● TRIANGLE — DURHAM · RTP · CHAPEL HILL

Security & software for Durham, RTP & Chapel Hill.

Research Triangle Park and the Durham–Chapel Hill corridor are dense with life-sciences firms, research spin-outs, healthcare organizations, and federal contractors — all holding data worth stealing. We bring senior security and software work to that mix, from our Cary headquarters down the road.

REQUEST A DURHAM / RTP INTAKE → CALL (510) 585-8844
FIG. 01 — WHAT WE DO HERE

The work we ship around the Park.

Organizations here tend to have valuable intellectual property, regulated data, or federal obligations — often all three — with lean IT teams. That is the profile our practice is built for.

FIG. 02 — INDUSTRIES WE SERVE LOCALLY

Built for the Research Triangle.

Life sciences & biotech

RTP and Durham biotech, CROs, and lab-services firms protecting research data and intellectual property.

Research spin-outs

University-adjacent startups moving from grant-funded research to products that customers must trust.

Healthcare & health-tech

Practices, clinics, and health-tech companies needing HIPAA-aligned security and resilient accounts.

Federal contractors

RTP-corridor DoD and federal-civilian contractors preparing for CMMC Level 2 and DFARS obligations.

Tech & SaaS

Durham startups launching AI features or preparing for their first SOC 2 audit.

Clean-tech & manufacturing

Firms running legacy OT alongside modern IT that need segmentation and visibility.

Professional services

Firms serving the research and healthcare economy that hold sensitive client data.

Founders, no CISO

25–250-person companies whose investor, customer, or insurer just asked the security question.

FIG. 03 — HOW WE WORK HERE

Twenty minutes from the Park.

We are headquartered in Cary, close to Research Triangle Park, Durham, and Chapel Hill. Most work runs remotely, and on-site discovery, architecture reviews, and incident response sessions happen wherever they are most useful.

The work is led by Leo, a Principal Architect whose background spans defensive cyber operations for the Department of Defense, public-safety systems, and enterprise security architecture — CISSP plus twelve GIAC certifications.

RELATED READING
FIELD NOTES
CMMC Level 2 FAQ for small defense contractors
FIELD NOTES
What does an AI security audit cover?
FIELD NOTES
A Zero Trust rollout plan for organizations with no CISO
FIG. 04 — DURHAM · RTP FAQ

Things Durham and RTP buyers ask.

Do you serve Research Triangle Park and Chapel Hill as well as Durham? +

Yes. We serve Durham, Research Triangle Park, Chapel Hill, Carrboro, and Morrisville from our Cary headquarters, with in-person meetings available across the area.

Can you help a biotech or research company protect its intellectual property? +

Yes. We start by finding where the valuable data actually lives, then put identity-first access controls, data classification, and monitoring around it — scaled to a lean team.

Do you help RTP contractors with CMMC Level 2? +

Yes. We run readiness assessments, scoping (including CUI enclaves), and remediation, then support you through the assessment. Formal certification comes from an accredited C3PAO.

We are adding AI to our product. Can you review it before launch? +

Yes. An AI security audit tests for prompt injection, over-privileged agents, retrieval data leaks, and unsafe data flows to model providers, and gives you specific fixes before customers find the problems.

How fast can you start? +

We take a limited number of engagements per quarter. Discovery typically starts within 2–3 weeks of intake — sometimes faster for urgent security or incident work. Confirmed start dates come after the first scoping call.

$ llab talk --confidential_

Durham, RTP, Chapel Hill — let’s talk.

Every conversation goes directly to Leo, the founder. He’ll respond within one business day.

REQUEST INTAKE → CALL (510) 585-8844