About Us

About Grupo Oruss

More than two decades strengthening digital trust

Grupo Oruss is an international offensive-security firm formed by cybersecurity specialists, certified ethical hackers and experienced auditors who help organizations understand and reduce real-world digital exposure.

Established in 2002 Europe and Latin America Human-led offensive security
Grupo Oruss at a glance

International experience supported by technical depth, confidentiality and evidence.

23+ years Specialized experience in cybersecurity and ethical hacking.
2002 Founded in Bogotá as a cybersecurity specialist firm.
3 countries Corporate presence in Colombia, Portugal and France.
Global scope Engagements supporting organizations across multiple sectors.
Our story

Built from offensive-security experience

Grupo Oruss was founded on November 22, 2002, in Bogotá, Colombia, with the purpose of helping organizations anticipate, understand and reduce cybersecurity risk before it becomes operational disruption.

Over more than two decades, the company has evolved from a regional cybersecurity practice into an international offensive-security firm supporting organizations across Europe and Latin America.

Our teams include certified ethical hackers, penetration testers, security consultants, auditors, threat-intelligence specialists and professionals with experience in governance, privacy, operations and international business.

This multidisciplinary structure allows us to connect technical findings with real business exposure, regulatory requirements and practical remediation priorities.

🇨🇴 Colombia Bogotá · Latin America operations
🇵🇹 Portugal Lisbon · European operations
🇫🇷 France Paris · International presence
Purpose and direction

Cybersecurity integrated with technological progress

Our purpose connects security, innovation, artificial intelligence, human behavior and long-term resilience.

01

Our mission

To support global technological transformation by making cybersecurity an essential component of digital life, integrating responsible innovation, artificial intelligence and sustainable development.

02

Our vision

To build secure connections between artificial intelligence, human behavior and predictive risk analysis, strengthening technological protection and contributing to safer, more resilient societies.

Security is strongest when technology, people and evidence work together.

Technical rigor Assessments guided by recognized methodologies and expert judgment.
Confidentiality Controlled handling of sensitive technical and business information.
Evidence Security decisions supported by validated exposure and clear findings.
Continuous improvement Retesting, learning and adaptation as environments evolve.
How we work

A multidisciplinary approach to offensive security

Our work combines technical assessment, threat understanding, business context and clear communication.

Human expertise first

Tools support the process, but specialist analysis and controlled testing determine the quality of the result.

Business context matters

A vulnerability is evaluated according to exploitation potential, operational impact and the environment in which it exists.

Communication must be actionable

Technical findings are translated into practical recommendations for security, technology, risk and executive stakeholders.

Professional expertise

Certifications supporting technical and governance capabilities

Our specialists bring together offensive-security, audit, governance, risk and information-security credentials.

OSCP Offensive Security Certified Professional
CEH Certified Ethical Hacker
SANS GPEN GIAC Penetration Tester
CISSP Information Security Leadership
CISM Information Security Management
ISO 27001 Information Security Management
ISO 27005 Information Security Risk Management
PenTest+ CompTIA Penetration Testing
Leadership and specialists

A team combining technical, commercial and international experience

Grupo Oruss brings together professionals from offensive security, threat intelligence, compliance, communications, finance and international operations.

RK

Roman Klavijo

CEO & Co-Founder

Leader of the ethical-hacking and Division 81 Red Team operations.

EM

Ekaterina Marchetti

Chief Marketing Officer

Communications, marketing, international networking and corporate positioning.

JB

Joy Bassett

Red Team & GDPR Analysis

PECB, OSCP and ISO/IEC 27001 expertise supporting European engagements.

MM

Marco Moretti

Threat Intelligence

Digital threat hunting and intelligence supported by OSCP and PenTest+ expertise.

MS

Milena Santibañez

International Operations

Financial coordination and international corporate operations.

LC

Lobsang Clavijo

Legal and Technology Advisory

Technology contracts, legal processes and information-security advisory.

CA

Camilo Arciniegas

Security Consultant

Information-security consulting supported by CISSP and CEH expertise.

NS

Nina Subovich

Pentesting Operations Lead

OSCP, PenTest+ and security-assessment leadership within Division 81.

Extended specialist network

Expertise across the security lifecycle

Additional specialists support research, secure development, penetration testing, governance and data intelligence.

Cyber Threat Research Data intelligence, digital threat research and social-network analysis.
Secure Software Secure code review, application testing and development-risk analysis.
Ethical Hacking Certified penetration testers supporting controlled offensive-security engagements.
Audit and Governance Cybersecurity audit, management and information-security assurance.
Privacy and Compliance GDPR, ISO and regulatory considerations integrated with technical assessment.
International Operations Coordination of commercial, financial and technical activity across regions.

Work with an offensive-security team built around evidence

Speak with Grupo Oruss about your attack surface, current security priorities or the assessment approach best suited to your organization.