Shortlist
Company finder
Find a company that fits your requirements. Choose a location, capabilities, and credentials to narrow down your shortlist.
Refine your search
- Aikido Security
Developer-focused application and cloud security scanning.
- Aqua Security500–999
Cloud-native application protection from code to runtime.
- Atlant Security1–49 people
Founder-led pentest, vCISO, and compliance consulting.
- Bishop Fox250–499
Offensive security consultancy and Cosmos continuous pentest.
- Char49
Security research and penetration testing.
- Cloudflare1,000+
CDN, WAF, Zero Trust, and bot management on a global edge.
- cloudsineAI
Web application and generative AI security.
- Conviso
Application security management and secure development services.
- CyStack
Security testing and vulnerability management.
- Detectify
Attack surface monitoring and web application security testing.
- Feroot Security
Client-side web security and payment page monitoring.
- Fluid Attacks
Continuous application security testing.
- GitGuardian50–249
Secrets detection in git, tickets, and production.
- GMO Cybersecurity by Ierae
Penetration testing and vulnerability assessment.
- Hacken
Blockchain security audits and testing.
- Intigriti
Bug bounty programs and crowdsourced security testing.
- Jscrambler
Client-side JavaScript protection and payment page monitoring.
- Kasada
Bot mitigation for websites and APIs.
- Kratikal
Penetration testing and security compliance services.
- Lakera50–249
Guardrails for LLM applications in production.
- NCC Group1,000+
Global pentest, research, and cyber resilience consultancy.
- Nethemba
Penetration testing and security audits.
- Offensive Security250–499
OSCP, Kali Linux, and hands-on offensive training.
- Penta Security
Web application protection and database encryption.
- Pentest-Tools.com
Online penetration testing and vulnerability scanning tools.
- Pradeo
Mobile threat defense and application security.
- RedShield
Managed web application protection.
- SafeStack
Secure development training for software teams.
- Secuna
Penetration testing and vulnerability disclosure programs.
- Semgrep50–249
Open-source SAST and a commercial code security platform.
- Snyk1,000+
Developer-first SCA, SAST, and container security.
- Strike
Continuous penetration testing.
- Trail of Bits50–249
High-assurance security engineering, audits, and research.
- Wiz1,000+
Cloud security graph for code-to-cloud risk.
- Zerocopter
Coordinated vulnerability disclosure and ethical hacking.