About BlackStork

The communication stack in cybersecurity is broken.

Over the last decade, the cybersecurity industry has heavily modernized its defense stack. Security operations teams are equipped with advanced SIEMs, automated response tooling, and highly tuned detection pipelines.

However, the communication stack has not evolved. Security is no longer just a technical function; it is a heavily regulated, board-level imperative. A 2022 survey of 1,200 enterprise security leaders found that their teams managed an average of 76 security tools and spent 54% of their time manually producing reports for boards, regulators, and auditors (Panaseer, 2022). To explain business risk to the C-suite, provide actionable intelligence to operational teams, or prove compliance to auditors, analysts must still collate data from separate systems and format it in static documents.

This process creates reporting bottlenecks, consumes expensive practitioner time, and limits organizational visibility. In my own security engineering work, preparing a customer-facing weekly report could consume a full analyst day. At scale, that is not a sustainable use of specialist time.

Focus on the message, not the formatting.

BlackStork was built to fix the translation problem in cybersecurity. We believe analysts should spend their time hunting threats and analyzing risk, not acting as document wranglers.

By combining automated, API-driven data collation with controlled, AI-assisted narrative generation, we remove repetitive collection and formatting work from recurring reporting cycles. Our goal is to provide the infrastructure necessary to establish a high baseline of quality, consistency, and speed in mission-critical communications.

BlackStork does not replace analyst judgment, peer review, or security expertise. It automates the machinery around the analysis so practitioners can spend more time on the message itself.

Built from cybersecurity engineering experience.

BlackStork was founded by Sergey Polzunov, a software engineer with over 18 years of experience, including a decade focused strictly on cybersecurity tooling.

Prior to building BlackStork full-time, Sergey engineered security solutions at Elastic, NCC Group FoxIT and EclecticIQ. His technical background spans the development of threat intelligence platforms, DFIR tooling, detection engines, and high-volume security data processing pipelines.

Having experienced the friction of scattered security data firsthand, Sergey is building BlackStork to provide the reporting infrastructure that modern security operations and compliance teams actually need.


Automate one reporting workflow with BlackStork.

Early customers work directly with BlackStork founder. We start with one real report, connect its data sources, and measure the manual steps and preparation time BlackStork can remove.

Discuss your reporting workflow