The firm

Arkem Cyber is a boutique cybercrime intelligence advisory firm. We work closely with a small number of organizations that need to understand the criminal groups targeting them — ransomware operators, extortion crews, and the wider threat ecosystem behind them — and turn that understanding into clearer decisions.

We stay small on purpose. It keeps the work senior, the judgment direct, and the client relationship confidential.

Why Arkem exists

Most leaders facing cybercrime are handed tooling, vendor framing, or generic risk language — rarely a clear read on the actual adversary. Arkem Cyber exists to close that gap: to help executives, boards, and the advisors who support them understand ransomware groups, cybercrime actors, and the ecosystems they operate in well enough to make better decisions before, during, and after an attack.

The goal is never to alarm. It is to give leaders an honest, evidence-based picture of who is behind the threat and what it means for the choices in front of them.

Founder

Jon DiMaggio, Founder and Principal Researcher of Arkem Cyber

Arkem Cyber was founded by Jon DiMaggio, Founder & Principal Researcher. Jon is a cybercrime intelligence analyst, author, and speaker whose published work examines how ransomware and extortion groups operate and the criminal economy that sustains them. He started the firm to give leaders independent, research-led counsel on the threats they actually face — not the ones a product roadmap wants to sell them.

Jon DiMaggio reviewing cybercrime research at his desk

What makes the work different

The value of Arkem Cyber is the depth and judgment behind the analysis:

  • Original research — Conclusions trace back to primary-source study of the cybercrime ecosystem, not recycled reporting.
  • Adversary understanding — A working knowledge of how criminal groups think, organize, and adapt — gained by following them closely over time.
  • Threat actor profiling — Detailed characterization of the specific groups and operators relevant to your organization, including how they breach, pressure, and negotiate.
  • Intelligence tradecraft — Disciplined collection and analysis, careful attribution, and transparent reasoning about what is known and what is not.
  • Executive communication — Plain-language briefings that help leadership and boards weigh risk and make decisions they can stand behind.
  • Strategic judgment — Counsel grounded in evidence and experience, focused on the choices that actually fall to leadership.

When the picture is uncertain, we say so — and we explain what would change our assessment.

What Arkem is not

To set expectations clearly, Arkem Cyber is not:

  • a managed security service provider (MSSP)
  • an incident response firm
  • a vCISO provider
  • a compliance consultancy
  • a ransomware negotiation company
  • a digital forensics company
  • a staff-augmentation business

Our value is intelligence and judgment — not tooling, staffing, or operational services.

Ethics & responsible research

Arkem Cyber conducts research lawfully and responsibly, with clear boundaries around collection, source handling, direct engagement, and client confidentiality.

Discuss an engagement

If you’re weighing a decision and need an expert read on the adversaries behind it, the best next step is a conversation.

Schedule a Consultation