Skip to content

02 Advisory Services

Built on 15 years of
doing the work.

Training and advisory rooted in active offensive security practice. If it doesn't hold up on a real engagement, it doesn't end up in the work.

01 What I do

Three ways to work together

A

Course & Lab Design

Full curriculum design and delivery, from concept to self-hosted lab environment. Every module maps to real adversary technique, not checkbox compliance. Built for offensive practitioners, internal red teams, and defenders who want to understand the other side.

B

Red Team Advisory

Strategic support for security teams and leadership - scoping red team programmes, making sense of findings, or navigating regulatory frameworks like DORA and TIBER-EU. Advice grounded in operational reality, not just frameworks on paper.

C

Adversary Simulation Design

End-to-end design of realistic attack scenarios and lab environments for training platforms, CTFs, or internal exercises. Attack chains, adversarial infrastructure, and bespoke tooling that reflects how threat actors actually operate.

02 How engagements run

Grounded, practical, evidence-led

01

Scope

Understand the objective, the estate, and the constraints - what "good" looks like for you.

02

Design

Build the plan: attack chains, curriculum, or lab architecture tailored to the goal.

03

Deliver

Execute - hands-on build, delivery, or advisory alongside your team.

04

Transfer

Leave you with the knowledge, tooling, and documentation to run it yourselves.

upskill your team

Want the training that backs the advisory?

The MAE red team course distils the same tradecraft into 14 self-paced modules with self-hosted labs.

Have a project in mind? advisory[at]zsec[dot]red