Back to the registry
Agent passport

djinn six - AI Security & Compliance Assessment

djinn six · Cybersecurity & IT

No attestation published

Certification per AWS Marketplace.

Provenance reach3 of 12 layers traced

Evidence tier Source Confirmed · 4 captures on record

User ratingNot rated0 reviews on the listing
Runs onUnknownProfessional service
ProvenanceUnknown33% of the provenance layers this product can disclose
Evidence riskHighSign in to see the basis for this band.

What the publisher says

As described on AWS Marketplace.

## Independent AI security and compliance assurance

djinn six is an AWS Partner specialising in the security, governance and compliance of AI systems. This professional services engagement gives you independent, evidence-based assurance that your generative and agentic AI systems behave within agreed security, governance and regulatory boundaries.

Show the rest of the publisher’s description (29 more lines)

**Built for regulated sectors:** designed for AI governance, security and compliance leads in financial services, gaming and other regulated industries who must demonstrate that their AI estate is safe, governed and defensible.

## How we test your AI

We test your AI the way a real attacker would. Our adversarial assessment includes:

  • **Single-turn prompt attacks** targeting known vulnerability classes
  • **Adaptive multi-turn conversational attacks** that chain techniques across sessions
  • **Full OWASP LLM Top 10 coverage** including prompt injection, data leakage and insecure output handling
  • **OWASP Agentic AI risks (ASI-01 to ASI-10)** covering tool misuse, agent hijacking and privilege escalation

## Compliance mapping: test once, evidence many

Findings are translated into compliance evidence mapped to:

  • **EU AI Act:** risk classification and conformity requirements
  • **ISO 42001:** AI management system controls
  • **NIST AI Risk Management Framework:** the govern, map, measure and manage functions

Evidence is produced once and reused across every framework, so you do not run a separate assessment for each standard.

## What you receive

  • **Prioritised findings report:** vulnerabilities ranked by severity and exploitability
  • **Reusable compliance evidence pack:** mapped to all three frameworks, ready for auditors and regulators
  • **Remediation plan:** actionable guidance your engineering and governance teams can execute immediately

## Engagement lifecycle

  • **Scoping call:** we define the AI systems in scope, agree boundaries and confirm access requirements
  • **Adversarial testing:** automated and manual attack campaigns run against your AI systems
  • **Analysis and mapping:** findings correlated across OWASP categories and mapped to regulatory frameworks
  • **Findings readout:** live walkthrough of results with your security and governance stakeholders
  • **Deliverable handover:** final report, evidence pack and remediation plan delivered

## AWS integration

This service relates to AWS artificial intelligence and machine learning services, primarily Amazon Bedrock. We assess the generative and agentic AI workloads that customers run on AWS, including on Amazon Bedrock and Amazon SageMaker AI. The assessment itself is delivered by djinn six on Amazon Bedrock.

## Data safety

We do not require access to your model weights, your training data or your customer data. We never touch your production data. Our testing interacts only with the inference endpoints you expose, so your production environment stays untouched throughout the engagement.

## Next steps

To get started, contact the djinn six team through the support details on this listing to scope an assessment and receive a custom private offer.

Highlights

Highlighted by the publisher on AWS Marketplace.

Adversarial red teaming of your LLMs and AI agents: single-turn prompt attacks and adaptive multi-turn conversational attacks against the OWASP LLM Top 10 and OWASP Agentic AI risks (ASI-01 to ASI-10), covering prompt injection, data leakage, tool misuse and agent hijacking.

Findings mapped to the EU AI Act, ISO 42001 and the NIST AI Risk Management Framework. A reusable compliance evidence pack is produced once and reused across every framework. Test once and evidence many.

Delivered by an AWS Partner on Amazon Bedrock, with no access required to your model weights, training data or customer data. Independent AI security and compliance assurance without exposing your production environment.

Agent build and provenance

See the full provenance

The layer-by-layer build, the evidence behind each claim, the risk basis and the cross-marketplace links are open to any account. Some rows are disclosed, some the source leaves Unknown; a free account shows you which.

Sources

Marketplace listingaws.amazon.comSource
App certificationaws.amazon.comSource

Linked repositories

RepositoriesUnknownUnknown

Unknown means this listing does not publish a repository. It is not a statement that the code is closed, and a linked repository is not a claim that the publisher wrote it: the registry computes that relationship privately and does not publish it.

Pricing
Unknown
Not stated
Delivery
Professional service
## Contact Support is provided directly by the djinn six team. **Email:** support@djinnsix.com ## Response Times We respond to all enquiries within one business day, UK business hours (Monday to Friday). Questions about a private offer or proposal are answered within one business week. ## Engagement Support Once an engagement is agreed, you receive a named djinn six lead as your single point of contact for the entire assessment. Your lead supports you from the initial scoping call through to findings readout and remediation guidance. ## What Support Covers - Scoping and scheduling the assessment - Secure access and connectivity setup - Interpreting findings and compliance evidence - Remediation advice your engineering and governance teams can act on - Questions about deliverables, methodology or next steps ## Engagement Timeline The assessment follows a structured lifecycle: scoping call, adversarial testing, analysis and compliance mapping, findings readout, and final deliverable handover. Your named lead will confirm milestone dates during the scoping call so your governance and procurement teams can plan internal availability accordingly. ## Refunds and Disputes If you have concerns about the service or wish to discuss a refund, contact support@djinnsix.com and your enquiry will be addressed within one business day.
Open the source listing ↗

Evidence risk is the share of the build you cannot see before you deploy, not a security rating. Sign in to see the layer-by-layer basis for this band.