---
title: "ZioSec FAQ | Voidhawk and AI Red Teaming Platform"
description: "Answers about ZioSec, Voidhawk adaptive defense, AI Red Teaming Platform, deployment choices, offensive evidence, and getting started."
url: https://ziosec.com/faq
---

# Questions, answered

Product capabilities, deployment choices, and the security expertise behind ZioSec.

## ZioSec and our approach

**What does ZioSec do?**

ZioSec builds security for a world of AI agents. Voidhawk defends connected applications, APIs, and AI agents against adaptive attackers. The AI Red Teaming Platform supports agent inventory, continuous attack campaigns, policy, findings, and audit evidence. Our team builds advanced attacking agents and applies that technical understanding to the security problems each product addresses.

**How does building attacking agents establish defensive expertise?**

We engineer agents that plan attacks, adapt to a target, and exploit vulnerabilities. Building those agents teaches us how they reason, where their weaknesses are, and how their objectives can be disrupted. We apply that expertise to Voidhawk, using our offensive agents to train and validate defenses and inform responses to malicious agentic traffic within the defended environment.

**Do I need to operate AI agents to use Voidhawk?**

No. Voidhawk is for teams defending connected applications and APIs as well as teams deploying AI agents. An attacker can use AI against an ordinary web application. Security, platform, and infrastructure teams can evaluate Voidhawk around the systems and traffic they already operate.

## Voidhawk

**Is Voidhawk available today?**

Voidhawk is in active development, and ZioSec is selecting design partners. We work with partners to define their environment, deployment approach, attack scenarios, and evaluation scope.

**What does Voidhawk look for?**

Voidhawk analyzes traffic to connected apps, APIs, and AI agents. It combines fast heuristics with AI reasoning for ambiguous cases, considers application-specific behavior, and evaluates an actor’s objective across actions. Its defensive responses aim to interrupt the attack within the customer’s defended environment.

**Where does Voidhawk run, and where is traffic processed?**

Voidhawk has two deployment choices. A self-hosted deployment runs in your Kubernetes cluster; request data and per-endpoint calibration remain in your infrastructure. A hosted edge deployment processes request and response traffic on ZioSec infrastructure before forwarding it to your origin. The deployment discussion establishes which model fits your requirements.

**Can I evaluate Voidhawk before enabling blocking?**

Yes. Request mirroring supports observation and scoring, but cannot block and does not see responses. That limits response-dependent detections, including login outcomes and data leakage in responses. An ext_proc dry-run evaluation can retain request and response signals without enabling enforcement.

## AI Red Teaming Platform

**What does the AI Red Teaming Platform include?**

The AI Red Teaming Platform lets teams operate security across an AI agent fleet. Teams inventory agents, run continuous campaigns with bespoke attack trees, set per-agent policy, route reproducible findings to owners, and track risk and audit evidence. Its autonomous adversaries test the agent’s architecture, tools, data access, and trust boundaries, while its API connects validation to existing workflows.

**Can our team operate continuous testing?**

Yes. Your team operates the AI Red Teaming Platform and controls campaign scope, schedules, policies, and findings. Validation runs continuously or on change as models, prompts, tools, and permissions evolve. The API brings those capabilities into your pipelines. Expert-led scoped pentests are also available through optional AI Red Teaming services.

**How are offensive tests controlled?**

Your team defines which agents, tools, and data classes are in scope through the platform’s campaign and policy controls. Destructive actions are simulated or approval-gated, with rate limits, a stop control, and an audit log. Those boundaries are established before attacks run.

**What evidence does a red-team test produce?**

Findings include severity, reproduction steps, attack classification, relevant framework mappings, and remediation guidance. Evidence supports engineering, security review, and governance workflows. Our methodology and compliance pages explain the classification and mapping approach; testing evidence does not by itself certify compliance.

**Is there an API?**

Yes. The AI Red Teaming Platform API accepts an agent endpoint and returns offensive testing results and an evidence packet. It supports teams embedding agent validation in CI, security products, and vendor-risk workflows. This is the offensive testing API described at /api.

## Getting started

**How do I start with the AI Red Teaming Platform?**

Book a platform demo to explore fleet inventory, attack campaigns, policy, findings, and reporting for your environment. Discuss API access if you want to automate validation in your own workflows. An optional expert-led pentest starts at $10,000, with the fee 100% credited toward an annual AI Red Teaming Platform subscription if you continue.

**How do I explore a Voidhawk design partnership?**

Contact the team about Voidhawk. Bring the apps, APIs, or agents you need to defend, your traffic path, and your data handling requirements. We will discuss fit, deployment, and an agreed evaluation using authorized offensive testing.

**Do you provide consulting as well as products?**

Yes. ZioSec offers secure AI adoption and rollout, AI transformation advisory, secure agent design, and team enablement. These services help teams make architecture, permissioning, and operational decisions as they adopt AI.

## Explore the products

- [Voidhawk](/voidhawk)
- [Voidhawk deployment](/voidhawk/deployment)
- [AI Red Teaming Platform](/ai-red-teaming)
- [Our approach](/approach)
- [Consulting and advisory](/services)

## Still have a question?

Tell us what you need to defend or validate. We will connect you with the right product or engagement.

[Talk to our team](/demo) | [Explore our approach](/approach)

