French cybersecurity consultancy with 40+ years in defense, compliance, and threat response
NEVERHACK operates a security services practice across 10 countries with over 1,200 staff, anchored in France. The tech stack reflects a mature consulting operation: EDR/XDR and IAM (Azure AD, Entra ID) for defense, penetration-testing tools (Metasploit, Burp Suite, Nmap) for offense, and cloud infrastructure (AWS, Azure, GCP) for deployment. Active hiring leans heavily security-focused (18 of 26 open roles), with senior and mid-level gaps — consistent with scaling consulting delivery while tackling talent shortages in the market. Current project focus is zero-trust architecture and identity-driven access control, plus automation of risk assessment workflows.
NEVERHACK provides cybersecurity consulting, training, and risk assessment to mid-market and enterprise companies across regulated and complex IT environments. The service mix spans offensive security (penetration testing), threat defense, incident response, compliance, cloud security, and cyber-industrial/embedded systems. The group operates offices in France, Spain, and Mexico, with a stated emphasis on local partnerships and dedicated single points of contact for both commercial and technical engagement. Internal capability is marked by high certification velocity (over 1,000 annually) and selective hiring practices aimed at senior talent retention.
NEVERHACK operates in 10 countries and maintains offices in France, Spain, and Mexico. The group is headquartered in Paris and currently hiring in all three locations.
Core tools include EDR/XDR and IAM (Azure AD, Entra ID, Microsoft 365) for defense, Metasploit and Burp Suite for offensive testing, AWS/Azure/GCP for infrastructure, Kubernetes and Terraform for deployment, and EBIOS RM for risk frameworks. Recently adopting FIDO2 for passwordless authentication.
Other companies in the same industry, closest in size