CYBERENCY // INITIALIZING...

The People Behind the Program

Cyberency is led by senior practitioners — not account managers. The same person you meet on the scoping call is the person doing the work and signing the report.

Principals & Senior Staff

EK

Ernest Karapetian

Founder & Principal CISO

CISSP · CISM · HCISPP

Healthcare cybersecurity leader with deep experience running HIPAA, HITECH, and SOC 2 programs across hospital systems and digital health companies. Sets engagement strategy and signs every deliverable.

SR

S. Reyes

Principal — Penetration Testing

OSCP · OSWE · GPEN

Offensive security lead with a decade of experience testing hospital networks, EHRs, and connected medical devices. Personally leads every red-team and adversary-simulation engagement.

MN

M. Nguyen

Senior Compliance Analyst

CHPC · CIPT · ISO 27001 LA

Owns HIPAA Security Rule and SOC 2 readiness engagements end-to-end — gap analysis, policy authoring, and evidence collection. Former internal auditor at a Fortune 500 health system.

DA

D. Ahmadi

Senior Application Security Engineer

OSWE · GWAPT · CSSLP

Web and mobile pentest specialist focused on patient portals, telehealth platforms, and FHIR APIs. Has reported critical vulnerabilities to multiple healthcare SaaS vendors under coordinated disclosure.

JP

J. Park

Cloud Security Architect

AWS Sec · GCP PCA · CCSP

Reviews and hardens cloud environments for digital health clients on AWS, Azure, and GCP. Builds the technical controls that turn HIPAA paper compliance into actual defense.

RT

R. Torres

Incident Response Lead

GCFA · GCIH · CISSP

Runs tabletop exercises, breach-readiness drills, and live incident response engagements. Background in DFIR for ransomware events at regional hospital networks.

Senior-Only. By Design.

Cyberency is built around a simple bet: clients are better served by a small team of senior practitioners than by a large team that hides juniors behind a partner.

10+ Years Minimum

Every engineer and analyst on the team has at least a decade of practitioner experience. No graduate-program staff augmentation.

Healthcare-Native

We hire from inside healthcare — from hospital security teams, EHR vendors, and digital health companies. We've lived in your environments.

Holders, Not Brokers

Our engineers do the work. They don't pass the engagement to a junior team after the kickoff call.

Want to Work With Us?

We hire senior healthcare-cybersecurity talent year-round. If you've spent your career in this space and want a senior-only team, we'd like to meet.