
Frequently Asked Questions

What does Red Cell Security do?
​
We are a blended cyber and physical security consulting firm. We cover offensive testing, security leadership and advisory, compliance and audit readiness, and training. Both sides of an organization, digital and physical, under one firm.
​
Do you test physical and digital security together?
​​
Yes, and it is the core of what we do. Most firms cover one side and leave you to connect the two. We assess the full picture, including the point where physical access becomes network access.
​
Do you work with clients outside the US?
​​
Yes. We are US-based and we run engagements nationally and internationally, onsite or remote depending on what the work requires.
​
Who performs the work?
​​
Senior practitioners with field experience in the discipline being engaged. The consultant who scopes your work runs it. We do not staff engagements with junior consultants.
​
We do not have a security leader. Can you fill that role?
​
Yes. Our vCISO service provides security program leadership, board reporting, risk prioritization, and vendor review without a full-time executive hire. For organizations that need ongoing operational coverage rather than leadership, we also provide managed cybersecurity support.
​​
Can you get us ready for an audit?
​​
Yes. We run readiness assessments and gap analysis against ISO 27001, SOC 2, and NIST, and we do the policy and third-party risk work that has to hold up under review. Readiness work is separate from testing and often comes first.
​
Do you offer training for our team?
​​
Yes. Courses cover target assessment, perimeter protection, physical penetration testing, and personal protection, taught by practitioners who run these engagements rather than from a slide deck. Delivered onsite or remote.
​
How do we know what we actually need?
​​
Book a call. We will tell you straight whether you need testing, advisory, readiness work, or nothing at all right now. We do not sell engagements people do not need.