SecSmithOps

About SecSmithOps

A new offensive-security company, built around proof

We secure applications through offensive security.

SecSmithOps was founded on a simple observation: most organizations don't lack security tooling, they lack confidence that their defenses actually hold up against a real attacker. We started this company to close that gap — with manual, adversary-style testing that finds the vulnerabilities automated scanners miss, and reports you can hand straight to engineering.

We're a new company, and we say that plainly rather than inflate our history. What we bring instead is certified, hands-on offensive security experience, a methodology built around working proof-of-concept for every finding, and the focus of a team that has to earn every client relationship from a standing start. We forge defenses the way a smith forges steel — under pressure, tested, and proven before it ever leaves the shop.

What we stand for

Core values

Offensive first

We think like adversaries so the defenses we help you build hold up against real attackers, not just checklists.

Proof, not promises

Every finding ships with a working proof-of-concept. If we can't demonstrate it, we don't report it as critical.

Full transparency

Clear reporting with zero ambiguity — you'll always know exactly what we found, how, and what to do about it.

Security by design

We'd rather help you build it right than keep finding the same class of issue in every engagement.

The team

Founding team

Small by design right now — the engineers who scope, run, and report on your engagement personally.

F1

Founding Engineer

Offensive Security Lead

Leads penetration testing and red team engagements; background in application security and exploit development.

F2

Founding Engineer

Cloud & Infrastructure Lead

Focuses on cloud configuration review and infrastructure hardening across AWS, Azure, and GCP environments.

F3

Founding Engineer

DFIR & Detection Lead

Runs incident response engagements and builds detection-evaluation methodology for red team exercises.