AGENTIC SECURITY

WHAT WE DO

AI automation, backed by the security and software chops to ship it.

Agentic Security is a New Zealand-based consultancy. Most AI work sells prototypes; most security work sells audits. Almost nobody sells the difficult thing in the middle — agentic AI systems that actually ship to production and don't get you breached. That's what we do.

Engagements run as fixed-scope packages where the work is well-defined, and hourly when it isn't. Retainers are monthly and cancellable with 30 days notice. We're still settling pricing publicly — happy to talk numbers on a call.

AI AUTOMATION

Put agentic AI on the boring, repeatable work your team is paying for in hours — safely, and in production.

  • Map the highest-ROI places in your business where an agent can take the mechanical work.
  • Connect the tools your team already uses — email, calendar, CRM, docs, code, helpdesk — via secure MCP integrations.
  • Put agents on a schedule so research, reporting, outreach, and follow-ups just happen.
  • Build reusable skills so recurring tasks stop being ad-hoc prompts and start being one-click operations.
  • Lock it all down with identity-aware auth, least-privilege scopes, and an audit trail of every action.
  • Train your team to actually use what's been built — so the ROI survives past launch week.

PACKAGES

Agentic Kickstart

Fixed-scope engagement that wires your first MCP integrations into Claude (or your agent of choice), builds 2–3 scheduled workflows around them, and hands over a secured, documented setup.

Scheduled Agent Workflows

Design and build recurring agent workflows — prospect research, weekly reporting, competitor monitoring, inbox triage, follow-up drafting — that combine MCP integrations with a schedule so they run without you in the loop.

Custom Skills Library

Turn your team's repeat work into reusable skills. We interview your operators, extract the recipes, package them as skills, and document trigger phrases so the right skill fires at the right moment.

MCP Integration Build

Need an agent to talk to an internal system or a third-party API that doesn't have an MCP server yet? We design, build, and secure a custom MCP tailored to your domain.

Secure Agentic Setup

Harden an existing agentic stack: identity-aware auth, least-privilege connector scopes, secret hygiene, human-in-the-loop approval for high-stakes actions, and monitoring so nothing runs unobserved.

Team Enablement

Hands-on sessions where we teach your team how to use the agents, skills, and scheduled tasks you already have — and how to propose the next ones without waiting on us.

Agentic Ops Retainer

Monthly retainer to keep your agents alive and improving: iteration, monitoring, on-call cover, and a new skill or workflow every cycle.

CYBERSECURITY & SOFTWARE

Meet real-world security frameworks, and build the focused software — websites, MCP servers, AI-integrated apps — that slots into the agentic work above.

  • Get SOC 2 or ISO 27001 readiness without the big-four price tag.
  • Harden cloud architecture and agentic systems against real attack paths.
  • Operate with a fractional CISO who actually understands AI.
  • Ship a marketing site that actually converts — and that you can extend.
  • Expose your product to the agentic ecosystem via a custom MCP server.
  • Get an AI-integrated MVP in front of real users in weeks, not quarters.

PACKAGES

Security Maturity Assessment

One-week framework-aligned snapshot of current-state and gap report. SOC 2, ISO 27001, or Essential Eight.

SOC 2 Readiness Program

8–12 week program: policies, controls, evidence, and audit prep for SOC 2 Type I, with a clear glide-path to Type II.

ISO 27001 Readiness Program

12–16 week ISMS design, risk register, control implementation, and internal audit prep.

Agentic System Security Review

Threat model and test suite for agents and MCP deployments. Covers prompt injection, tool abuse, data exfiltration, and identity boundary failures.

vCISO Retainer

Fractional CISO and program management, 8–20 hours per month.

Marketing Site Build

Brand + 5–8 pages + CMS + analytics. Ships on Azure App Service with an Entra ID-protected contact form out of the box.

Custom MCP Server

Wrap your existing API or internal system as an MCP with auth, observability, and hosting you actually trust.

AI-integrated Web App

MVP with auth, data, and AI features — ready for pilot users in 4–8 weeks.

Product MVP (Partnership)

Thin-slice SaaS MVP for founders who want a partner, not a vendor.

Not sure which one fits?

Most engagements start with a 30-minute call. We'll tell you honestly which package — if any — is the right first step.