Cybersecurity and penetration testing in Prague.

Delivered with our channel partner IrisInfosec s.r.o.

For organisations that need their systems, data and AI secured and compliant, as part of a project we deliver or on its own.

Security work is delivered by IrisInfosec s.r.o., a Prague-based cybersecurity solutions company and our channel partner. You keep one engagement and one point of contact at Hlido; the specialists do the security work.

What is included

  • Regulatory complianceCompliance work with an end-to-end security risk and gap assessment.
  • Penetration testing (VAPT)Vulnerability assessment and penetration testing of your applications and infrastructure.
  • AI security and governanceFor the AI systems you build or deploy.
  • Threat intelligence and endpoint protectionKnowing what is aimed at you, and protecting the devices your people work on.
  • Cloud and network securityWith SOC/NOC support, including IT infrastructure support, through experienced technology partners.
  • Security inside a delivery projectSecurity designed into a system we are building for you, not added after go-live.

You get one engagement and one point of contact at Hlido, with the security work carried out by specialists.

Who it is for

  • Companies with a security or compliance requirementA customer, an auditor or a regulator is asking for evidence.
  • Teams launching a new system or AI deploymentYou want it tested before it goes live.
  • Organisations without an in-house security teamYou need assessment, testing and monitoring from people who do it every day.
  • Larger programmesA team can be ramped up for the work and managed locally.

Sectors

Each sector has its own regulation, systems and first safe process. These are the ones we know and deliver in, with our partners. All sectors

  • BankingKYC and re-KYC processing, reconciliations and service desks connected to core banking, with DORA, GDPR and the EU AI Act as design input.
  • Non-banking financial servicesLending, leasing, payments and wealth: document intake and checks, servicing communications and exception handling.
  • InsuranceClaims intake and document processing, policy servicing and payout workflows with audit trails.
  • TelecomNOC incident triage and runbook execution, and care agents that act rather than only answer.
  • Healthcare & care providersAdministrative work first: referrals, scheduling and staff self-service. Data stays in the clinical system; a person signs.
  • Legal & professional servicesIntake, document triage and matter summaries behind a one-page AI policy the tools enforce.
  • Manufacturing & logisticsOrder-to-cash and procure-to-pay exceptions, maintenance ticket triage and shop-floor IT support.

How an engagement runs

Scope

A short call with Hlido about what needs securing and why now.

Assess

A risk and gap assessment by the security specialists, with findings in writing.

Test and fix

Testing, a prioritised list of findings, and support while they are fixed.

Monitor

Ongoing monitoring and re-tests where you need them, on a cadence you choose.

Independence

Advice is only worth something if the adviser has nothing to sell you on the side. Three rules, the same on every engagement.

  • No rated company pays for its rating.Hlido also runs an independent AI review desk. Its reviews, scores and re-tests are free and cannot be bought, sped up or removed. The practice is paid only by the organisation doing the work with us.
  • Advisory work never changes a verdict.If a tool we have tested comes up in your project, you get the published evidence and our reading of it. A score does not move because someone is paying to hear it.
  • Relationships are disclosed.Where we work with a company whose product is on the record, the record says so. See the conflict-of-interest policy.

Questions

  • Who carries out the security work?IrisInfosec s.r.o. (irisinfosec.com), a Prague-based cybersecurity solutions company and Hlido's channel partner. Hlido is your single point of contact and stays accountable for the engagement.
  • Which security certifications are held?Hlido does not present its partner's certifications or clients as its own. Ask, and we will put you in direct contact with IrisInfosec for their credentials and references.
  • Can security be part of a software or AI project Hlido delivers?Yes. Security can be scoped into a delivery project from the design stage, or engaged on its own.
  • How is the work priced?Every engagement is scoped and quoted per engagement, in writing, before work starts. There is no charge for the first conversation.

Start a conversation

Tell us what you are trying to do.

One message is enough: your organisation, the decision or problem in front of you, and how you would like to talk. You will hear back from a person, usually within one working day.

Scoped and quoted per engagement, in writing, before work starts.

Contact Hlido Prague, Czech Republic · Mon–Fri 9:00–18:00 (Prague time)

Related services

  • EU AI Act & AI governanceEU AI Act readiness for deployers, Article 50 transparency checks on the tools you use, vendor due diligence, procurement evidence and AI governance.
  • Software development & AI implementationDesign, development and delivery of custom software and AI systems: integrations, AI agents and workflow automation, acceptance testing before go-live, training and hand-over.
  • Application support & maintenancePost-production support for systems and AI tools: fixes and improvements, monitoring and re-tests, incident watch, periodic cost reviews and hands-on help.