About NOBSEC

Founded by Nikifor Georgiev · Based in the European Union

NOBSEC Ltd is an offensive cybersecurity consultancy founded by Nikifor Georgiev, a specialist in adversarial security with over a decade of experience across financial services, enterprise, technology, and AI sectors.

The practice is built on a straightforward premise: the most reliable way to understand your security posture is to assess it from the attacker’s perspective. Every engagement is conducted with the rigour and methodology of a real-world threat actor, and delivered with the clarity and professionalism that operations and executive teams can act on.

Prior to founding NOBSEC, Nikifor led penetration testing programmes within global technology and financial organisations — including PCI-DSS scoped assessments, internal red team programmes, purple teaming exercises, and security operations support. Hands-on work spans network compromise, web application exploitation, Active Directory attack chains, and — since the emergence of production AI deployments — adversarial testing of LLM integrations and agentic systems.

Based in the European Union, serving clients internationally. Engagements are delivered remotely or on-site as required. Operating from the EU provides familiarity with European security, privacy, and regulatory frameworks while supporting organizations worldwide.

Certifications

10+ years in offensive security

OSWE

Offensive Security Web Expert

Offensive Security

OSCP

Offensive Security Certified Professional

Offensive Security

CRTO

Certified Red Team Operator

Zero Point Security

Areas of Expertise

  • Red Teaming & Adversary Simulation
  • Web Application & API Penetration Testing
  • AI & LLM Security Assessment
  • Network Infrastructure Security
  • Cloud Security (AWS & Azure)
  • Active Directory Attack & Defence
  • Security Hardening & Architecture Review
  • PCI-DSS Scoped Assessments

Tools & Technology

Grouped by domain

Offensive Assessment

Kali Linux, Burp Suite Pro, custom tooling, network protocol analysis

Vulnerability Management

Nessus / Tenable, Nexpose, Qualys, WIZ, OpenVAS

Cloud & DevOps

AWS, Azure, Terraform, Ansible, Docker, Kubernetes

SIEM & EDR

CrowdStrike, RSA Security Analytics, Sumo Logic, Checkpoint Harmony

Network Security

Juniper, Checkpoint, Cisco ASA, Fortigate, PaloAlto

Application Platforms

REST, GraphQL, SOAP APIs; Java, Python, PHP, JavaScript

Ready to assess your attack surface?

Every engagement ends with a prioritised report your team can act on immediately.

Discuss Your Project