advisory

Ongoing capability for organizations that need depth without building it all in-house — from 24/7 operations to a security leader on call.

Explore retainers
10.124/7 Security Operations

Round-the-clock monitoring and response delivered as a managed service, tuned to your environment and risk appetite.

10.2Virtual CISO

Senior security leadership on a fractional basis — strategy, governance and board-level communication without a full-time hire.

10.3Incident Response Retainer

Guaranteed access to our responders with agreed service levels, so help is contracted before you ever need it.

10.4Continuous Monitoring

Ongoing assurance across attack surface, posture and emanation profile, reported in terms a board can act on.

10.5Threat Intelligence

Curated, relevant intelligence on the actors and techniques most likely to target your sector and footprint.

10.6Strategic Advisory

Trusted counsel for the decisions that don’t fit a service line — architecture, investment, crisis and beyond.

DOMAIN 11

Business Systems & Optimization

The systems a business actually runs on — invoicing, ERP, internal tooling — rebuilt to be fast, reliable and an advantage rather than a liability.

Fix a broken system
11.1Invoicing & Billing Systems

Design, replacement and automation of invoicing, billing and accounts-receivable systems — ending the manual workarounds and revenue leakage that legacy tools create.

11.2ERP & Workflow Re-engineering

Streamlining procurement, finance and operations workflows in and around ERP platforms so the system fits the business, not the other way around.

11.3Custom Internal Software

Bespoke line-of-business applications, portals and dashboards built around how your teams actually work.

11.4Process Automation

Automating the repetitive, error-prone manual processes that quietly drain hours and introduce mistakes across a business.

11.5Data Platforms & Integration

Connecting siloed systems and building the data pipelines, integrations and reporting that turn scattered records into decisions.

11.6Legacy Modernization

Replatforming ageing, unsupported systems onto modern, secure foundations — without the big-bang risk of a rip-and-replace.

DOMAIN 12

Systems Engineering & Hardware

When the answer has to exist in the physical world — shielded enclosures, secure devices, deployable systems — we design, build and supply the gear, not just the advice.

Specify a build
12.1TEMPEST-Shielded Hardware

Design and supply of TEMPEST-shielded enclosures, EMSEC-compliant workstations and Faraday solutions that keep compromising emanations inside the room.

12.2Secure & Embedded Devices

Custom embedded systems and hardened devices for environments where the silicon itself has to be trusted.

12.3Hardware Design & Supply

From prototype to production: design, build and supply of specialized hardware tailored to a mission no off-the-shelf product covers.

12.4Ruggedized & Field Systems

Deployable, ruggedized systems engineered to keep working in hostile, mobile or austere conditions.

12.5Secure Communications Hardware

Cryptographic and secure-communications equipment integrated and configured for confidentiality you can depend on.

12.6Complex Systems Integration

Bringing multi-vendor hardware, software and infrastructure together into one coherent, supportable system.

Frameworks we work within

Engagements aligned to the standards your sector is held to.

NIST CSF ISO/IEC 27001 SOC 2 GDPR / UK GDPR CMMC CJIS PCI DSS NIS2

We align our work to the controls and evidence requirements these frameworks demand, and support clients pursuing their own certification. Framework alignment describes how we deliver — speak to us about your specific compliance obligations.

Not sure where to start?

Tell us the problem. We’ll find the capability.

Most engagements draw on more than one domain. Describe what’s keeping you up at night and we’ll shape the right combination — and tell you honestly if you don’t need us.