Who is behind KHEPRA? SecRed Knowledge Inc. (NouchiX)
A veteran-led team building the tools defense contractors and federal agencies need to stay safe from quantum threats and rogue AI agents. We deliver Compliance-as-a-Service, quantum-safe controls, and AI-agent proof that holds up with real auditors. No slide decks.
KHEPRA is built by SecRed Knowledge Inc. (d/b/a NouchiX), a veteran-led company with an active DoD Secret clearance, a DUNS/UEI registration, and a patent-pending application. We ship signed, quantum-safe proof of what AI agents do — 36,195 real control mappings, not a slide deck.
Last updated August 2026
NAICS 541512 · 541511 · 541519 · 561621 · SIN 54151HACS — Highly Adaptive Cybersecurity Services
What can no one else sell you?
The core stack — KHEPRA Protocol, AdinKhepra ASAF, SouHimBou AI, and the open PQC-01-STIG (a public standard for quantum-safe crypto) — runs on real code, real mappings, and live systems today.
KHEPRA/ASAF signs every action with ML-DSA-65 (quantum-safe crypto) and locks it to a DAG (tamper-proof record chain). Math proves it, not a checklist someone wrote by hand.
Active Secret clearance. Real federal work. 100% CCRI compliance success. We know DISA STIGs, CMMC, and the DoD quantum-safe deadlines cold.
36,000+ STIG, NIST 800-53, CCI, and CMMC mappings live in real code. We check them at runtime and publish how we did it.
Air-gap-ready FIPS 140-3 (federal crypto standard) builds for defense and CUI environments, plus a fast, easy SaaS option for quick checks.
The numbers. Not the pitch.
We wrote and published the first public DoD-style security standard for quantum-safe cryptography.
Active CMMC readiness support.
We licensed a key OT network security framework and monitor AI security in the lab for smart-grid operators.
Completed the cohort via SUNY Albany's Innovation Center & ETEC.
nouchix/PQC-Khepra-MCP is on GitHub. Real contributors, real activity — check it yourself.
Pitch Pulse Defense & Security — Top 10 Finalist.
Souhimbou “Spencer” Kone, SGT
“CyberSouhimbou” · Signal Corps Sergeant (25S)
- —Combat veteran — Operation Spartan Shield, Operation Inherent Resolve. Active Secret clearance.
- —Former GS-11 federal employee: GS-2210-11 IT Specialist, DMNA G6/CIO.
- —M.S. Digital Forensics candidate, UAlbany (NSA CAE-CDE).
- —Patent-pending application — USPTO #73565085.
- —Customer Advisory Board, STIG Viewer (OpenControl).
Growth advisor who helped scale a SaaS company from $0 to $15M in yearly revenue.
Gives us the DISA STIG (defense security standard) platform and exclusive API access.
How do we build?
Our real contribution is the standard itself. Our products just have to prove it works.
You hold your own keys. You run your own ledger. You can verify it all without us.
Every claim ties to a record you can replay and check yourself. Ours too.
We use methods that auditors and regulators will still trust ten years from now.
Our specs, checkers, and reference code are open for anyone to see. We earn our keep by running it well.
Alpha means alpha. Production means we'd bet the company on it.
Questions people ask before they buy
Who runs KHEPRA?
SecRed Knowledge Inc., doing business as NouchiX. It's a veteran-led company founded by Souhimbou "Spencer" Kone, a combat veteran with an active DoD Secret clearance.
Is KHEPRA a real company or just an idea?
It's real. We have a DUNS number, a SAM.gov UEI, active federal registrations, a patent-pending application, and 36,195 live STIG/NIST/CMMC control mappings running in code today.
Does KHEPRA have government or defense experience?
Yes. Our founder holds an active DoD Secret clearance and has 100% CCRI compliance success. We know DISA STIGs, CMMC, and the DoD's quantum-safe crypto deadlines cold.
What proof backs KHEPRA's claims?
Every action gets signed with quantum-safe ML-DSA-65 and locked into a tamper-proof record chain (a DAG). You can verify it yourself instead of trusting a slide deck.
Who advises KHEPRA?
Donnie Yancey, a growth advisor who helped scale a SaaS company from $0 to $15M a year, and Dorian Cougias of OpenControl, who gives us DISA STIG platform and API access.
Find out what your agents can reach.
Validation partners, MSPs, MSSPs, and teams running AI agents — book a call. We'll show you exactly what your agents can access and how to lock it down.