ABOUT HAYROK

We are building the evidence layer for modern security validation.

Hayrok helps security teams move beyond theoretical findings, assumed control coverage, and point-in-time assessments. Every validated outcome is supported by evidence.

OUR MISSION

Help organizations make security decisions based on evidence, not assumptions.

Security teams have more tools, findings, alerts, and risk data than ever. What they often lack is proof.

Hayrok exists to help organizations directly validate security outcomes and produce the evidence required to act with confidence.

WHY HAYROK EXISTS
Findings do not automatically become better security. Teams are left with questions:
  • ?Is the issue actually exploitable?
  • ?Is the affected component running?
  • ?Can the asset be reached?
  • ?Did a preventive control stop it?
  • ?Did detection generate an alert?
  • ?Can this build a larger attack path?
  • ?Does that path reach a critical asset?
  • ?Did remediation actually resolve it?
WHAT WE BELIEVE

Six commitments we build against.

01
Evidence should drive decisions
Severity and threat intel are signals. Direct validation is confidence.
02
Controls should be tested
Do not assume WAF, EDR, IAM, network, and cloud controls operate as intended.
03
Detection should be measured
A rule existing is not proof realistic behavior produces an actionable alert.
04
Business context matters
A weakness matters when it can reach sensitive data, revenue, or privilege.
05
Remediation should be verified
A closed ticket is not proof the risk is gone.
06
Autonomy requires governance
Autonomous systems operate within scope, policy, safety, evidence, and oversight.
PLATFORM PRINCIPLES

Eight principles shape every design decision.

01
Objective-driven
Start with the outcome the customer wants to validate — not a scanner or tool.
02
Evidence-backed
Every confirmed result is supported by relevant, traceable technical evidence.
03
Governed by design
Authorization, policy, safety checks, and approvals are embedded end-to-end.
04
Environment-aware
Validation accounts for asset context, runtime, reachability, and importance.
05
Safe and controlled
Actions are scoped, observable, interruptible, and appropriate for the target.
06
Continuous
Repeatable, scheduled, event-driven, and capable of confirming remediation.
07
Built for integration
Connects findings, assets, telemetry, controls, workflows, and evidence.
08
Human accountable
Autonomy accelerates security work without bypassing human judgment.
WHO WE BUILD FOR

Teams that need to communicate real outcomes.

Hayrok is designed for security functions that make decisions, own remediation, and answer to customers, auditors, boards, and regulators.

CISOs
Security directors
AppSec / ProdSec
Cloud security
Security engineering
Detection engineering
Vulnerability management
Security operations
DevSecOps
GRC teams
Red teams
MSSPs
OUR TEAM

Built by security practitioners, engineers, and product builders.

Enterprise security products must do more than generate technically interesting output. They must support decisions, workflows, accountability, communication, remediation, and measurable improvement.

Read the founder story
LEADERSHIP

The people building Hayrok.

A team drawn from application security, cloud, detection engineering, distributed systems, and enterprise software.

HO
Herberth Oshiemele
Founder & CEO
8+ yrs · AppSec & ProdSec
ML
Dr. Mira Latham
Head of Research
12+ yrs · Detection science
JR
Jordan Reeves
VP Engineering
ex-Fortune 100 SOC lead
SV
Sasha Vega
Head of Product
Cloud & identity systems
PC
Priya Chandra
Head of Field CTO
ex-CISO, Fortune 200
DA
Dan Aoki
Head of Design
ex-security tooling lead
NE
Nate Ellison
VP Customer Success
Enterprise assurance
RO
Rae Okafor
Head of Marketing
ex-analyst relations
ADVISORS & BOARD

Practitioners guiding the company.

AK
Amelia Kraft
Board Advisor · Deputy CISO, Fortune 100 SaaS
SB
Sonia Blake
Board Advisor · CISO, Global Insurance
RP
Raj Patel
Board Advisor · Head of Detection Engineering
MC
Marcus Chen
Advisor · IT Audit Partner, Big 4
IH
Ingrid Halden
Advisor · CISO, Global Retailer
LP
Lars Petersen
Advisor · VP Product Security
INVESTORS & BACKERS

Partners funding the mission.

FenwickVENTURES NorthlineCAPITAL SignalPARTNERS AlephGROWTH VerityFUND
$46M
Total funding
2
Rounds
12
Design partners
24
Countries deployed
MILESTONES

The Hayrok journey so far.

2023 · Q3
Founded
Herberth Oshiemele founds Hayrok in Wilmington, Delaware.
2024 · Q1
First scenario
SC-EXP-0001 · governed exposure validation runs end-to-end.
2024 · Q3
Seed round
Fenwick Ventures leads the seed round with Northline Capital.
2025 · Q1
Design partner program
12 enterprise customers join the design partner cohort.
2025 · Q3
Evidence Fabric
GA of the evidence contract system across the platform.
2026 · Q1
Series A
Signal Partners leads with participation from Aleph Growth.
2026 · Q3
Governed Validation Platform
Public launch of the Governed Validation Platform.
SECURITY & COMPLIANCE

Built for regulated environments from day one.

SOC 2
Type II · roadmap
ISO 27001
In progress
GDPR
Ready
CCPA
Ready
NIST CSF
Aligned
ATT&CK
v15 mapped
WHAT CUSTOMERS SAY ABOUT HAYROK

Not the product — the company.

This is the first security company that treats us like an engineering partner. Our SRE team took notice.
DP
Devon Park
Head of Security Engineering · Cloud Platform
Every interaction with Hayrok raises the bar for how vendors should engage security programs.
IH
Ingrid Halden
CISO · Global Retailer
A rare combination: honest with numbers, disciplined with commitments, and genuinely fun to work with.
BO
Beatrice Owens
Director, SOC · Public Sector
WHERE WE WORK

Remote-first, with hubs in three regions.

HEADQUARTERS
Wilmington, Delaware
Global HQ · United States
ENGINEERING HUB
New York, NY
Product · engineering · research
EMEA HUB
London, UK
GTM · customer success · partners
CyberVerge Constellate FerrumADVISORY NorthlineRESEARCH SignalREPORTS SecurityDaily

Help build a future where security outcomes can be proven.

Explore how Hayrok turns validation objectives into governed workflows, evidence-backed findings, and verified remediation.