Veteran-owned · Cleared · Since 2010
Security driven.
Mission focused.
Full-spectrum cyber defense services and mission-proven products. We detect and respond to threats, engineer and harden mission systems, test them the way real adversaries would, and see them through compliance for the Department of War, Special Operations, the Intelligence Community, federal, state and local agencies, and the critical infrastructure and companies that support them.
SDVOSB
Service-Disabled Veteran-Owned Small Business
MDA SHIELD
Golden Dome IDIQ awardee
CMMI Level 3
Certified
65%+ Veterans
Veteran-owned, veteran-led team
Trusted by
- U.S. Air Force
- U.S. Navy
- U.S. Space Force
- U.S. Special Operations Command
- DARPA
- Department of Homeland Security
- Intelligence Community
- State of Maryland
- State of Michigan
- Years defending the mission
- 16+
- Established in 2010
- Veterans on our team
- 65%+
- Service-Disabled Veteran-Owned
- Cybersecurity services
- 30
- Offense, defense, engineering and compliance
- Compliance client pass rate
- 100%
- RMF, ATO, CMMC readiness and more
Certifications
Certified to the standards our clients are held to.
-
Certified
ISO/IEC 27001
Information security management
Our information security management system is certified to ISO/IEC 27001, the international standard for protecting sensitive information.
-
Certified
ISO 9001
Quality management
Our quality management system is certified to ISO 9001, so every engagement follows documented, repeatable and continually improved processes.
-
Certified
CMMI Level 3
Process maturity
Defined, organization-wide processes for planning, delivering and improving our work.
-
Self-assessed
CMMC Level 1
Protecting Federal Contract Information
Self-assessed against the 15 basic safeguarding requirements of FAR 52.204-21.
-
Self-assessed
CMMC Level 2
Protecting Controlled Unclassified Information
Self-assessed against the 110 security requirements of NIST SP 800-171.
Engineer-led
Hands-on operators and engineers on every engagement, from scoping to readout.
Who we are
We think like adversaries, build like engineers and serve like veterans.
Since 2010, federal agencies, states, the military and Fortune 500 companies have trusted CDT with their most critical systems: testing them the way real attackers would, engineering them to pass inspection, and responding when something goes wrong.
- Cleared to work at any government access level
- Every DoW/DoD/DoW 8570/8140 category covered
- CMMI Level 3 certified processes
- Co-founders of VetCon at DEF CON
Capabilities
Full-spectrum cyber, from the first test to the final authorization.
Compliance & Authorization
From gap analysis to ATO. A 100% client pass rate.
Security Engineering
Secure by design. Compliant from day one.
AI & Machine Learning
Build it. Secure it. Put it to work.
Workforce & Training
Cleared talent. Mission-ready teams.
Proven where it counts
Results, not promises.
Our work is measured in authorizations granted, systems fielded and inspections passed.
CipherX
Already authorized and operational at multiple customer locations nationwide: classified networks in months, not years.
Learn moreCRIB
Our field-deployable Cyber Range in a Box is currently fielded with U.S. military special forces.
Learn moreGolden Dome
An awardee on the Missile Defense Agency’s SHIELD IDIQ for Golden Dome for America.
Learn more100% pass rate
Every one of our compliance clients has passed: RMF, A&A and inspection readiness done right the first time.
Learn moreOur products
Built by operators. Fielded by the mission.
Classified networks
CipherX
Mission-ready SIPRNet, already authorized.
CipherX delivers a turnkey, mission-ready SIPRNet solution that eliminates risk, delay and uncertainty in classified network deployments. Already authorized and operational at multiple custo...
Explore CipherX
Cyber training & exercises
CRIB
A field-deployable cyber range.
Cyber Range in a Box (CRIB) is a compact, stand-alone system containing custom virtualized environments. Delivered as Hardware as a Service (HaaS), it lets teams securely and legally simulat...
Explore CRIB
Unified cyber operations platform
RAVEN-X
Security Anywhere. Built Around Your Mission.
A unified cybersecurity platform with expanding capabilities for autonomous cyber operations, wireless communications, and drone security. Developed by Cyber Defense Technologies (CDT), RAVE...
Explore RAVEN-X
Onsite PTaaS kit
OUTPOST
Onsite presence. Adversary perspective.
OUTPOST is Cyber Defense Technologies’ onsite hardware kit for delivering Penetration Testing as a Service (PTaaS). Designed to place an assessment platform within the customer’s environment...
Explore OUTPOSTHow we engage
From first call to mission ready.
-
1
Scope
A no-cost call with an engineer to understand your mission, systems, deadlines and compliance requirements.
-
2
Plan
A clear proposal, or task orders through our contract vehicles.
-
3
Execute
Cleared operators and engineers do the work, with regular updates and immediate notice of anything critical.
-
4
Sustain
Reports your leadership can act on, remediation support, and ongoing monitoring when you need it.
Who we serve
Mission-tailored for every sector.
Experience across government and commercial sectors gives us an in-depth understanding of the systems and requirements in each.
Defense & Intelligence
DoW, Special Operations and the Intelligence Community
Federal Civilian Agencies
Civilian agencies and their mission systems
State & Local Government
States, counties and municipalities
Defense Industrial Base
Defense contractors and suppliers
Commercial & Critical Infrastructure
Fortune 500 to small business
Contract vehicles
Easy to buy. Ready to start.
Order through the Missile Defense Agency’s SHIELD IDIQ for Golden Dome or our State of Michigan contract, or work with us directly as a Service-Disabled Veteran-Owned Small Business.
- UEI
- FMQLZQMU3TU4
- CAGE
- 6BJF3
- Size status
- SDVOSB
Ways to buy
Current contract vehicles
- Missile Defense Agency SHIELD IDIQHQ085926DF115
- State of Michigan#220000001402
Insights
From our engineers
October 7, 2026 · 4 min read
Tabletop Exercises That Actually Prepare Your Team
An incident response plan that has never been practiced will fail in ways nobody expected. Tabletop exercises find those failures in a conference room instead of during a real attack. How to design, run and follow up on exercises that build real readiness.
Read moreOctober 6, 2026 · 4 min read
Backups That Survive Ransomware
Ransomware operators know backups are the main reason victims refuse to pay, so they hunt for them first. How attackers target backups, what makes a backup resilient, and why a restore you have never tested is only a hope.
Read moreOctober 5, 2026 · 4 min read
Logging That Actually Helps an Investigation
When an incident happens, the first question is what the attacker did. The answer is only as good as the logs you kept. Which logs matter most, how long to keep them, what OMB M-21-31 requires of federal agencies, and how to make logs useful before you need them.
Read more
Let's talk
Ready to strengthen your security posture?
Talk with a CDT engineer about your mission, your systems and your deadlines. We'll tell you honestly what it takes.