We build software.
We secure it.
Black Shard builds and runs software in regulated industries on Azure in Australia, and secures it from the inside. The same team that ships it is the team that breaks it: software engineering, penetration testing, advisory, and compliance, proven by products running in production every day.
Why we set
this up.
Most security firms have never shipped the kind of software they are asked to test. They read a codebase from the outside, file a report, and move on. The advice is real, but it comes from people who have never owned the consequences of a build.
Black Shard works the other way around. We build and operate software in regulated industries ourselves (clinical, legal, capital markets) on Azure in Australia. We threat-model it, harden it, and red-team it before anyone else can. That same capability is the service: software engineering, offensive testing, advisory, and compliance.
It means we test the way an attacker thinks and fix the way an engineer builds. The standard is the same whether the system carries our name or a client's.
Builds currently in motion.
A selection of the work running right now, each one a live system, not a pitch deck. Open any of them to see how it was built and what it does today.
Bold Property Group
Buyer’s advocacy
Bold Property Group is the Black Shard buyer’s advocacy arm.
GRM LAW
Legal
GRM LAW is a Brisbane law firm. Black Shard built and operates the compliance and operations portal the firm runs on.
Aurii
Clinical software
Aurii is the Black Shard clinical-software venture.
Restart Recruitment
Recruitment
Restart Recruitment is the Black Shard talent venture.
Stone Leaf Capital
Capital markets
Stone Leaf Capital is an Australian capital-markets firm. Black Shard was engaged to build the firm's technology, brand, and operating systems.
Fox Valuations
Property valuation
Fox Valuations is an independent Brisbane property valuation practice led by a registered valuer.
What we believe.
- We secure what we build.
- We do not only test from the outside. We build and run software in regulated industries ourselves, so we test the way an attacker thinks and remediate the way an engineer ships.
- Verifiable, never overclaimed.
- We hold SMB1001:2026 Gold, issued by CyberCert and listed on the public registry. It is the one certification we name, and every other framework on our trust page is labelled for exactly what it is.
- Compliance-fluent by default.
- AFSL, AHPRA, AML/CTF, RG 104. Australian regulatory frames are part of the architecture from day one. We build for the obligations the seat carries.
- We read the ground truth first.
- Before an engagement starts we map the real operating reality: the attack surface, the obligations you carry, the constraints you work under. You get a plan built on how your systems actually work, not a template pulled off a shelf.
- The people you meet do the work.
- No juniors learning on your engagement, no offshore bench, no handoff after the sales call. The engineers who scope the work are the engineers who deliver it, and the ones who answer for it afterwards.
The firm, in brief.
- Head office
- Brisbane. Level 35, 71 Eagle Street, QLD 4000. Work delivered Australia-wide.
- What we run
- Five named businesses run day-to-day on systems we build and operate: Bold Property Group, Aurii, Restart Recruitment, GRM LAW, and Stone Leaf Capital. Others run alongside them that we do not name publicly.
- Certification
- SMB1001:2026 Gold, independently issued to Black Shard Pty Ltd (ABN 66 696 910 773).
Who you'll work with.
Kane Roberts
Founder
Kane founded Black Shard to run software engineering and security as one discipline. He builds and operates the firm’s systems in regulated industries (clinical, legal, capital markets) on Azure in Australia, and he is the practitioner who scopes the engagement, delivers it, and answers for it afterwards.
The evidence is in the builds.
Each build is documented as a case study: the brief, the system we shipped, and what it runs today.


