Boutique cyber defense / Cham, Zug, Switzerland / Founded 2019

Bespoke security for organizations

that don't fit the off-the-shelf.

A small firm of senior consultants. Most forensics specialists do not know the platform deeply, and most platform specialists do not do forensics. The work here has always needed both. We deliver digital forensics, incident response, advanced threat detection and transformation programmes at the depth your risk requires.

2019 Founded in Switzerland
20+ Years in cybersecurity
10+ Years of IR emergencies
3 Regions served: Europe, Middle East and Africa

Who this is for

  • Assessments that go past a check list, informed by decades of tracking advanced threat actor groups.
  • Organizations that are risk averse and prefer to build resilience against the threats that actually apply to them.
  • Teams that need high assurance that enterprise threat detection works as intended.
  • High stakes DFIR investigations involving advanced threats, or evidence that standard tooling cannot read.

Where we are a poor fit

  • Quality and attention to detail are not the priority.
  • You want a product rollout or a managed software solution. We do not resell, host or maintain anything.
  • You need an audit shaped certificate more than you need deep insight.
  • Off-the-shelf solutions already cover what you need.

Flagship program

CDAP

Cyber Defense Assurance Program

The Cyber Defense Assurance Program is a multi-year engagement rather than a series of unrelated projects. One named senior lead stays with the account, so the estate is learned once and then kept current.

01 / OBJECTIVE

The programme works to reduce the attack surface of the organization and to raise the maturity of its security function, cycle after cycle.

02 / APPROACH

A dynamic mix of technical assessments that find the missing best practices attackers exploit, continuous threat detection, and remediation carried through to a verified close. Hardening feeds detection, and both shape response.

03 / GROWTH

The mix follows the organization. Early cycles concentrate on prevention and detection; later ones on incident response planning, tabletop and functional exercises. Findings are tracked cycle over cycle, so improvement is shown rather than claimed.

NEXT / CAPABILITY

Solutions

The four categories and the named work inside them.

NEXT / PROOF

Approach

Method, data handling, and cases that arrived after another team stopped.