About SecSmithOps
A new offensive-security company, built around proof
We secure applications through offensive security.
SecSmithOps was founded on a simple observation: most organizations don't lack security tooling, they lack confidence that their defenses actually hold up against a real attacker. We started this company to close that gap — with manual, adversary-style testing that finds the vulnerabilities automated scanners miss, and reports you can hand straight to engineering.
We're a new company, and we say that plainly rather than inflate our history. What we bring instead is certified, hands-on offensive security experience, a methodology built around working proof-of-concept for every finding, and the focus of a team that has to earn every client relationship from a standing start. We forge defenses the way a smith forges steel — under pressure, tested, and proven before it ever leaves the shop.
What we stand for
Core values
Offensive first
We think like adversaries so the defenses we help you build hold up against real attackers, not just checklists.
Proof, not promises
Every finding ships with a working proof-of-concept. If we can't demonstrate it, we don't report it as critical.
Full transparency
Clear reporting with zero ambiguity — you'll always know exactly what we found, how, and what to do about it.
Security by design
We'd rather help you build it right than keep finding the same class of issue in every engagement.
The team
Founding team
Small by design right now — the engineers who scope, run, and report on your engagement personally.
Founding Engineer
Offensive Security Lead
Leads penetration testing and red team engagements; background in application security and exploit development.
Founding Engineer
Cloud & Infrastructure Lead
Focuses on cloud configuration review and infrastructure hardening across AWS, Azure, and GCP environments.
Founding Engineer
DFIR & Detection Lead
Runs incident response engagements and builds detection-evaluation methodology for red team exercises.