The practice
About NOBSEC
Founded by Nikifor Georgiev · Based in the European Union
NOBSEC Ltd is an offensive cybersecurity consultancy founded by Nikifor Georgiev, a specialist in adversarial security with over a decade of experience across financial services, enterprise, technology, and AI sectors.
The practice is built on a straightforward premise: the most reliable way to understand your security posture is to assess it from the attacker’s perspective. Every engagement is conducted with the rigour and methodology of a real-world threat actor, and delivered with the clarity and professionalism that operations and executive teams can act on.
Prior to founding NOBSEC, Nikifor led penetration testing programmes within global technology and financial organisations — including PCI-DSS scoped assessments, internal red team programmes, purple teaming exercises, and security operations support. Hands-on work spans network compromise, web application exploitation, Active Directory attack chains, and — since the emergence of production AI deployments — adversarial testing of LLM integrations and agentic systems.
Based in the European Union, serving clients internationally. Engagements are delivered remotely or on-site as required. Operating from the EU provides familiarity with European security, privacy, and regulatory frameworks while supporting organizations worldwide.
Certifications
10+ years in offensive security
Offensive Security Web Expert
Offensive Security
Offensive Security Certified Professional
Offensive Security
Certified Red Team Operator
Zero Point Security
Areas of Expertise
- Red Teaming & Adversary Simulation
- Web Application & API Penetration Testing
- AI & LLM Security Assessment
- Network Infrastructure Security
- Cloud Security (AWS & Azure)
- Active Directory Attack & Defence
- Security Hardening & Architecture Review
- PCI-DSS Scoped Assessments
Tools & Technology
Grouped by domain
Offensive Assessment
Kali Linux, Burp Suite Pro, custom tooling, network protocol analysis
Vulnerability Management
Nessus / Tenable, Nexpose, Qualys, WIZ, OpenVAS
Cloud & DevOps
AWS, Azure, Terraform, Ansible, Docker, Kubernetes
SIEM & EDR
CrowdStrike, RSA Security Analytics, Sumo Logic, Checkpoint Harmony
Network Security
Juniper, Checkpoint, Cisco ASA, Fortigate, PaloAlto
Application Platforms
REST, GraphQL, SOAP APIs; Java, Python, PHP, JavaScript
Ready to assess your attack surface?
Every engagement ends with a prioritised report your team can act on immediately.
Discuss Your Project