sec.DEC by TechDec
TechDec
Cybersecurity · SecDec by TechDec

We think like the
attacker. We defend
like partners.

SecDec is TechDec's cybersecurity arm — 30 years in the market. Offensive security consulting: we find the flaws before a real adversary exploits them.

30 years
in the market · TechDec
Complete view
of information security
secdec — recon
$
Who we are

TechDec's cybersecurity arm

SecDec is born from TechDec, a Brazilian company with 30 years in the market in technology. We inherit that experience and channel it into cybersecurity — with a consulting practice that starts with offensive security and grows toward a complete offering.

We think like the attacker to defend like partners: every test becomes a prioritized remediation plan, followed closely alongside your team.

30 years
of TechDec in the technology market
1 mission
supporting our clients' cybersecurity journey
How we work

Internationally recognized methodologies

Every assessment follows established global standards — no improvisation. You follow the test in real time, not just the final report.

OWASP Testing Guide

Reference for assessing web applications and APIs, from reconnaissance to exploitation.

PTES

Penetration Testing Execution Standard — from scoping to reporting, end to end.

NIST SP 800-115

NIST's technical guide to information security assessment.

CIS Controls

Benchmark for maturity and prioritization of security controls.

ISO/IEC 27001

International standard for information security management.

ISO 31000

International risk management framework.

What we do

A complete view of information security

Four fronts that cover the entire risk surface — technology, people, physical environment and processes. Today focused on offensive security consulting.

Technology

Controlled attack simulations and technical assessments across your systems, applications and infrastructure.

People

The human factor — security awareness, resistance to manipulation and response to fraud attempts.

Physical Environment

Physical and network security controls that protect facilities, equipment and sensitive information.

Processes and Controls

Maturity and adherence to recognized frameworks, with diagnosis, benchmark and an evolution roadmap.

Services roadmapWe are expanding our portfolio. New security fronts are coming soon.

AppSec

Application security across the development lifecycle — secure SDLC and DevSecOps.

Coming soon

Defensive Security & Hardening

Blue team, system hardening and attack surface reduction.

Coming soon

SOC & Incident Response

Continuous monitoring, detection and containment of incidents.

Coming soon

Compliance

Alignment with standards and frameworks: LGPD, ISO 27001 and audits.

Coming soon

Discover your flaws
before someone else exploits them.

Free initial assessment of your attack surface.