Built on solid ground.
Named for the marble quarried from Italy's Apuan Alps (stone whose strength, permanence, and clarity have been prized for centuries), Carrara Security is built on that same foundation: solid, precise, and unwilling to leave hidden cracks unexamined.
The Founder
Carrara Security was founded by Kelley Bryant, an offensive security expert with 20 years of experience breaking applications to find the vulnerabilities that matter most. He specializes in application, thick client, API, and mobile penetration testing, as well as pentest program leadership.
Kelley holds CISSP, CSSLP, GWAPT, GMOB, CEH, CNDA, CASA, CAP, MSec-CAIS, and CDPSE certifications. His application security writing has been recognized by the ISSA Security Journal.
Partnership
Carrara Security partners with the Trafford Security team to support government and commercial engagements, extending coverage into network and infrastructure penetration testing alongside Carrara's application-layer expertise.
Our Approach
Manual-First Testing
Automated tools have their place, but the vulnerabilities that matter most are usually the ones a scanner can't find.
AI-Augmented, Human-Validated
AI-powered tooling helps surface patterns and attack paths fast; every finding is then manually validated with an attacker mindset.
Clear, Actionable Reporting
Findings are prioritized by real-world exploitability, with remediation guidance your engineering team can actually use.
Collaborative Engagements
We work with your developers and security team throughout testing, not just at the final readout.