For government & enterprise · testing, tooling & embedded specialists

Find what the
scanners miss.

SID — Security Innovation & Development is the security practice founded by Stephan Botes. We help government and enterprise teams secure what matters — through penetration testing, custom tooling, code audits, and senior specialists embedded directly inside your organisation. Real testing, plain-language reporting, and outcomes your team can act on.

  • 3+ yrsprofessional, hands-on
  • 280+open-source tools
  • 9+industry certifications
  • 100%authorized testing
Certified & vetted
  • CompTIA Security+
  • Network+
  • A+
  • CSIS
  • CIOS
  • Fortra Clearswift
  • TryHackMe Security Engineer
  • Azure Fundamentals

// how we help

Built around your team and your risk.

Seven focused services — from one-off assessments to a specialist embedded inside your organisation. Every engagement is scoped to your goals, authorized in writing, and delivered with evidence you can act on, not a PDF full of scanner noise.

01

Custom Pentesting Tools

Bespoke offensive tooling built for your targets and rules of engagement — recon frameworks, exploit chains, C2 and detection-bypass tooling, written in Rust, Go, C and Python.

  • Purpose-built for your stack
  • Memory-safe, maintainable code
  • You keep the source
02

Code Audits

Manual, security-focused source review — not just a linter. We hunt logic flaws, auth bypasses, injection, unsafe crypto and supply-chain risk, with reproducible findings and concrete fixes.

  • Line-level vulnerability findings
  • Severity, impact & remediation
  • Re-test after fixes
03

Vendor Product Security Testing

Independent black-box and white-box assessment of third-party products and appliances before you trust them in production — so procurement decisions are based on evidence, not marketing.

  • Pre-purchase risk validation
  • Protocol & binary analysis
  • Clear go / no-go reporting
04

Dynamic Solution Development

Custom security automation tailored to your environment — detection engineering, SIEM/EDR pipelines (Wazuh, Elastic), DFIR tooling, and hardening automation for Linux and Windows fleets.

  • Detection & response engineering
  • SIEM / log pipeline build-out
  • Hardening & automation scripts
05

Open-Source Security Audits

Deep audits of the open-source dependencies and tooling your business relies on — from a team that has authored and reverse-engineered 280+ security projects. We read the code others assume is safe and give you a clear path to remediate or replace.

  • Dependency & supply-chain review
  • Reverse engineering & protocol analysis
  • Reproducible PoCs & upstream-ready fixes
06

Data Sovereignty

Take back control of your data. We help you cut dependence on foreign clouds and SaaS — migrating to self-hosted, auditable infrastructure (mail, office, storage, identity) so sensitive data stays inside your jurisdiction and under your control.

  • Self-hosting & cloud-exit strategy
  • Data-residency · POPIA / GDPR alignment
  • Hardened, auditable open-source stack
Flagship · government & enterprise 07

Embedded Security Specialists

Some work has to happen inside your team — on your systems, within your security boundary, under your direction. For government departments and regulated organisations that need senior security capability in-house but don't want the cost, delay or commitment of a permanent hire, we deliver vetted specialists embedded in your team through a clean professional-services contract.

You engage a single accountable supplier and pay for services delivered — not headcount. Our engineers work alongside your internal staff for the agreed scope and duration, then hand over and exit. It slots into your existing procurement and framework vehicles, keeps sensitive work confidential and in-house, and gives you elite capability exactly when and where you need it.

  • Vetted specialist embedded in your team
  • Works on your systems, under your direction
  • Delivered via established contracting partners
  • One accountable supplier — services, not headcount
  • Confidential, clearance-friendly engagements
  • Defined scope, handover & clean exit

// the arsenal

Open-source proof of work.

A selection from 280+ public repositories spanning recon, exploitation, C2, malware analysis and blue-team automation. All tools are published for authorized testing and research.

// how it works

A clean engagement, end to end.

  1. 01

    Scope & authorize

    We define targets, rules of engagement and success criteria in writing before anything is touched.

  2. 02

    Test & build

    Manual testing backed by custom tooling tailored to your environment — not a one-size scan.

  3. 03

    Report in plain language

    Findings with business impact, severity, reproducible steps and concrete remediation.

  4. 04

    Re-test

    Once you've fixed, we verify the fixes actually closed the gap.

// credentials

Certified, and constantly verifying.

Verifiable on Credly and verify.CompTIA.org (Candidate ID COMP001021877443).

CompTIA

Security+ (CE)

Core security operations & risk. Nov 2022.

CompTIA

Network+ (CE)

Network architecture & defense. Jul 2022.

CompTIA

A+ (CE)

Endpoint & systems foundation. Aug 2021.

CompTIA

CSIS

Secure Infrastructure Specialist stack.

CompTIA

CIOS

IT Operations Specialist stack.

Fortra

Clearswift SEG

Secure Email Gateway product certification. 2025.

TryHackMe

Security Engineer

+ Pentest+, Jr Penetration Tester & Web Fundamentals paths.

Microsoft

Azure Fundamentals

Cloud architecture, identity & governance. 2026.

Stephan Botes, cyber security engineer and security tool developer

// about

Founder-led. Specialist-backed.

SID is led by founder Stephan Botes, who has studied offensive security and ethical hacking since he was sixteen and spent 3+ years working professionally as a cyber security engineer — running authorized web and network penetration tests, purple-team exercises, email-security hardening and secure network design for clients.

Before founding SID he worked as an OSINT analyst on asset-tracing and due-diligence investigations — so the team knows how to find what people don't want found, and how to handle sensitive work responsibly.

What sets the work apart is the tooling and the bench: Stephan has authored 280+ public security projects across recon, exploitation, malware analysis, DFIR and protocol-level research in Rust, Go, C and Python, and SID draws on a network of vetted specialists and contracting partners — so we can embed the right person for the job. When an off-the-shelf scanner can't reach it, we build the thing that can.

Direct, honest, and focused on measurable security outcomes. Every engagement is authorized and scoped in writing.

EngagementsAuthorized & scoped in writing
WorksRemote · on-site · embedded
LanguagesEnglish · Afrikaans · 日本語 (basic)

// start an engagement

Tell us what you need secured.

A penetration test, code audit, custom tooling, or a specialist embedded inside your team. Send a short brief and we'll reply with scope, timeline and next steps — usually within 1–2 business days.

stephanbotesIT@proton.meEncrypted ProtonMail · replies within 1–2 business days

Authorized testing only. We require written authorization before any assessment begins.