GemForge Labs Operations for enterprise and government

Realistic operations for the teams who attack and defend

Multi-host enterprise environments for red team and incident response work, with the tools your teams already use.

The gap

Operators need somewhere realistic to practise

Most training is theory or single-machine challenges. Realistic, hands-on operations across a whole enterprise network are hard to find, and harder to run safely.

Skills fade between training

Long gaps between courses and certifications leave a team's skills to fade. Operations gives your people a place to apply and reinforce what they know, in settings that look like the real thing.

Hard to test under pressure

Few organisations have a safe, high-fidelity environment to test their red teams and incident response teams. Operations lets teams attack and defend a realistic network and see how they perform.

What you get

An enterprise network to attack, and to defend

Each scenario is a full operation across a realistic multi-host network. Red teams get a target estate and an objective. Blue teams get the evidence, the tools and the freedom to respond their own way.

An Operations environment: an intrusion across multiple hosts, investigated through defender tools Enterprise network Windows endpoints Initial foothold Domain controllers Credentials and movement Linux servers Impact on the service Intrusion Lateral move Defender tools, pre-deployed Logs and telemetry from every host Splunk Kibana Velociraptor Zeek

Illustrative environment.

Enterprise-style environments

Multi-host labs that mimic a real estate: Windows endpoints, domain controllers, Linux servers, a SIEM and logs.

Red team operations

Gain a foothold, escalate privileges, move laterally and compromise the domain across Windows and Linux hosts.

Full incident simulations

Work through ransomware outbreaks, APT intrusions and insider threats from the first alert to the end of the incident.

Defender tools pre-deployed

Splunk, Kibana, Velociraptor and Zeek are ready to use, so time goes on investigating rather than setting up.

Open-ended objectives

Clear objectives and rich telemetry, with room to decide how to attack, investigate and respond.

Red, blue and purple

Use the same environments for red team practice, incident response and joint exercises.

Realism

Closer to a real operation in length, detail and difficulty

Short, single-machine labs teach techniques. Operations scenarios are built to feel like the real thing: they take time, they span many hosts and they reward careful, methodical work on either side.

Scenarios draw on modern threats and common attack patterns, so what your team practises is what they are likely to face or emulate.

Scenario types

Attack

Red team operations
Adversary emulation

Defend

Ransomware outbreaks
APT intrusions
Insider threat

Who it is for

Built for enterprise and government security teams

Red teams and offensive security

Practise attacking a realistic enterprise estate, from initial access through to domain compromise.

Incident response and SOC teams

Rehearse real incidents together and see how your team investigates, decides and responds.

Government and critical infrastructure

Prepare the teams who attack and defend essential services with realistic, hands-on operations.

Training and L&D managers

Give red, blue and purple teams an engaging, flexible way to build capability, alongside your existing programmes.

Part of your plan, alongside structured training

Operations sits beside our labs, modules and certification pathways, so your people keep practising between milestones and your organisation can show how ready it is.

Available to enterprise and government customers, as a core product in Team, Business and Enterprise plans. It is not sold to individuals.

See pricing

Stay sharp between milestones

Keep skills and confidence up between certifications and exercises.

Measure operational effectiveness

See how teams perform under pressure, and run the same operation again to track improvement.

Prove operational readiness

Show leadership what your teams can do, attacking or defending, in a realistic environment.

Talk to us about Operations

Tell us about your organisation and we will show you how Operations fits your training.

  • A friendly, straightforward response
  • Advice tailored to your needs
  • No pressure, no obligation

FAQs

Everything you need to know about Operations

Who can use Operations?
What is Operations?
Does Operations cover offensive security?
Which tools are included?
Can we use it to assess our team?
How does it fit with certifications?