djinn six - AI Security & Compliance Assessment
djinn six · Cybersecurity & IT
Certification per AWS Marketplace.
Evidence tier Source Confirmed · 4 captures on record
What the publisher says
As described on AWS Marketplace.
## Independent AI security and compliance assurance
djinn six is an AWS Partner specialising in the security, governance and compliance of AI systems. This professional services engagement gives you independent, evidence-based assurance that your generative and agentic AI systems behave within agreed security, governance and regulatory boundaries.
Show the rest of the publisher’s description (29 more lines)
**Built for regulated sectors:** designed for AI governance, security and compliance leads in financial services, gaming and other regulated industries who must demonstrate that their AI estate is safe, governed and defensible.
## How we test your AI
We test your AI the way a real attacker would. Our adversarial assessment includes:
- **Single-turn prompt attacks** targeting known vulnerability classes
- **Adaptive multi-turn conversational attacks** that chain techniques across sessions
- **Full OWASP LLM Top 10 coverage** including prompt injection, data leakage and insecure output handling
- **OWASP Agentic AI risks (ASI-01 to ASI-10)** covering tool misuse, agent hijacking and privilege escalation
## Compliance mapping: test once, evidence many
Findings are translated into compliance evidence mapped to:
- **EU AI Act:** risk classification and conformity requirements
- **ISO 42001:** AI management system controls
- **NIST AI Risk Management Framework:** the govern, map, measure and manage functions
Evidence is produced once and reused across every framework, so you do not run a separate assessment for each standard.
## What you receive
- **Prioritised findings report:** vulnerabilities ranked by severity and exploitability
- **Reusable compliance evidence pack:** mapped to all three frameworks, ready for auditors and regulators
- **Remediation plan:** actionable guidance your engineering and governance teams can execute immediately
## Engagement lifecycle
- **Scoping call:** we define the AI systems in scope, agree boundaries and confirm access requirements
- **Adversarial testing:** automated and manual attack campaigns run against your AI systems
- **Analysis and mapping:** findings correlated across OWASP categories and mapped to regulatory frameworks
- **Findings readout:** live walkthrough of results with your security and governance stakeholders
- **Deliverable handover:** final report, evidence pack and remediation plan delivered
## AWS integration
This service relates to AWS artificial intelligence and machine learning services, primarily Amazon Bedrock. We assess the generative and agentic AI workloads that customers run on AWS, including on Amazon Bedrock and Amazon SageMaker AI. The assessment itself is delivered by djinn six on Amazon Bedrock.
## Data safety
We do not require access to your model weights, your training data or your customer data. We never touch your production data. Our testing interacts only with the inference endpoints you expose, so your production environment stays untouched throughout the engagement.
## Next steps
To get started, contact the djinn six team through the support details on this listing to scope an assessment and receive a custom private offer.
Highlights
Highlighted by the publisher on AWS Marketplace.
Adversarial red teaming of your LLMs and AI agents: single-turn prompt attacks and adaptive multi-turn conversational attacks against the OWASP LLM Top 10 and OWASP Agentic AI risks (ASI-01 to ASI-10), covering prompt injection, data leakage, tool misuse and agent hijacking.
Findings mapped to the EU AI Act, ISO 42001 and the NIST AI Risk Management Framework. A reusable compliance evidence pack is produced once and reused across every framework. Test once and evidence many.
Delivered by an AWS Partner on Amazon Bedrock, with no access required to your model weights, training data or customer data. Independent AI security and compliance assurance without exposing your production environment.
Agent build and provenance
See the full provenance
The layer-by-layer build, the evidence behind each claim, the risk basis and the cross-marketplace links are open to any account. Some rows are disclosed, some the source leaves Unknown; a free account shows you which.
Sources
Linked repositories
Unknown means this listing does not publish a repository. It is not a statement that the code is closed, and a linked repository is not a claim that the publisher wrote it: the registry computes that relationship privately and does not publish it.
Evidence risk is the share of the build you cannot see before you deploy, not a security rating. Sign in to see the layer-by-layer basis for this band.

