BlackUnicorn exists to put one senior principal across AI security testing, EU compliance, model training, and agentic security, on engagements where the cost of a missed finding is production AI in a regulated market. Capacity is deliberately small. That is the business.
We earn our fee by finding what your team can't see, from the outside, under NDA, without assumptions.
Senior operators, direct accountability. No pyramid, no passthrough.
Our tools ship as OSS so clients can audit them, run them offline, and outlive our contract.
Jurisdiction, data residency, and regulatory fluency matter. All three are ours by default.
“Methodology grounded in OWASP LLM Top 10, NIST AI RMF, and the EU AI Act. Backed by purpose-built open-source tooling, we don't just audit your AI, we ship the tools that test it.”
