ABOUT US

Built by
Operators

ShadowCore was founded by cybersecurity operators who build, break, and defend. Penetration testing, compliance, SOC — one team covering your entire attack surface.

8
Team Members
15+
Certifications Held
26+ yrs
Combined Experience
50+
Pentests Conducted
Values

Our Principles

The operational doctrine that guides every engagement.

01

Offense Informs Defense

We attack to protect. Our red team insights directly improve our defensive capabilities.

02

Transparency Over Obscurity

We publish our methodologies, maintain a public trust center, and hold ourselves accountable.

03

Continuous Evolution

The threat landscape shifts daily. Our team trains weekly, researches constantly, and adapts.

04

Client Confidentiality

Zero tolerance for data exposure. Strict need-to-know access. All engagements sanitized.

Team

Our Team

Security professionals with hands-on experience across pentest, compliance, SOC, and application security.

Founder
DS

Denys S.

Founder, Head of Security

5 yrs
BSCP | Pentest· Compliance· Application Security· DevSecOps

Web & Mobile Application Security, Penetration Testing, NIS2 Compliance, DevSecOps. Worked in gov, product & fintech sectors. Conducted 20+ full-scope penetration tests, built Secure SDLC from zero, supported NIS2 audit for a major pharmacy company.

PO

Philip O.

Senior AppSec Engineer

7 yrs
OSCP OSWE
Pentest· Application Security

7+ years in security and bug bounty. Detected hundreds of critical vulnerabilities, Mozilla Hall of Fame, authored cybersecurity researches. Performed Red Team Engagement for product company, detected critical vulnerability in Mozilla Firefox.

NH

Nykyta H.

Security Engineer

4 yrs
eCPPT CompTIA Pentest+ eWPTX ICCA BSCP
Pentest· Application Security· SecOps

Application and infrastructure penetration testing, vulnerability management, and secure SDLC practices. Performed code review and secure SDLC integration for a fintech startup, conducted vulnerability assessment and hardening of cloud-hosted infrastructure.

EH

Elkhan H.

Security Engineer

4 yrs
CompTIA Security+ eJPT eCPPT eWPTX
Pentest· Application Security

Web and API penetration tests, code reviews, and security assessments for SaaS and fintech clients. Conducted internal network pentesting and Active Directory security review, executed web application and API penetration testing for a SaaS analytics platform.

YY

Yehor Y.

SOC Engineer

3y
CDSA *
Pentest· SOC· Compliance

SIEM deployment, creating mini-SOCs for small businesses. Two years of SOC analytics for government agencies and large energy companies. Built Vulnerability Management process for a critically important government company, ~10 pentests conducted.

MS

Mykhailo Sh.

Junior Compliance Engineer

1y
BTL1 *
SOC· SecOps· Compliance

SOC and compliance with focus on supporting security operations for SMBs. NIS2 & ISO 27001 audits for two companies, development of employee training plans, creation of security policies, deployment of SIEM & SOAR systems.

OK

Oleksii K.

Junior Compliance Engineer

1y
eJPTv2 *
Pentest· Compliance

Assisting senior penetration testers, NIS2-compliant assessments. Conducted two comprehensive penetration tests with full vulnerability documentation, implemented security policies from scratch for medium-sized company.

OS

Oleksandr S.

Junior Compliance Engineer

1y
CISCO Intro in Cybersecurity GOSI *
Pentest· Compliance· OSINT

1.5 years in OSINT — data verification, information discovery and tracking. NIS2, ISO 27001, and GDPR audit experience. Performed several penetration tests, participated in volunteer OSINT operations.

Join the team

We're always looking for talented security professionals.

Get in Touch