CST-360 — Protecting what matters

The people you actually get

Six practitioners across methodology, cloud architecture, security engineering and GRC. No pyramid staffing — whoever scopes your work is who does it.

Leadership

Who sets the methodology

Oren Hadar

Oren Hadar

Founder & CEO · Cyber Security Methodologist

Cyber security methodology expert and cyber risk policy maker with more than 25 years' experience. Previously a senior member of the Israeli Defense Forces cyber-defense doctrine development teams, where his work shaped security processes across the IDF, government bodies and commercial entities. Works with Fortune 500 companies, global enterprises, SMBs and stealth-mode startups.

MethodologyCyber risk policyGovernanceBoard advisory
Shlomi Halif

Shlomi Halif

CTO · Head of Architecture & Engineering

Cyber security architect and cloud solution expert with more than 10 years across IT, networking and cyber security. Managed projects in the IDF Mamram unit for four years, including end-to-end data migration from on-premise servers to Azure. Today he leads CST-360's technology services team.

Cloud architectureAzureSecurity engineeringMigrations

Practice

Architecture, engineering & GRC

The delivery team. Photos and full biographies are being added.

Uriel Zion

Uriel Zion

Cyber Security Architect

ArchitectureCloud security
Gilad Zohar

Gilad Zohar

Cyber Security Engineer

Security engineering
Ariel Halif

Ariel Halif

Cyber Security Engineer

Security engineering

Nissim Cohen Azug

Cyber Security Engineer

Security engineering

Join the team

Open to strong practitioners

We hire for judgement, not certifications alone. If you work on cyber or AI risk in regulated environments, talk to us.

How we work

Security as a business process

Our mission is to leverage your business with cyber security — implementing security that enables business services and products rather than obstructing them. Two words guide the delivery: simplicity and professionalism.

Set a business-aligned security strategyThe strategy follows the business objectives, not the tooling catalogue.
Mitigate the risks that hit the financesWe prioritise by business consequence, so spend lands where exposure actually is.
Manage cyber security as a business processOwned, measured and reviewed like any other process — not a one-off project.