Nearly two decades of systems that shipped, passed review, and stayed up.

Since 2008, research centers, government agencies, and companies have hired KZN to build the systems their operations run on: a city’s enterprise service bus, two state pandemic responses, a commerce platform still selling today. Every system is handed to your own team, trained, with the runbook written. AI is how we build now, and we rebuilt our own firm on it first.

Thirty minutes, no deck, and a straight answer on whether it is worth building. Or start with the work: every system on that page went into production and stayed there.

  • Penn State
  • UC Santa Barbara
  • Autodesk
  • Quorum
  • Booz Allen

Delivered under emergency conditions, for state and city government

750K
people vaccinated through the scheduling system we built for Maryland.
45M
text messages sent and received for two state health departments during contact tracing.
1M
vaccination appointments scheduled, at ten thousand a day when it peaked.
9 years
continuous delivery for a city public works department, without a gap.

01

What we build

Whatever we build, it has to run without us.

That is the one thing the three lanes below have in common. Systems you own outright, AI implementation that takes work off your people, and two products we host and run. Different contracts, different risks, one definition of done: it is in production, it survived review, and your own team can operate it.

Buying for a particular kind of organization?

Companies Research centers Government

02

Selected work

Systems that are still running.

See all our work

03

The firm

Who actually does the work?

A senior practitioner on every engagement, start to finish. No bench, and no handoff to a delivery team you have not met. The person who scopes your work is the person who builds it, and the same person is in the room when it goes to review.

Every engagement ends
Every engagement has a defined end, and your team is trained and the runbook written before it arrives. A system nobody on staff can change is a system that quietly stops being used, so handover is part of the build rather than the last thing on the plan. We do not need a retainer to keep what we built alive.
Nearly two decades before the AI part
More than ten years inside National Science Foundation research programs, a decade and counting with a city public works department, prime contractor on two state pandemic responses. And on the commercial side, a travel insurance platform we architected from nothing that still sells in eight countries, plus two startups: one whose product we built from scratch and took through its own SOC 2, one we advised through the growth that broke its architecture.
We have sat on both sides of the audit
We have been through SOC 2 Type II ourselves, and this year we took a client through their SOC 2 Type 2: the penetration testing, and the evidence responses to the auditors on operational, configuration, and vendor controls. They got their report. We have built and run HIPAA infrastructure holding live patient records for a state health department, and FERPA-covered case management for a public school system. We build everything to that bar, including for clients who have no auditor to answer to, because it is the difference between a demo and a system.

The oldest thing we built is sixteen years old.

A case management system for a public school system, built in 2010 and running under FERPA, still in service as far as we know. The one after it, a travel insurance commerce platform from 2012, is definitely still selling: eight countries, five currencies, three continents. And the oldest system we still operate ourselves is a decade-old service bus for a city department. Anyone can ship something that demos. Keeping it alive while every administration, dependency and vendor underneath it changes is a different skill, and it is the one this firm is built around.

04

AI implementation

AI that reaches production.

The hard part of AI was never the model: it is review, permissions, and handover, and that is the part we have done for nearly two decades. We proved it on this firm first.

Thirteen scheduled jobs run this firm
The briefings, the invoicing, the inbox triage, the meeting record: one agent runs them all, and each job loads its own playbook when it fires.
Agents in production at clients
A capability finder runs at a federally funded research program, and a proposal advisor at a university research office, each answering from the client’s own documents.
Two weeks, $12,000, in writing
Bring up to three workflows, or one pilot that has not shipped, and either review ends in a written document with no obligation to build.
See the AI implementation practice

06

Common questions

What happens in a Production Readiness Review?

Two weeks. We read the code, talk to the people who built it and the people who have to approve it, and put your pilot through the review it will eventually face. You get a written verdict of ship, fix, or stop, with the blocking issues named and costed. It takes about four hours of your team's time and carries no obligation to do anything afterwards.

How long does a build take?

A build runs six to eight weeks from brief to a working system in your environment. Larger builds run three to six months. We do not run open-ended engagements, and we do not need a retainer to keep what we built alive.

Can you fix an AI pilot we already started?

Often, yes. A stalled pilot usually fails on data access, review readiness, or ownership rather than on the model. The Production Readiness Review finds out which one it is, names what it takes to close, and prices it. Ship, fix and stop are all real verdicts.

Do we need to be doing AI already?

No. Most of what we build replaces work people currently do by hand, and plenty of our clients had no pilot and no shortlist when they called. That is what the AI Workflow Review is for: bring two or three workflows and we will tell you what each would cost to build, what it would save, and which one to do first.

Do we have to be a research center or a government agency?

No. We work with any organization trying to get AI into real use, and plenty of that work has nothing attached to it at all. Where a project does carry HIPAA or a state security review, that is the same build under harder conditions. You get the same standard either way.

Can you work with our regulated data?

We have designed and run HIPAA-compliant infrastructure holding live patient records for a state health department, on hardened AWS with unified security logging and single sign-on, and passed the state's security review to do it. We have also run FERPA-covered case management for a public school system. We build to that bar for every client, including the ones with no auditor to answer to, because it is the difference between a demo and a system.

Are you SOC 2 certified?

We hold a SOC 2 Type II report from Prescient Assurance dated 2024, and we are happy to send it to you. The practice behind it is current: we run HIPAA-compliant infrastructure holding live patient records today, hardened to CIS Level 1, and earlier this year we took a client through their own SOC 2 Type 2, running the penetration testing and answering the auditors directly on operational, configuration, and vendor-assessment controls. They passed. We renew our own attestation when an engagement calls for it rather than on a calendar, so tell us on the first call if your procurement needs a current one and we will tell you straight away what that takes.

Can you be bought on a contract vehicle we already have?

We hold Maryland CATS+ across all ten functional areas and we are registered in SAM.gov, both current. For a research center the work is usually funded straight from the grant, which avoids institutional procurement entirely. On SOC 2, see the answer above.

How big is your team?

Small, deliberately. Three senior people, a bench of fractional senior specialists we bring in per engagement, and the agent stack that runs our own operations. Nobody junior is looking for something to do on your budget. Every engagement is scoped against one workflow, priced as a fixed fee, and has a defined end.

Do you write AI strategy documents?

We build the systems a strategy document would describe. If what you need first is the list of which systems are worth building, in what order, that is the AI Workflow Review, and it comes with prices attached.

What does it cost?

Both reviews are $12,000, fixed, for two weeks. Neither is credited against later work. Builds are fixed-fee and scoped against one workflow, so you know the number before anyone starts, and we will give you a range on the first call rather than after three meetings.

Bring us one workflow that is costing you time.

Thirty minutes, no deck. You will leave the call knowing whether it is worth building, roughly what it would cost, and how long it would take.

Book a 30-minute scoping call