THREAT-INFORMED · AI-AUGMENTED · EU-SOVEREIGN

Built in the lab.
Proven in the field.

Security testing and cyber exercises built on adversary emulation - the real, documented tradecraft of the actors that matter to your sector. Designed by the people who build the battlefields where Europe's defenders are tested.

For organizations that already have the security fundamentals in place - and want to know how they hold up against a real adversary.

SERVICES
01 / EXERCISES

Training & Cyber Exercises

Exercises built on adversary emulation - we reconstruct the real, documented tactics, techniques and procedures (TTPs) of the threat actors targeting your sector. From training modules to sectoral cyber defense exercises, CTF and tabletops.

02 / TESTING

Threat-informed Purple Teaming

We emulate real, documented threat actors relevant to your sector - and work with your defenders until they can catch them.

03 / CONSULTING

Cyber Range & Secure AI Use

We deploy and support the cyber range your exercises and tests run on - on European cloud, or air-gapped on your own hardware - and advise on using AI safely. The same isolated environment can host sensitive AI workloads. Standalone or inside EU projects.

APPROACH

The same method drives every engagement - whether we run it against your live defenders or as a team exercise on the range.

01

Pick the real adversary

We identify the threat actors actually operating against your sector.

02

Reconstruct their tradecraft

We rebuild their documented TTPs from open-source reporting, mapped to recognized adversary frameworks (MITRE ATT&CK, Unified Kill Chain).

03

Put your team against it

As a purple-team engagement in your environment, or as a scenario your team faces on the cyber range - AI-augmented, always human-reviewed.

04

Turn it into capability

Close the detection gaps, sharpen the playbooks, and leave the team measurably better at facing the real thing.

THREAT-INFORMED

Every test and exercise emulates documented adversary tradecraft, mapped to recognized adversary frameworks - not a generic checklist.

PRACTITIONER-BUILT

Founded by people who built the EU's first open-source cyber range and ran a decade of national defense exercises.

SOVEREIGN BY DESIGN

We run an EU-sovereign AI stack in our own delivery - sensitive data stays in the EU, or never leaves your premises at all.

TRACK RECORD - FOUNDERS' EXPERIENCE
10+ years

designing and running national cyber defense exercises

Military-grade

technical delivery of the most recent Czech military cyber defense exercise

Critical sectors

security teams trained in healthcare, energy and banking

EU research

delivering European cybersecurity and defence research projects

National cloud

designed and operated OpenStack cloud infrastructure for a national provider

Global scale

operated a global high-load production platform on public cloud

The lab is open.

If threat-informed testing and exercises sound like your kind of rigor, we're happy to talk.

CONTACT
REDAN CYBERSECURITY LABORATORY S.R.O.
REGISTERED IN THE CZECH REPUBLIC · EU
Company ID (IČO): {{ICO}} · VAT: {{VAT}}
PRIVACY & GDPR NOTICE
BACK

Privacy & GDPR Notice

This notice explains how REDAN Cybersecurity Laboratory s.r.o. ("REDAN", "we") processes personal data in connection with this website, in accordance with Regulation (EU) 2016/679 (GDPR).

Controller

REDAN Cybersecurity Laboratory s.r.o., registered office at {{ADDRESS}}, Czech Republic (IČO: {{ICO}}), registered in the Commercial Register kept by the {{COURT}}. Contact: {{EMAIL}}.

What we collect & who handles it

This is an informational website. We do not use tracking cookies or analytics that identify you. If you contact us by email, we process the data you send (name, email address, and the content of your message) solely to respond to your enquiry. Your email is handled on our behalf by our email hosting provider ({{PROVIDER}}) as our processor. We keep personal data within the EU/EEA wherever possible; where it is processed outside the EEA, it is safeguarded by appropriate measures such as EU Standard Contractual Clauses. We do not sell your data or share it with any other third party.

Legal basis & retention

We process enquiry data on the basis of our legitimate interest in responding to you and, where applicable, taking steps prior to entering into a contract. Providing your details is neither a statutory nor a contractual requirement - it is simply necessary if you want a reply. We keep enquiry correspondence for up to 24 months after our last contact, unless it leads to a contract, in which case the applicable statutory retention periods apply.

Your rights

You have the right to access, rectify, or erase your personal data, to restrict or object to processing, to data portability, and to withdraw any consent at any time (without affecting processing already carried out). You may also lodge a complaint with the Czech Data Protection Authority (Úřad pro ochranu osobních údajů). To exercise these rights, contact us at the email address on this site.