DiSabatino LLC
Certified SDVOSB & VOSB · AI governance engineering for federal missions
Governed LLM systems on customer-controlled infrastructure. Model inventory, credential and budget enforcement, usage audit, and deterministic guardrails built to satisfy OMB M-25-22 and mapped to the NIST AI Risk Management Framework.
At a Glance
| Legal name | DiSabatino LLC (Wyoming LLC, foreign-registered in Utah) |
|---|---|
| UEI | PSTCJZ1E6X93 |
| CAGE | 21J49 |
| Socioeconomic | Certified SDVOSB and VOSB. SBA VetCert, July 2026 (renewal July 2029) |
| NAICS | 541512 (primary) · 541511 · 541519 · 518210 · 541715 |
| Business size | Small business |
| Location | Salt Lake City, UT · remote (full registered address in SAM.gov) |
| POC | Matt DiSabatino, Founder & Principal |
| [email protected] | |
| Phone | (925) 998-9808 |
| linkedin.com/in/matthew-disabatino-bb55532 | |
| SAM.gov | Public entity record (UEI PSTCJZ1E6X93) |
| SBA VetCert | search.certifications.sba.gov |
Capability Summary
DiSabatino LLC's principal designed, built, and operated, as sole engineer, a centralized, multi-provider AI model access gateway for a major research university (2025–2026): Anthropic, Google, and Mistral models routed through a single governed control plane on institution-operated Kubernetes, with API-credential lifecycle management, per-key budget enforcement, throughput controls, and a full usage audit trail. This is the operational core of enterprise AI governance: model inventory and AIBOM discipline, NIST AI RMF Govern/Manage functions, FinOps for AI consumption, and zero-trust API mediation.
Core Competencies
- Governed LLM gateway architecture Multi-provider routing, API-credential lifecycle, per-key budget enforcement, throughput control, and full usage audit (NIST AI RMF Govern/Manage; NIST 800-53 AC/AU/IA families).
- AI model inventory & AIBOM discipline Model/version pinning; commercial-model drift treated as a first-class governance event that triggers re-review.
- FinOps for AI Consumption and cost governance as a controlled, audited axis, not an afterthought.
- Deterministic enforcement A patent-pending cascade architecture that places a deterministic rules engine in authority over LLM output, with human-in-the-loop guardrails on any rights-impacting decision. An LLM is never the final authority.
- Language-invariant agent harness Native-language interaction over a single-audit deterministic rule layer: one audit covers every language. Rules are enforced once in a language-neutral protocol channel; the model converses in the user's language. Supports Title VI of the Civil Rights Act of 1964 and the Section 1557 meaningful-access obligation for veteran-facing services, both of which rest on statute and remain in full effect.
- Security & compliance operations at scale EDR fleet deployment, enterprise MFA, full-lifecycle vulnerability management, and cloud-credential governance mapped to NIST 800-53.
Acquisition Policy Alignment
- OMB M-25-22 (AI acquisition; solicitations issued on or after September 30, 2025) The memorandum's obligations are architectural, and the gateway enforces them: multi-provider routing against vendor lock-in, a no-train posture on government data evidenced by the usage audit trail, licensing and data boundaries kept structural by running on customer-operated infrastructure, and the components needed to operate and monitor the system remaining with the agency.
- OMB M-26-04 (LLM transparency; applies to any LLM an agency procures) The Minimum Threshold for LLM Transparency asks vendors for governance tools additive to base prompts, model evaluation across models, and visibility into output provenance. Those controls are the product: a versioned control plane, a calibrated multi-provider evaluation harness, and a dual-channel protocol carrying machine-readable state alongside every response.
- NIST AI RMF and NIST SP 800-53 The memoranda are what a contracting officer must satisfy; the frameworks are how we implement and audit it. Controls map to AI RMF Govern/Manage and the 800-53 AC/AU/IA families.
Differentiators
- Certified SDVOSB and VOSB (SBA VetCert) A certified service-disabled-veteran-owned small business focused specifically on federal AI governance engineering.
- U.S. patent application No. 64/080,982 (filed 2026) A deterministic cascade architecture placing a rules engine in authority over LLM output, with a dual-channel protocol carrying machine-readable state alongside natural-language generation.
- Sole architect of a production multi-provider LLM gateway At a major research university. The operational core of AI governance, built and run end to end.
- One audit, every language A language-invariant compliance architecture: rule-correctness is verified once, not re-certified per language.
- Principal 70% service-disabled U.S. Army veteran. CH-47 crew chief, Task Force Viking, Operation Iraqi Freedom (northern Iraq, 2003). CISSP (2022–2025), CompTIA Security+ (2019–2025).
Relevant Experience
No federal CPARS record yet; capability is grounded in directly relevant key-personnel experience, not prior contract performance.
- A production, multi-provider LLM governance gateway operated end to end at a major research university.
- Live deployments running the deterministic-enforcement harness, with per-exchange verdict logging and documented evaluation-scorer calibration.
- The company's first commercial title, an AI-driven narrative platform built on the patent-pending deterministic enforcement architecture, launching on Steam in late 2026.
Contact
Same content as this page, generated from the same source and kept in sync.