Security consulting and automation for enterprise incident response
Dragonfli Group is a Washington, DC-based security consulting firm built around incident response automation and insider threat programs. The tech stack reveals deep Microsoft ecosystem integration (Entra, Defender, Purview, 365) alongside Splunk and Palo Alto for detection, paired with Azure AI Services for enrichment — a signal they're moving detection and response work from manual playbooks into AI-assisted workflows. Hiring velocity is accelerating with 6 open security roles, heavily weighted toward senior practitioners, suggesting client demand for automation architecture and insider threat maturation.
Dragonfli Group provides management and technology consulting focused on cybersecurity, infrastructure, and corporate strategy. The firm serves mid-market and enterprise organizations seeking to manage security risk, meet regulatory compliance, and improve operational resilience. Their active project portfolio centers on three areas: automating detection and response workflows (including insider threat investigation), designing secure architectures for industrial control environments (SCADA/DCS/PLC), and maturing enterprise identity and access management through Okta integration. The consulting model combines strategic planning with hands-on deployment of security tooling and automation.
Core stack includes Splunk (Enterprise Security and Phantom SOAR), Microsoft Defender and Entra, Palo Alto Networks, CrowdStrike, Okta, and Azure AI Services for enrichment and automation.
Active projects include automated incident response playbooks, AI-enabled detection enrichment using Azure, insider threat program maturity, and secure architecture design for OT/industrial control environments.
Other companies in the same industry, closest in size