Stihia ABOUT

Stihia team at Hemus 2026 conference

Why Stihia exists

AI tools reach teams from the bottom up. Assistants, coding agents, and personal accounts spread faster than any policy, and by the time a client security questionnaire arrives, nobody can say for certain which tools touch which data.

The companies in that position are rarely the ones with a security department. They are software companies with strong engineers, a founder wearing several hats, and no appetite for a policy document that nobody reads. What they need are rules that hold up in an audit and still fit how the team actually works.

So we cover the whole path. We teach the team, we write and implement the policies, and we stay on as the named owner who keeps them applied. More AI, used safely, with evidence customers can see.

How we work

Four commitments that decide what we take on and what we hand over.

Practitioners first

The people who write your policy also build our detection models and run our vulnerability research. The advice comes from work we do ourselves, not from a summary of someone else's framework.

Proof, not promises

Every engagement ends in something you can show: a policy set, a workshop your team remembers, a findings report, an answer you can send to a client. If it cannot be demonstrated, we do not claim it.

Plain language, exact rules

The EU AI Act, NIST, NIS2, DORA, ISO 27001, SOC 2, and ISO 42001 get explained in terms of what you actually have to do. The depth is there for your engineers, but jargon never carries the message.

More AI, not less

We are not here to slow your team down. Every control exists so people can use AI more, with the boundaries drawn in the right places.

The team

Ivan Danielov Ivanov

Ivan Danielov Ivanov

Data Science & Product Engineering

Peter Kirkov

Peter Kirkov

Cybersecurity & Compliance

Stilyan Mitrev

Stilyan Mitrev

Product & Growth

Stoyan Simov

Stoyan Simov

Business Development & Sales Strategy

Press and brand

For journalists, event organisers, and partners.

Company boilerplate

About Stihia

Stihia is an EU-based AI security and compliance company. It helps software companies adopt AI across their delivery without losing control of client data or falling behind EU regulation, through AI security workshops, AI policy consulting, a fractional security and compliance officer service, AI red teaming, and Stihia Sense, its real-time AI threat detection platform.

Want to see whether we fit?

Start with a half-hour intro call. We look at how AI is used in your company today and tell you plainly which part of the path is worth doing first.