
Security and compliance for startups, led by a published security researcher.

Security and compliance for startups, led by a published security researcher.
The Entire Cybersecurity Market, One Prompt Away
Connect your AI assistant to ... tools and ... vendors. Ask anything about the cybersecurity market.
traztech is a Canadian cybersecurity consultancy that provides security and compliance services primarily to startups and small-to-mid-size companies in sectors such as SaaS, fintech, healthcare, and AI. The firm is led by Jacob Masse, a published security researcher with five CVEs, including CVE-2024-45163 (CVSS 9.1), a flaw in the Mirai botnet infrastructure. Security services offered include: - Penetration testing (web, network, and cloud) - Vulnerability management (continuous scanning, triage, and remediation) - Cloud security reviews (AWS, GCP, Azure) - AI/LLM security assessments (prompt injection, RAG leakage, agent abuse, OWASP LLM Top 10) - LLM red-teaming - Vibe-coding QA (security review of AI-generated code) - Fractional/Virtual CISO services - Incident response retainers - Threat and risk assessments (TRA) Compliance services cover multiple frameworks including SOC 2, ISO 27001, ISO 42001 (AI management), HIPAA, PCI DSS, GDPR, PIPEDA, and Quebec Law 25. traztech positions itself as a readiness and preparation firm rather than an auditor; independent CPA firms conduct the actual audits. Services include gap analysis, internal audit support, auditor management, vendor/third-party risk assessments, and outsourced privacy officer functions. Engagements are managed through traztech Workspace, a proprietary client portal that handles findings tracking, evidence requests, document management, milestones, e-signatures, and invoicing. The firm targets companies seeking audit readiness without the cost of enterprise GRC platforms or full-time security staff.