Solution CifersID

Security operations, audits, and identity engineering for critical infrastructure.

Three decades of cybersecurity practice, distilled into three pillars. We audit, we engineer, we ship products that solve real problems.

SOC and Audit Identity and PKI SecurePFX Product
01 / Pillar
Security Operations and Audit

Audits, detection engineering, and incident response for organizations that cannot afford to guess.

From SOC 2 readiness to active threat hunting in Microsoft Sentinel, we deliver the full operational stack. Every engagement is led by senior practitioners with hands-on production experience.

i.

Security audits and gap assessments

Full-scope reviews against SOC 2, ISO 27001, NIST CSF, and CIS Controls. Findings prioritized by exposure, not by checklist.

ii.

Penetration testing and vulnerability assessment

External, internal, and web application testing. Realistic exploitation, executive-ready reporting, retest included.

iii.

SIEM and detection engineering

Microsoft Sentinel and Defender XDR. Custom KQL analytics rules, watchlists, workbooks, and automation that actually fires.

iv.

Incident response and threat hunting

Active response support, forensic triage, hypothesis-driven hunts. We have run real incidents under real pressure.

v.

SOC operations and managed detection

Stand up a SOC, mature an existing one, or coordinate with a managed provider. Playbooks, escalation, metrics that matter.

vi.

Compliance and risk advisory

Regulatory roadmaps, board-level reporting, and program design. Quebec Law 25, GDPR, HIPAA, PCI-DSS covered end to end.

Frameworks and Standards

SOC 2 Type I and II ISO 27001 ISO 27002 NIST CSF NIST 800-53 CIS Controls v8 PCI-DSS HIPAA GDPR Quebec Law 25 MITRE ATT&CK

Certifications Held

CISSP CISA CISM ISO 27001 Lead Auditor CEH OSCP
02 / Pillar
Identity and Access Management

PKI, HSM, smart cards, and the plumbing that holds identity together.

Two decades of identity engineering across federal and enterprise environments. Versasec and Thales credentialed, with deployments serving more than 100,000 users.

P

PKI and Certificate Authority

ADCS design and deployment, offline root architecture, CP and CPS authoring, migration and key ceremony support.

H

HSM and Key Management

Thales Luna SA7 and G5 deployments, key migration, partition design, FIPS 140-2 Level 3 operations.

S

Smart Card and Token Lifecycle

vSEC:CMS architecture and operations at scale. Issuance, renewal, revocation, and helpdesk workflows.

M

Multi-Factor and CBA

Certificate-based authentication for Entra ID and ADFS. MFA claim engineering, partner federation, conditional access.

C

Cloud Identity

Entra ID, ADFS, and hybrid identity. SSO federation, conditional access policy design, privileged identity governance.

L

Credential Lifecycle

End-to-end issuance, rotation, and retirement. Joiner, mover, and leaver flows integrated with HR systems of record.

Vendor credentialed. Versasec and Thales authorized, with production deployments across Canadian federal, provincial, and enterprise environments.
Versasec Thales Microsoft
Product, Solution CifersID

SecurePFX, secure certificate handoff.

Distribute PFX certificates to partners, vendors, and field devices without ever exposing the password. Self-contained Windows installers, AES-256 encrypted, unlocked by an offline OTP. No cloud dependency, no portal logins, no leaked secrets in email.

OTP protected installers
AES-256 encrypted payload
Offline validation, no callback
Code signed and audit logged
Learn more about SecurePFX
SecurePFX, build report
recipient: partner.example.com
cert: CN=partner-vpn-01
payload: AES-256-GCM
otp: 7F-2A-91-C4
signed: Solution CifersID
status: build complete
03 / Why Us
Senior, hands-on, accountable

Three decades of practice, not three decades of slides.

29+
Years in IT
20+
Years cybersecurity
100k+
Users in production
100%
Compliance ready
04 / Stack
Expertise

The tools we actually use.

Not a list of logos. The platforms, frameworks, and tooling we operate in production across our engagements.

SOC and Audit Tooling

  • Microsoft Sentinel SIEM
  • Defender XDR EDR
  • KQL Detection
  • Splunk SIEM
  • Qualys VM
  • Nessus VM
  • MITRE ATT&CK Framework
  • Burp Suite Pentest

IAM and PKI Platform

  • Microsoft ADCS PKI
  • Thales Luna HSM HSM
  • Versasec vSEC:CMS CMS
  • Entra ID IdP
  • ADFS Federation
  • F5 APM and LTM Access
  • SecureAuth MFA
  • Smart Card and FIDO2 Tokens

Cloud and Enterprise Integration

  • Azure Cloud
  • GCP Cloud
  • Logic Apps iPaaS
  • Workday integration HRIS
  • PowerShell and Python Automation
  • ARM and Bicep IaC
  • IIS ARR and reverse proxy Edge
  • REST and SOAP APIs Integration
05 / Trust
Clients and Partners

Federal, provincial, and enterprise environments.

Provincial Police Force
Federal Government Agency
National Bank
Major Insurance Group
Healthcare Network
Defense and Aerospace
Critical Infrastructure
Financial Services
06 / Contact
Start a conversation

Tell us about the environment you need to defend.