White Knight Labs
White Knight Labs is a private, SDVOSB-certified cybersecurity consultancy specializing in offensive security services — penetration testing, red team operations, and security assessments — for enterprise, government, and regulated-industry clients, complemented by a certification training platform.
- Company typePrivate
- Founded2017
- HeadquartersGuys Mills, United States
- Headcount11–50
- GTM typeB2B
- OfferingServices
What White Knight Labs does
White Knight Labs is a private, founder-owned cybersecurity consultancy headquartered in Guys Mills, Pennsylvania, specializing in offensive cyber engagements. Founded around 2017 by former Green Beret Greg Hatcher and John Stigerwalt, the firm delivers penetration testing across network, web, mobile, wireless, cloud, physical, and compliance domains, as well as red team engagements, social engineering, ransomware simulation, insider threat assessments, and incident response. The company holds Service-Disabled Veteran-Owned Small Business (SDVOSB) and CREST Pathway+ certifications, supporting procurement by government and regulated buyers.
The firm also operates a training division at training.whiteknightlabs.com, offering seven offensive security certification programs (ARTOC, OAOTC, ODPC, ELPT, ASCPC, OADOC, OGOTC) through live instructor-led and on-demand formats, plus CertForge Pro and CertForge Teams subscription tiers. Beyond services and training, the team conducts and publishes offensive security research, including custom Cobalt Strike Malleable C2 profiles, Slack-based UDC2 egress channels, Electron application backdooring techniques, and UEFI vulnerability analysis using LLMs combined with Knowledge Graphs and Retrieval-Augmented Generation, with tooling released publicly on GitHub.
The go-to-market combines direct enterprise field sales (quote-based, phone and email engagement) with event-driven demand generation at conferences such as Hack Red Con, Wild West Hackin' Fest, and CloudCon, and a community-led approach through an active Discord server. Target customers are enterprise organizations, government agencies, and regulated industries such as finance and healthcare, with named engagements including US Signal. The company is privately held with no institutional funding, no parent company, and no subsidiaries, and is described as a boutique team of 11-50 employees.
White Knight Labs firmographics
Firmographics- Name
- White Knight Labs
- Legal name
- White Knight Labs
- Website
- https://whiteknightlabs.com
- Company type
- Private
- Founded year
- 2017
- Operating status
- Operating
- Headcount range
- 11–50 employees
- Short description
- White Knight Labs is a private, SDVOSB-certified cybersecurity consultancy specializing in offensive security services — penetration testing, red team operations, and security assessments — for enterprise, government, and regulated-industry clients, complemented by a certification training platform.
- Ownership category
- akta.pro rank
White Knight Labs industry classification
Industry- Product category
- Cybersecurity Consulting
- NAICS
- Other Scientific and Technical Consulting Services (54169), Investigation and Security Services (5616)
- SIC
- Services-Detective, Guard & Armored Car Services (7381)
- akta.pro primary industry
- Threat Intelligence, Hunting & Adversary Emulation (BPAKAHAE)
- akta.pro secondary industry
- Virtual Labs, Remote Labs & Hands-On Practice Tools (EDAFABAH)
Keywords
Where White Knight Labs is headquartered
LocationHeadquarters
- HQ city
- Guys Mills
- HQ country
- United States
- HQ region
- North America
Offices1 record
Markets served
White Knight Labs business model
Business model- GTM type
- B2B
- Offering type
- Services
- Cost components
- Personnel, Technology or R&D, Marketing or Sales, Operations
Revenue model
- Penetration Testing Services: Professional penetration testing services including network, web application, mobile, wireless, cloud, physical, and compliance-focused testing (SOC 2, NYDFS, PCI DSS, HIPAA, FedRAMP, CMMC).
- Attack Simulation & Red Team: Red team engagements, social engineering testing, ransomware attack simulation, insider threat assessments, and advanced adversarial emulation services.
- Cybersecurity Training: Certification courses including ARTOC, OAOTC, ODPC, ELPT, ASCPC, OADOC, and OGOTC. Offered as live instructor-led training and on-demand courses.
- Security Assessments: LLM security testing, VIP home security, password audits, embedded device testing, OSINT, AD security, dark web scanning, smart contract audits, and DevSecOps assessments.
- Compliance and Advisory: Framework consulting, gap assessments, Compliance-as-a-Service (CAAS), and DevSecOps engineering services.
Pricing tiers
| Model | Billing | Price |
|---|---|---|
| One time/ perpetual license | Pay-as-you-go | Individual Certification Courses |
Go-to-market motion3 records
Distribution channels2 records
Marketing channels6 records
White Knight Labs product offering
Product offeringCore offering
White Knight Labs is a global cybersecurity consultancy that delivers offensive security services including penetration testing across network, web, mobile, wireless, cloud, and physical environments; red team engagements and attack simulation; specialized security assessments; and incident response. The firm also operates a training platform offering certification courses such as ARTOC, OAOTC, and ODPC, available as live instructor-led sessions, on-demand courses, and subscription plans (CertForge Pro and CertForge Teams).
Product overview
White Knight Labs is a global cybersecurity consultancy specializing in offensive cyber engagements, offering a comprehensive portfolio of penetration testing services and professional cybersecurity training. The consulting services include multiple penetration testing offerings (network, web application, mobile, wireless, cloud, physical, and compliance-focused), attack simulation services (red team, social engineering, ransomware, insider threat), security assessments (LLM security, smart contracts, DevSecOps, OSINT, Active Directory), incident response, and compliance advisory. The training division provides certification programs including Advanced Red Team Operations (ARTOC), Offensive Azure Operations (OAOTC), Offensive Development (ODPC), and multiple other offensive security certifications, available through live instructor-led sessions, on-demand courses, and subscription plans (CertForge Pro/Teams). The company is SDVOSB-certified and holds CREST Pathway+ certification.
Differentiator
Problem solved
Functional benefit
Brands
- CertForge Pro: Subscription offering for certification training access.
- CertForge Teams
- White Knight Labs Training
Products and services
- Penetration Testing Services Comprehensive penetration testing across network, web application, mobile, wireless, cloud, physical, and compliance-focused environments (SOC 2 Type II, NYDFS, PCI DSS, ISO 27001, HIPAA, FedRAMP/NIST 800-53, CMMC). Identifies, exploits, and documents vulnerabilities for enterprise clients.
- Red Team Engagements Adversarial emulation engagements that simulate real-world attackers to identify security gaps and deliver actionable reports for improving organizational security posture.
- Attack Simulation Services Expert-driven attack simulation including social engineering/phishing tests, ransomware attack simulations, insider threat assessments, business email compromise (BEC) services, offensive endpoint evasion assessments, and malicious developer threat assessments.
- Security Assessments Specialized security assessments including LLM/AI security testing, VIP home security, password audits, embedded device testing, OSINT, Active Directory security, dark web scanning, smart contract audits, and DevSecOps assessments.
- Incident Response
Quantifiable outcome
- No detections observed across six major EDR solutions tested with developed Malleable C2 profiles
- +1 more outcomes
Companies that use White Knight Labs
Customer profileNamed customers4 records
Segments3 records
Ideal customer profiles3 records
White Knight Labs technology and API
TechnologyTechnology focussed Yes
API detail
- Has API
- No
- API docs
- API detail
Core technology
AI maturity
App detail
Integration1 record
AI capability5 records
Feature5 records
White Knight Labs partnerships and signals
Strategic signalPartnerships
One partnership is on record.
- CSA West MichiganminorWhite Knight Labs sponsored the CSA West Michigan St. Patrick's Bash event in March 2023. Co-founders Greg Hatcher and John Stigerwalt presented on 'Securing Red Team Infrastructure in the Cloud'.
Scale indicators3 records
Recent moves6 records
Expansion highlights6 records
White Knight Labs competitors and assessment
Company assessmentBroad incumbents
- Mandiant: Industry-leading incident response and offensive security firm (now part of Google Cloud). Provides red team assessments and adversary simulation at enterprise scale; comparable in red team service category.
- NCC Group: Global cybersecurity consulting firm offering penetration testing, red teaming, and managed security services with strong EMEA presence. Direct overlap in offensive security services but at much larger scale and broader portfolio.
- Coalfire: Larger cybersecurity advisory firm with strong focus on compliance penetration testing (FedRAMP, HITRUST, PCI) and advisory services. Overlaps with WKL in compliance-driven assessment work but operates at much greater scale across cloud and FedRAMP.
Direct peers
- Praetorian: Mid-size offensive security firm offering penetration testing, attack surface management, and red team services. Comparable boutique-to-mid-market direct competitor across the same offensive service portfolio.
- Bishop Fox: Elite boutique offensive security firm offering penetration testing, red team, and attack simulation services to enterprise and government clients. Closest direct comparator to WKL in terms of boutique positioning and senior-engineer-only delivery model.
- Specter Ops: Boutique offensive security consultancy specializing in adversary emulation and Active Directory attack path mapping (BloodHound Enterprise). Highly comparable in scope (offensive-only) and research-led operating model.
- Trail of Bits: Research-driven boutique cybersecurity firm specializing in software assurance, smart contract auditing, and applied research. Comparable in research-led positioning and overlap in blockchain/smart contract audit offerings.
- TrustedSec: Boutique offensive cybersecurity consultancy founded by industry-recognized operators, offering penetration testing, incident response, and adversary simulation. Directly comparable boutique challenger with similar founder-led, research-driven DNA.
- OffSec (Offensive Security): Industry-recognised offensive security training organization best known for the OSCP certification. Overlaps with WKL's training certification programs (ARTOC, OAOTC, etc.) as a competing certification provider.
- TCM Security: Cybersecurity consultancy and training company offering practical penetration testing services plus the well-known Practical Ethical Hacker (PEH) course. Comparable in the training-certification business and consulting services overlap.
Market position
Strengths5 records
Weaknesses5 records
Competitive moat4 records
Key risks6 records
Key highlights7 records
Customer concentration
White Knight Labs social profiles
Digital presenceWhite Knight Labs compliance and trust
Trust signalCompliance2 records
White Knight Labs financial estimates
Financial estimateRevenue estimate
Valuation estimate
White Knight Labs leadership team
Management profileNumber of profiles
Profiles2 records
White Knight Labs funding detail
Funding detailFunding overview
Funding rounds
Investors
Funding detail is available on the Subscription and Enterprise plan.Contact sales →
White Knight Labs M&A and investment
M&A and investmentM&A
Investments
M&A and investment is available on the Subscription and Enterprise plan.Contact sales →
Frequently asked questions about White Knight Labs
What does White Knight Labs do?
White Knight Labs is a global cybersecurity consultancy that delivers offensive security services including penetration testing across network, web, mobile, wireless, cloud, and physical environments; red team engagements and attack simulation; specialized security assessments; and incident response. The firm also operates a training platform offering certification courses such as ARTOC, OAOTC, and ODPC, available as live instructor-led sessions, on-demand courses, and subscription plans (CertForge Pro and CertForge Teams).
Is White Knight Labs a public or private company?
White Knight Labs is a private company. It is classified as founder individual operated bootstrapped and is currently operating.
When was White Knight Labs founded?
White Knight Labs was founded in 2017. It employs 11 to 50 people.
Where is White Knight Labs based?
White Knight Labs is headquartered in Guys Mills, United States, in the North America region.
How does White Knight Labs make money?
Five revenue lines are on record. Penetration Testing Services are the primary driver. The others are attack Simulation & Red Team, cybersecurity Training, security Assessments and compliance and Advisory.
Who are White Knight Labs's main competitors?
Broad incumbents on record are Mandiant, NCC Group and Coalfire. Direct peers are Praetorian, Bishop Fox, Specter Ops, Trail of Bits, TrustedSec, OffSec (Offensive Security) and TCM Security.
Does White Knight Labs have an API?
No public API is recorded for White Knight Labs.
What industry is White Knight Labs in?
White Knight Labs's product category is Cybersecurity Consulting. Its primary akta.pro industry code is BPAKAHAE, Threat Intelligence, Hunting & Adversary Emulation, with a secondary code of EDAFABAH, Virtual Labs, Remote Labs & Hands-On Practice Tools. Its NAICS code is 54169 and its SIC code is 7381.