Battle Tested
We have reverse engineered ransomware such as STOP/DJVU and REvil and restored operations for pulp and paper, metallurgy and financial companies in Canada. When the situation is serious, you want people who have been there.
Nocera Information Security ME® is a Brazilian company that protects companies, governments and people by thinking like the attacker. For more than 13 years we have combined red team, incident response and cyber intelligence in a direct service.
Defending well requires knowing the attack up close. That is why every Nocera service is born from real incidents resolved over more than 13 years, and not from theory. We work without detours, without theater and with method.
We have reverse engineered ransomware such as STOP/DJVU and REvil and restored operations for pulp and paper, metallurgy and financial companies in Canada.
Our work includes cooperation with Interpol, international companies and government institutions, always under a bilateral NDA and absolute confidentiality.
We do not sell theory. Every service is grounded in real incidents resolved over more than 13 years.
We have reverse engineered ransomware such as STOP/DJVU and REvil and restored operations for pulp and paper, metallurgy and financial companies in Canada. When the situation is serious, you want people who have been there.
We prioritize critical incidents. We start containment and the remote strategy while others are still scheduling calls.
Strict NDAs and encrypted communication channels (Signal and PGP) are standard on every engagement. Your crisis, our confidentiality.
Rules that apply to every engagement, without exception.
No offensive activity starts without written authorization defining scope, targets, test windows and a responsible party. We act strictly within the agreed rules of engagement.
Every engagement starts with a bilateral NDA. We do not disclose client names, vulnerabilities or incidents without written authorization, not even as a success case.
We follow OWASP, PTES, MITRE ATT&CK and NIST SP 800-115 and deliver executive and technical reports with evidence, risk rating, impact and remediation guidance.
We prioritize critical incidents and start triage and remote containment as soon as possible, right after the NDA is signed. The team is available 24/7 for emergencies.
A predictable flow, with the client informed at every step.
Bilateral NDA and commercial proposal with scope, rules of engagement and test windows defined in writing.
Activities within the authorized scope, with controlled access, multi-factor authentication and every record retained.
Technical and executive delivery, with evidence, risk, impact and remediation, transmitted over encrypted channels.
Secure destruction of data and access per NIST SP 800-88, written confirmation within 5 business days and post-delivery support.
More than 13 years working in red team, forensic analysis, incident response and cyber intelligence, with direct service to corporations, governments and individuals who need real protection.
Fast response, total confidentiality and field execution. No fluff.