About Black Team

Security is an understanding — not a shopping list

Black Team tests physical security from an attacker's perspective. Here you can read what we mean by that, who does the work, and how the company is put together.

Our approach

Security goes beyond implementing technology and building higher walls.

It takes a deep understanding of threats, of the opposition you may face, and careful planning. Which is why an engagement with us begins with the question of who the adversary is — not with a list of products you are missing.

Threats

Who would realistically be interested in you, and what would they go after? Without that answer the rest is guesswork — including when the equipment is expensive.

Opposition

Every barrier holds against something specific. The question is not whether the lock is good, but what happens when someone works deliberately to get around it.

Planning

A real attack is planned. So the defence has to be planned too: in sequence, with priorities, and with a budget proportionate to the risk.

The founder

Christian Tang Mathiasen

The rest of this section is written in the first person. It is Christian's own account of the background — not someone else's assessment of it.

I have over 20 years of service in the Danish Frogman Corps (Frømandskorpset) behind me. The work ranged from intelligence and clandestine operations to OSINT.

During my time in the Frogman Corps, travelling the world and working with a great many different security set-ups, I started asking myself: is this actually secure? If I were the adversary, how would I break in? Finding the gaps became a challenge for me — and then a passion I now work with full time.

My work has taken me around the world, where I have been responsible for protecting Danish diplomats and securing our embassies — as well as other locations I cannot name here.

What sets me apart is an understanding of security developed in an environment where lives depended on it directly. I see openings and weaknesses quickly, and I can work across the domains — OSINT, reconnaissance and intrusion — and lay out one coherent plan from the start.

My mission is to help build a safer society and make a difference. I believe we can, if we make security part of people's everyday lives without it becoming a burden, and without making anyone paranoid.

My goal is not simply to break in. My goal is to help organisations understand their weaknesses and to work with them to build safer environments.

Christian Tang Mathiasen · founder, Black Team ApS

How we work today

One operator — and a network of specialists

Black Team is run by one operator. The person you talk to during scoping is also the person standing at your door, and the person who goes through the findings with your management afterwards.

If an engagement calls for more than that — technology, analysis or teaching — we draw on a network of specialists who join the specific engagement and leave it again. We are not building a staff, and you will not be handed a junior consultant with a checklist.

That puts a natural limit on how many engagements we can take at a time. In return, you always know exactly who is doing the work, and who has seen your weaknesses.

See how an engagement runs

The company

Black Team ApS

Black Team ApS is a Danish private limited company, company registration (CVR) 45538230. The company was incorporated in 2025, but the Black Team name has been in use since 2023, when the work began as a sole proprietorship.

The registered purpose of the company is highly specialised security advisory. We take on engagements across Denmark; work outside the country is agreed separately.

Our assessments start from recognised frameworks. Not as a label, but as the yardstick we hold the findings up against — so you can recognise them again in your own work with NIS2, ISO 27001 or insurance.

Reference framework
  • ISO 27001 (Annex A)
  • CPTED
  • F&P Sikringsguiden
  • NIS2 / CER
  • NIST SP 800-115

Next step

Test the assumptions.
Find the attack paths.

A short conversation is enough to establish whether a Security Assessment or a full penetration test is the better fit. It costs nothing and commits you to nothing.