devZero Security
Offensive precision|defensive resilience
Set-aside
SDVOSB · VOSB
Certified · exp. 09/2028
UEI
XJFNQJADKMY5
CAGE
0XQU3
DUNS
11-741-3902
Clearance
TS/SCI · US / NATO
NAICS
541330Engineering services
541512Computer systems design
541519Other computer related
541690Scientific & technical consulting
541990Other professional & technical

Cleared offensive capability, engineered end to end.

devZero Security runs full-scope adversary emulation against production, engineers the detections that catch what it finds, and designs and implements the architecture that closes the path for good. Every engagement is executed by cleared, senior personnel.

Document
Capabilities Statement
PDF
Download capabilities statement
1.0Capabilities
1.1

Red Team and Adversary Emulation

Full spectrum offensive operations against production, scoped to your rules of engagement. Assumed breach, phishing, and browser-in-the-middle through to domain dominance, ransomware simulation, and exfiltration.

  • Full Spectrum Offensive Operations
  • Modern C2 · Highly Evasive Tooling
  • Phishing · Social Engineering
  • Active Directory Exploitation
  • Domain Mapping · Attack Path Analysis
1.2

Detection Engineering

Most environments already have the telemetry. What is missing is the rule that reads it. We work alongside your detection team to close the gaps the operation found, then re-run the same path to prove the fix holds.

  • Detection Engineering · Rule Fine-Tuning
  • ATT&CK Coverage Mapping · Telemetry Gaps
  • Offensive Playbooks · Purple Team Validation
  • Detection-as-Code · CI/CD Pipeline
  • Remediation Guidance · Closed-Loop Verification
1.3

Security Architecture

Design, engineering, implementation, and integration. Not a paper review that hands you a gap list. Built to the reference architectures your assessors grade against, by people who break these environments for a living.

  • DoD and CISA Zero Trust Reference Architectures
  • NIST · RMF · Framework-Compliant Engineering
  • Segmentation · Least Privilege Enforcement
  • Network and Identity Engineering
  • Cloud and Hybrid Environments
Fig 1.0 — Attempt surface and successful paths 52 attempted · 14 succeeded
INITIAL ACCESS EXECUTION DISCOVERY CRED ACCESS LATERAL DOMINANCE IMPACT T1078 T1566.001 T1557 T1059.001 T1087.002 T1539 T1021.002 T1550.002 T1003.006 T1213 T1490 T1486 T1567.002 assumed breach spearphishing BiTM session endpoint identity domain recon service account domain controller data store DOMAIN DOMINANCE RANSOMWARE SIM EXFILTRATION

Scroll the graph horizontally →

succeeded attempted, blocked or no result 38 of 52 attempts stopped. These 14 were not.
SUCCEEDEDEXELOGALRT
T1078 Valid accounts
T1566.001 Spearphishing attach.
T1557 Adversary-in-the-middle
T1539 Steal session cookie
T1059.001 PowerShell
T1087.002 Domain acct discovery
T1558.003 Kerberoasting
SUCCEEDEDEXELOGALRT
T1550.002 Pass the hash
T1021.002 SMB admin shares
T1003.006 DCSync
T1213 Data from repositories
T1490 Inhibit system recovery
T1486 Data encrypted (sim)
T1567.002 Exfil to cloud storage
● yes ○ no executed 14 · logged 8 · alerted 2 Both alerts were vendor-default signatures. Nothing requiring tuned detection fired.
2.0Qualifications

Most offensive work is sold by people who will never run it. devZero Security staffs engagements with the operators who scoped them.

Personnel hold active clearances and current offensive certifications. Specific holders, engagement history, and client references are provided on request during scoping, not published.

ClearanceTS/SCI, US and NATO
OffensiveOSEP, OSCP, CRTO, CRTL
NetworkENARSI, CCNP: Enterprise, CCNA
AdditionalCASP+/SecurityX, SANS SEC535
ReferencesAvailable by request
3.0Certifications and affiliations
U.S. Small Business Administration — Service-Disabled Veteran-Owned Certified
U.S. Small Business Administration — Veteran-Owned Certified
National Center Veteran Institute for Procurement — VIP Graduate
4.0Contact

Use the form. The more you put in the scope field, the more the first reply is worth reading.

Location
Arlington, Virginia
UEI
XJFNQJADKMY5
CAGE
0XQU3

Do not send classified, controlled, or otherwise sensitive information through this form.