The people behind oktsec

From financial systems
to AI agent security.

Oktsec brings together security research, open-source engineering and experience operating financial software. We build controls for the work enterprises delegate to AI agents.

Security for a world that runs on agents.

AI agents are gaining the ability to write software, move money and operate business systems. Cybersecurity must govern the authority behind those actions. We’re building Oktsec as the security infrastructure that lets organizations delegate more of their work to AI.

01 / Our vision

Put agents to work where it matters most.

We see agents becoming part of how hospitals deliver care, financial institutions serve customers and businesses run. Organizations should be able to expand what they delegate while keeping control over the systems, data and decisions that matter.

02 / Our mission

Make delegated authority enforceable.

Turn the permissions people grant into controls that hold when agents act. Our mission is to carry that authority across tools, systems and other agents: define the limits, enforce them at execution and preserve evidence people can verify.

Founded in Buenos Aires.Building security infrastructure for a global shift.
Meet Gustavo Aragón

The experience behind Oktsec.

Experience
20+ years in technology
Leadership
12 years in technology leadership
International experience
Argentina, Brazil, New Zealand and Hong Kong

Gustavo is Oktsec’s full-time technical founder. His background combines product leadership, financial technology and security research.

Oktsec · Founder

Building Oktsec to help enterprises put AI agents to work safely. We test workflows for exploitable weaknesses, inspect software dependencies for supply-chain threats and enforce policy before routed actions reach a tool or system. Teams can restrict access to sensitive files, credentials and deployment tools, then use signed evidence of each evaluated action to investigate incidents and support audits.

Banza/Adcap · CPTO

As Chief Product and Technology Officer, led product and technology in regulated financial services.

Brelo · Cofounder & CTO

Spent seven years building Brelo in São Paulo, Brazil, working with the team on patented device-locking technology for mobile collateral lending.

01Security findings reported through Google, Microsoft, Stripe, Cloudflare, AWS and Mercury programs.02AgentPay won first place at the Anthropic × Kaszek Latin America hackathon in 2026. The prototype applied deterministic checks to payments between agents.03Inaugural Agentic AI Foundation Ambassador and Claude Code Partner. Approved for OpenAI Daybreak Blue and Anthropic Cyber Verification defensive research access.
How we work with customers

What to expect from an engagement.

Agree the scope and permitted tests first. Your team reviews the findings and decides which controls to adopt.

01

Scoped Assessment

Start with one workflow. Explicit rules of engagement. Findings with executable evidence.

02

Customer controlled runtime

Enforcement stays in environments you own. No inbound requirement to run Oktsec Control.

03

Confirm and hold safety

Prove the path without escalating beyond the agreed scope. Keep a full trail after the run.

04

No secrets in web forms

Use forms to describe the workflow. Do not include secrets, credentials, customer data or source code.

Work you can examine.

Explore the research, customer example and open source projects behind oktsec.

01

Published research

Read the attack analysis, reproduction methods and sources in the research archive.

02

Customer use

See how Certuma combines agent assistance, policy checks and physician review.

Review the workflow you plan to deploy.

Assessment tests the workflow and returns reproduction steps and recommended fixes. Control applies policy to requests during operation.