̽»¨ÊÓÆµ



DirectDefense Solutions for the Public Sector

Services Overview

Year Employees Industry
Established Awards
Security 

CAGE Code: 7ZV33
DUNS Number: 078524325
Primary NAIC Codes: 541519, 541690, 541542, 561320 DirectDefense Certifications: ISO/IEC 27001:2022

  • Professional Services
    • Application and Network Security
    • Penetration Testing
    • Compliance Services
    • Cloud Architecture Security
  • Managed Security
    • Managed Detection & Response (MDR)
    • 24x7 Security Operations Center (SOC)
    • Incident Response
  • Connected Systems
    • OT/SCADA/ICS Real-Time Monitoring & Technical Services
    • Product Testing & Certification Prep
    • Compliance & Risk Management
  • Strategy & Planning
    • Table Top Exercises
    • Cybersecurity Strategy & Roadmap
    • Business Continuity and Disaster (BCDR) Recovery Plan
    • Virtual CISO
  • Cybersecurity & Regulatory Compliance
    • Assessment and Authorization (A&A)
    • NIST Risk Management Framework (RMF)
    • Quantitative Risk Assessment
    • Management and Continuous Monitoring
    • CIO/CISO Advisory, Cybersecurity Consulting
    • Risk Readiness and Compliance Assessments
    • (PCI QSA, NIST, CMMC, NERC CIP, ISO)
    • Independent Verification and Validation (IV&V)
    • Staff Augmentation (ISSO, vCISO)
  • Technical Security Testing
    • Web Application, Mobile Application, API, Cloud Environment and Thick Client Testing
    • Source Code Review
    • Secure Development Lifecycle Gap Analysis
    • Network and Wireless Penetration Testing
    • Social Engineering (Email Phishing, Phone Vishing, SMS Phishing) • Server Configuration Review (CIS)
    • Physical Penetration Testing and Facility Reviews
    • Red and Purple Team Exercises
    • Ransomware Simulations
    • Reconnaissance and Information Gathering
  • Managed Security Services
    • Security Information and Event Management
    • Security Operations Management
    • Breach Detection
    • Vulnerability Management
    • Endpoint Detection and Response Management
    • Phishing and Sandbox Analysis
    • Incident Response, Forensics, Malware Analysis
    • Threat Hunting and Analysis, OT/IoT Threat Analysis
  • IOT, SCADA, & Connected Systems
    • Technical and Gap Assessments
    • CMMC Readiness
    • Architecture Review
    • IoT, IIoT, and Mobile Hardware Assessment, IEC62443 Assessment and Certification Prep
    • Product Supply Chain and Third-Party Risk Assessment
    • 24/7 Real-Time Monitoring, Security Operations Management
    • Policy Development
    • OT/IT Network Segmentation Consulting and Implementation
    • Vendor Risk Management for Critical Infrastructure