Ready to strengthen your defenses?
CLIENT
Digraph
SERVICE
Security Architecture
INDUSTRY
Cloud security
YEAR
2023
Problem
Solution
We conducted a comprehensive security and infrastructure assessment of the existing prototype, including evaluation of open-source components used for cloud connectivity, reviewing authentication and credential handling workflows, and mapping trust boundaries and data flows across AWS and GCP environments.
Following this assessment, we developed baseline threat models for the platform and mapped out the core architecture for Digraph’s CSPM credential-protection and data-ingestion pipelines. The design emphasized per-tenant isolation, least-privilege IAM, and secure cross-cloud interactions, constantly with a focus on reducing the risk of credential exposure.
After validating the architecture with the team, we implemented critical portions of the backend infrastructure using Python, Go, and Terraform HCL. We also worked closely with Digraph’s engineers to establish secure development and deployment workflows and supported pre-launch security reviews to ensure alignment with enterprise cloud-security requirements.
Key results
Production-ready infrastructure and architecture for Digraph's cloud-security agent
Hardened security model for credential protection, data-flow handling, and cloud-resource monitoring
Reduced architectural and security risk through detailed design reviews and threat modeling
Successful product launch supported by an enterprise-ready security foundation

SERVICE
Security Architecture
YEAR
2022
We helped Floating Point Group secure and scale their trading API, modernize infrastructure, and strengthen engineering practices.
Client: Confidential
SERVICE
Security Architecture
YEAR
2021-2023
We led the redesign and migration of a major digital asset exchange's high-traffic prices API to a more scalable backend, ensuring stable performance even during extreme market volatility.