Services
Security work that stands up to scrutiny.
Each engagement is scoped to your environment and led by a named consultant from first call to final report.
01
Cryptocurrency Recovery & Tracing
Our blockchain investigators follow stolen funds wallet by wallet, through mixers, bridges and exchanges, then build the evidence pack needed to request freezes from exchanges and support law enforcement and legal action. Recovery always depends on where funds end up; these are investigative avenues, not promises of recovery.
- Bitcoin, Ethereum, USDT and major chains
- Investment, romance and phishing scam cases
- Exchange freeze requests and evidence packs
- Liaison with law enforcement and counsel
02
Vulnerability Assessment & Penetration Testing
Our testers approach your environment the way a determined adversary would, then explain each weakness in plain terms with a clear route to remediation. Every critical finding is retested at no extra cost.
- External and internal infrastructure
- Authenticated and unauthenticated testing
- Prioritised remediation roadmap
- Free retest of critical findings
03
Web Application Security
We examine authentication, session handling, business logic and data exposure across your applications and APIs, aligned to OWASP methodology and your own risk priorities.
- Web and mobile back-end APIs
- Business logic abuse cases
- Authentication and access control
- Developer-ready guidance
04
Network & Endpoint Testing
From firewall rules to laptop builds and cloud permissions, we identify the routes an attacker would chain together and show you how to break that chain.
- Network segmentation reviews
- Endpoint build assessments
- Cloud configuration audits
- Wireless security testing
06
Forensics & Incident Response
When something has gone wrong, our responders preserve evidence, establish what happened and guide recovery. Findings are documented to a standard suitable for insurers, regulators and counsel.
- Rapid containment support
- Evidence preservation and imaging
- Root cause analysis
- Reports suitable for legal proceedings
07
Threat Modeling & Consulting
We work alongside leadership and engineering teams to understand what you need to protect, who might target it, and which investments will genuinely reduce risk.
- Threat modelling workshops
- Security strategy and roadmaps
- Board-level risk reporting
- Supplier and third-party reviews

05
Social Engineering & Configuration Reviews
Controlled phishing, telephone pretexting and physical access exercises, paired with reviews of the configuration settings that determine how far a single mistake can spread.
- Phishing and vishing campaigns
- Physical access assessments
- Microsoft 365 and Google Workspace reviews
- Awareness briefings for staff
Discuss this service