Developer docs
API playgroundTry for free, no card

Search company profiles

Exabeam

Full company profile

uuid00000la

Namestring
Exabeam
Legal namestring
Exabeam Inc.
Websiteurl
exabeam.com
Company typeenum
Private
Founded yearint
2013
Descriptiontext

Exabeam is a private US-headquartered cybersecurity vendor specializing in security operations, founded in 2013 and currently owned by private equity firm Ponte Partners following its October 2025 acquisition. The company built its brand on pioneering machine-learning-based user and entity behavior analytics (UEBA) for insider threat and credential misuse detection, and has since expanded into a cloud-native Security Operations Platform delivered primarily on Google Cloud. Its flagship New-Scale Fusion combines New-Scale SIEM, New-Scale Analytics (UEBA plus the first-to-market Agent Behavior Analytics capability), Exabeam Nova (a team of six AI agents built on Google Gemini), Outcomes Navigator, and SOAR/Automation Management. The July 2024 merger with Thoma Bravo-backed LogRhythm added a self-hosted SIEM product and complementary on-premises customer base, with LogRhythm SIEM now sold exclusively under the Exabeam brand as an on-premises offering. Proprietary differentiators include a patented Session Data Model with open-ended correlation windows, patented detection grouping, and a content library of 7,000+ prebuilt parsers and 1,100+ correlation rules.

Exabeam serves enterprise security operations teams, MSSPs, and a broad set of verticals including financial services, government and defense, healthcare, higher education, and manufacturing. Customer logos include NASA, U.S. Air Force, MUFG, BRAC Bank, KIA, AsahiKasei, Under Armour, Dayforce, SiriusXM, and Resorts World Las Vegas, among 35+ named accounts. The company monetizes primarily through annual cloud-native subscriptions (New-Scale SIEM, New-Scale Analytics, New-Scale Fusion) on Google Cloud with usage-based EPS/ingestion pricing, complemented by LogRhythm SIEM (subscription or perpetual license under a True Unlimited Data Platform), professional services, training (including a Tuwaiq Academy partnership in Saudi Arabia), and a new MSSP pooled/federated licensing framework. Distribution combines direct enterprise field sales, the global APEX Partner Program, Google Cloud Marketplace, and regional channel partnerships in MENA, East Asia, and Africa. Exabeam has been recognized as a Leader in the Gartner Magic Quadrant for SIEM for six consecutive years through 2025, holds ISO 27001, SOC 2 Type II, IRAP Protected, and Privacy Shield certifications, and is led by CEO Pete Harteveld (appointed October 2025) with Steve Wilson as Chief AI and Product Officer.

Short descriptiontext

Exabeam is a US-based, PE-owned cybersecurity vendor that delivers a cloud-native security operations platform on Google Cloud, combining SIEM, UEBA, six AI agents (Exabeam Nova), and first-to-market Agent Behavior Analytics for AI agents, serving enterprise SOC teams, MSSPs, and government/regulated verticals globally.

Operating statusenum
Operating
Ownership categoryenum
Headcount rangeband
501–1,000
akta.pro rankint
HeadquartersFoster City, United States
HQ citystring
Foster City
HQ countrystring
United States
HQ regionstring
North America
Markets served

Serves global market

Offices2 records

Each record includes

City, Country, Type, Description, Source

Keyword5 values
security information event management, user entity behavior analytics, security orchestration automation response, cloud-native security operations, agent behavior analytics
Industry6 codes
1Access Security & Identity Threat Detection (ITDR, UEBA for Identity)
CodeHDADAAAIPrimaryYes
2Responsible AI, Security & Privacy Platforms (Safety, Guardrails, PII)
CodeHDAEANAGPrimaryNo
3AI Observability, Monitoring & Evaluation Platforms (Drift, Quality, Safety)
CodeHDAEANAFPrimaryNo
4Identity Threat Detection & Response (ITDR)
CodeHDAEAJAHPrimaryNo
5Identity, Access & Secrets Management for AI Systems (IAM for agents/models)
CodeHDAAAKAJPrimaryNo
6Identity & Access Management (IAM) Managed Services
CodeBPAEADAEPrimaryNo
NAICS code3 codes
  • Computer Systems Design and Related Services5415
  • Custom Computer Programming Services541511
  • Security Systems Services56162
SIC code1 code
  • Services-Computer Programming, Data Processing, Etc.7370
Product category
Security Operations Platform (SIEM / Security Analytics)
Social media profiles3 records
GTM motion4 records

Each record includes

Type, Description, Source

Revenue model5 records
1Cloud-native Subscription (New-Scale Fusion)
TypeSubscription Recurring
Description

Subscription-based cloud-native SIEM and behavioral analytics platform delivered on Google Cloud Platform, with flexible consumption-based elements tied to data ingestion and EPS volumes.

exabeam.com
2LogRhythm SIEM Licensing
TypeOne Time License
Description

Available as subscription (software as a subscription) or perpetual license, using the True Unlimited Data Platform model with no tiers or hidden fees.

exabeam.com
3LogRhythm Intelligence Add-on
TypeSubscription Recurring
Description

Subscription add-on product to LogRhythm SIEM delivering AI/behavioral analytics via New-Scale Fusion in a hybrid deployment.

exabeam.com
4Professional Services and Training
TypeProfessional Services
Description

Professional services, education and training programs including instructor-led sessions, certification curricula, and authorized training centers (e.g., Tuwaiq Academy in Saudi Arabia).

exabeam.com
5MSSP Pooled License Program
TypeSubscription Recurring
Description

MSSP-specific commercial framework within APEX offering a single pooled license for high-volume multi-tenant environments with centralized management.

arnnet.com.au
Marketing channels10 records

Each record includes

Title, Type, Stage, Description, Source

Distribution channels6 records

Each record includes

Title, Type, Scope, Target buyer, Description, Source

Cost components5 values
Personnel, Technology or R&D, Marketing or Sales, Infrastructure, Operations
Pricing details4 tiers
1LogRhythm SIEM: True Unlimited Data Platform pricing
ModelSubscriptionBilling cadenceAnnual
Notes

Available as subscription or perpetual license. No tiers, no hidden fees. Contact sales representative for details.

exabeam.com
2New-Scale SIEM: Quote-based cloud-native SIEM pricing
ModelUsage-basedBilling cadenceAnnual
Notes

Delivered on Google Cloud Platform with 99.5% uptime SLA. Pricing based on data ingestion/EPS, not publicly disclosed.

exabeam.com
3New-Scale Analytics: Quote-based behavioral analytics add-on
ModelSubscriptionBilling cadenceAnnual
Notes

Subscription pricing for augmenting existing SIEM. Not publicly disclosed.

exabeam.com
4MSSP Pooled License Framework
ModelSubscriptionBilling cadenceMulti-year contract
Notes

Single pooled license model for high-volume multi-tenant environments; federated model for regional/compliance needs. Designed for MSSPs within the APEX Partner Program.

arnnet.com.au
GTM typeB2B
B2B
Offering typeSoftware
Software
Brand1 of 9 records shown
1New-Scale Fusion
Description

Cloud-native security operations platform combining New-Scale SIEM and New-Scale Analytics with AI-driven TDIR workflows.

exabeam.com
+8 more records
Core offering1 text field

Exabeam sells a cloud-native security operations platform (New-Scale Fusion) that combines a SIEM (New-Scale SIEM), user-and-entity behavior analytics (New-Scale Analytics), AI agents (Exabeam Nova), and automation for threat detection, investigation, and response. It also offers the self-hosted LogRhythm SIEM (acquired in 2024), the LogRhythm Intelligence UEBA add-on, the NetMon network sensor, and the open-source Praxen tool for AI agent behavior verification, sold primarily to enterprise security operations teams and delivered via subscription, perpetual license, or professional services.

Differentiator
Functional benefit
Problem solved
Quantifiable outcome1 of 11 values shown
  • 5x SOC productivity through AI-driven TDIR
+10 more records
Product overview1 text field

Exabeam offers a platform-plus-modules security operations architecture rather than a single monolithic product. The flagship is the cloud-native New-Scale Fusion Security Operations Platform, which combines New-Scale SIEM (cloud-native log management, search, correlation, and Threat Center workbench) and New-Scale Analytics (UEBA, dynamic risk scoring, and Agent Behavior Analytics for AI agents) under a unified AI-driven experience. Layered on top of New-Scale Fusion is Exabeam Nova, a team of six AI agents (Investigation, Advisor, Search, Visualization, Analyst Assistant, Threat Scoring) built on Google Gemini within Google Cloud Platform, and Outcomes Navigator, which provides coverage benchmarking, AI Agent Security readiness, and detection engineering guidance. Customers can augment an existing SIEM (Splunk, Microsoft Sentinel, IBM QRadar) with New-Scale Analytics or replace it entirely. Following the July 2024 merger with LogRhythm (Thoma Bravo-backed), Exabeam also offers the self-hosted LogRhythm SIEM and the LogRhythm Intelligence UEBA add-on. Capabilities such as TDIR, UEBA, SOAR (Automation Management), Insider Threats, Compliance, and the new Agent Behavior Analytics (ABA) span both the cloud-native New-Scale and self-hosted LogRhythm deployments. NetMon provides network traffic visibility into either SIEM, and the company released Praxen as an open-source tool for AI agent behaviour verification.

Product and service9 records
1New-Scale Fusion Security Operations Platform
CategorySecurity Operations Platform (core platform)
Description

Cloud-native Security Operations Platform that combines New-Scale SIEM and New-Scale Analytics, applying AI and automation to detect, investigate, and respond to threats faster for enterprise SOC teams. Built on Google Cloud Platform with ISO 27001, SOC 2 Type II, and IRAP Protected certifications.

2New-Scale SIEM
CategorySIEM (cloud-native)
Description

Cloud-native SIEM built on New-Scale Fusion providing high-performance search across terabytes of data, fast ingestion (2M+ EPS), 7,000+ prebuilt parsers, correlation rule authoring, Threat Intelligence Service, Threat Center workbench, and Outcomes Navigator integration. Sold to enterprise security teams.

3New-Scale Analytics
CategoryBehavioral Analytics (UEBA/ABA layer)
Description

Machine-learned behavioral analytics and automation layer that augments an existing SIEM (Splunk, Microsoft Sentinel, IBM QRadar) or runs within New-Scale SIEM, providing UEBA for users, Agent Behavior Analytics for AI agents, dynamic baselines, and Exabeam Nova agent support.

4Exabeam Nova
CategoryAI Agent Framework for Security Operations
Description

AI agent framework built on Google Gemini within Google Cloud Platform comprising six integrated agents (Investigation, Advisor, Search, Visualization, Analyst Assistant, Threat Scoring) that automate triage, summarize cases, classify threats, recommend next steps, and support human-agent teaming for SOC analysts.

5Outcomes Navigator
CategorySecurity Outcomes and Posture Management
Description

Industry-first solution within New-Scale Fusion for measuring and improving real security outcomes through coverage mapping to use cases, MITRE ATT&CK, and compliance frameworks; AI Agent Security readiness assessment; peer benchmarking; and detection engineering guidance powered by the Nova Advisor Agent.

6LogRhythm SIEM
CategorySelf-Hosted SIEM (post-merger acquired product)
Description

Self-hosted (on-premises or customer-managed cloud) SIEM offering with Machine Data Intelligence Fabric, 1,100+ out-of-the-box correlation rules mapped to MITRE ATT&CK and compliance mandates (PCI DSS, NIST CSF, NIST 800-53/171, CIS Controls, COBIT), embedded SOAR via SmartResponse, and optional LogRhythm Intelligence UEBA add-on. Available as subscription or perpetual license.

7LogRhythm Intelligence
CategoryUEBA Add-on for LogRhythm SIEM
Description

AI and behavioral analytics add-on to LogRhythm SIEM delivered through New-Scale Fusion. Applies Exabeam UEBA models to LogRhythm SIEM data to detect insider threats, credential misuse, privilege abuse, and identity-driven attacks, with Exabeam Nova summarization integrated into the analyst workflow.

8NetMon
CategoryNetwork Detection and Visibility
Description

Network traffic monitoring product offering real-time visibility into New-Scale or LogRhythm SIEM deployments via True Application Identification across ~4,700+ apps, 10Gb/s inspection, Deep Packet Analytics (DPA), SmartCapture session capture, and PCAP-based forensics integration.

9Praxen
CategoryOpen-Source AI Agent Security Tool
Description

Open-source tool released under Apache 2.0 license for verifying AI agent behavior before deployment, introducing Agent Behaviour Verification as a new security approach that examines whether an AI agent's configured role, permissions, and controls match its intended tasks.

Scale indicator15 records

Each record includes

Type, Value, Description, Source

Partnership12 partners
Strategic tierMajorTypeImplementation/ SI/ Consulting PartnerAnnounced on2026-06-17
Description

LogRhythm | Exabeam partnered with Tuwaiq Academy to deliver cybersecurity certification programs, training bootcamps, and professional development courses across Saudi Arabia, targeting over 40,000 students at nine major universities. Tuwaiq Academy designated as the first authorized LogRhythm | Exabeam training centre in the Middle East.

Strategic tierFlagshipTypeTechnology or IntegrationAnnounced on2026-04-22
Description

Strategic partnership integrating Exabeam Agent Behavior Analytics with Google Cloud's Agent Development Kit and Google Agent Gateway for multi-agent workflows. Exabeam also awarded Google Cloud Security Partner of the Year 2026 - Analytics & Operations.

Strategic tierMajorTypeChannel Partner/ Reseller/ DistributorAnnounced on2025-12-01
Description

Strategic partnership with Saudi Arabian systems integrator to launch Customer Innovation Center in Riyadh and jointly offer SIEM and security operations platform solutions to Saudi-based organizations. Aligned with Saudi Vision 2030 objectives.

Strategic tierMinorTypeChannel Partner/ Reseller/ DistributorAnnounced on2025-11-21
Description

Virtual Infosec Africa announced a partnership with Exabeam to introduce AI-powered threat detection and modern SIEM capabilities to Ghanaian businesses via a cybersecurity event in Accra on 25 November 2025.

Strategic tierFlagshipTypeTechnology or IntegrationAnnounced on2025-11-18
Description

Strategic partnership to integrate Recorded Future's threat intelligence with Exabeam's platform for enhanced threat detection and response. Enables real-time threat intelligence enrichment, automation of response actions, and improved investigation efficiency.

Strategic tierMajorTypeTechnology or IntegrationAnnounced on2025-11-11
Description

South Korean cybersecurity firm S2W announced a strategic partnership to integrate its proprietary threat intelligence technology into Exabeam's New-Scale Security Operations Platform. Marks S2W's first overseas corporate collaboration following its IPO.

Strategic tierMajorTypeTechnology or IntegrationAnnounced on2025-01-01
Description

Strategic partnership to extend behavioral detections and insider risk capabilities via Cribl's data routing and observability pipeline technology.

Strategic tierMajorTypeTechnology or IntegrationAnnounced on2025-01-01
Description

Strategic partnership to extend behavioral detections and insider risk capabilities via DataBahn's data management technology.

Strategic tierFlagshipTypeStrategic or Co-development PartnerAnnounced on2024-07-18
Description

Exabeam and Thoma Bravo-backed LogRhythm completed their merger on July 18, 2024, combining AI-driven security operations. The merged company retains the Exabeam name while incorporating LogRhythm's data ingestion capabilities. LogRhythm SIEM is now exclusively available as an on-premises solution under Exabeam.

Strategic tierMajorTypeTechnology or Integration
Description

Exabeam's New-Scale Analytics integrates with Splunk and other SIEMs (Microsoft Sentinel, IBM QRadar) via prebuilt integrations, enabling behavioral analytics deployment on top of customers' existing Splunk investment.

Strategic tierMajorTypeTechnology or Integration
Description

Exabeam integrates with Microsoft Sentinel via prebuilt integrations and supports federated search across Sentinel deployments. Customers can keep their Sentinel SIEM and add Exabeam behavioral analytics.

Strategic tierMajorTypeTechnology or Integration
Description

Exabeam integrates with IBM QRadar via prebuilt integrations and supports data ingestion from QRadar, enabling behavioral analytics augmentation for QRadar deployments.

Recent move8 records

Each record includes

Date, Type, Title, Description, Source

Expansion highlight8 records

Each record includes

Type, Description

Peers10 records
TypeDirect peer
Description

Sumo Logic is a cloud-native log management and security analytics platform competing with Exabeam's New-Scale SIEM on ingestion scale, federated search, and SIEM-as-a-service for cloud-forward enterprises.

TypeDirect peer
Description

Splunk (now owned by Cisco) is the leading enterprise SIEM and observability platform and the most direct competitor to Exabeam's New-Scale SIEM. The two compete head-to-head on cloud-native log management, behavioral analytics, and SOC workflows; Exabeam's New-Scale Analytics even integrates with Splunk as an augmentation layer.

TypeDirect peer
Description

Microsoft Sentinel is a cloud-native SIEM built on Azure that competes directly with Exabeam's New-Scale SIEM. Sentinel benefits from deep integration with the Microsoft security ecosystem and aggressive bundling, putting sustained pricing pressure on cloud-native SIEM evaluations.

TypeDirect peer
Description

IBM QRadar is a longstanding enterprise SIEM that overlaps directly with Exabeam's self-hosted LogRhythm SIEM offering and competes in regulated, on-premises deployments. Exabeam's New-Scale Analytics can be deployed as an augmentation layer on top of QRadar, making them both partners and competitors.

TypeDirect peer
Description

Securonix is a cloud-native SIEM built around UEBA that competes with Exabeam's New-Scale SIEM and New-Scale Analytics in enterprise SOC deployments. Both vendors pioneered ML-driven UEBA and target the same Fortune 500 and MSSP buyers.

TypeDirect peer
Description

Rapid7 offers InsightIDR, a SIEM/XDR platform with behavioral analytics, that competes with Exabeam's TDIR and UEBA capabilities for mid-market and enterprise SOC buyers. Both target security teams seeking integrated detection, investigation, and response.

TypeDirect peer
Description

Devo Technology operates a cloud-native security analytics platform that directly competes with Exabeam's New-Scale SIEM, with overlapping emphasis on high-EPS ingestion, behavioral analytics, and SOC productivity.

TypeBroad incumbent
Description

CrowdStrike's Falcon platform extends from endpoint detection into SIEM-adjacent log search and SOC workflows (Falcon LogScale, Falcon Next-Gen SIEM), making it a broader incumbent competing with Exabeam for SOC budget, particularly in endpoint-led accounts.

TypeBroad incumbent
Description

Palo Alto Networks offers XSIAM, a SIEM/XDR platform that competes with Exabeam's New-Scale Fusion as part of a much broader security portfolio. XSIAM bundles data lake, EDR, and SOC automation, increasing competition for large enterprise platform consolidation deals.

TypeEmerging player
Description

Arctic Wolf is an MDR-first provider with its own SIEM/data lake that competes with Exabeam in the mid-market and MSSP segment. It is comparable as a SOC-outsourced alternative to deploying Exabeam's New-Scale Fusion directly, particularly for buyers preferring managed outcomes over platform ownership.

Market position
Strengths5 records

Each record includes

Headline, Details, Source

Weaknesses5 records

Each record includes

Headline, Details, Source

Competitive moat5 records

Each record includes

Type, Details

Key risks6 records

Each record includes

Headline, Details, Source

Key highlights7 records

Each record includes

Headline, Details, Source

Customer concentration

Classification, Details

Named customers37 records

Each record includes

Name, Industry, Type, Use case, Source, UUID

Segment8 records

Each record includes

Title, Type, Primary, Description, Pain point addressed, Use case, Source

Ideal customer profile3 records

Each record includes

Profile, Firmographic size, Sales motion, Sales cycle length, Buying structure, Purchase trigger, Buyer persona, Geography, Industry vertical, Primary use case, Description, Pain points, Evidence proof points, Target buyer

Technology focused
Yes
API detail
Has APIbool
Yes

Docs URL, Description

Integration18 records

Each record includes

Title, Type, Description, Source

AI capability12 records

Each record includes

Type, Description, Source

AI maturity
App detail

Has app

Feature8 records

Each record includes

Title, Differentiator, Description, Source

Core technology
Revenue estimate
Valuation estimate
Number of profiles
Profiles18 records

Each record includes

Name, Designation, Designation category, Overview, Profile commentary, Source

Subsidiaries1 record

Each record includes

Name, Acquired on, Relationship type, Type, Business focus

Compliance11 records

Each record includes

Name, Class, Description

Funding overview

Funding stage, Last funding date, Total funding USD

Funding rounds8 records

Each record includes

Round, Amount USD, Date, Pre money valuation, Total investors, Investors, News

Investors16 records

Each record includes

Name, Type, Date of entry, Rounds participated, Website

Funding detail is available on the Subscription and Enterprise plan.Contact sales →

M&A2 records

Each record includes

Name, Acquisition type, Announced date, Completed date, Status, Website, News

Investment

Each record includes

Name, Round, Announced date, Lead investor, Website, News

M&A and investment is available on the Subscription and Enterprise plan.Contact sales →

Exabeam

Security Operations Platform (SIEM / Security Analytics)exabeam.com

Exabeam is a US-based, PE-owned cybersecurity vendor that delivers a cloud-native security operations platform on Google Cloud, combining SIEM, UEBA, six AI agents (Exabeam Nova), and first-to-market Agent Behavior Analytics for AI agents, serving enterprise SOC teams, MSSPs, and government/regulated verticals globally.

What Exabeam does

Exabeam is a private US-headquartered cybersecurity vendor specializing in security operations, founded in 2013 and currently owned by private equity firm Ponte Partners following its October 2025 acquisition. The company built its brand on pioneering machine-learning-based user and entity behavior analytics (UEBA) for insider threat and credential misuse detection, and has since expanded into a cloud-native Security Operations Platform delivered primarily on Google Cloud. Its flagship New-Scale Fusion combines New-Scale SIEM, New-Scale Analytics (UEBA plus the first-to-market Agent Behavior Analytics capability), Exabeam Nova (a team of six AI agents built on Google Gemini), Outcomes Navigator, and SOAR/Automation Management. The July 2024 merger with Thoma Bravo-backed LogRhythm added a self-hosted SIEM product and complementary on-premises customer base, with LogRhythm SIEM now sold exclusively under the Exabeam brand as an on-premises offering. Proprietary differentiators include a patented Session Data Model with open-ended correlation windows, patented detection grouping, and a content library of 7,000+ prebuilt parsers and 1,100+ correlation rules.

Exabeam serves enterprise security operations teams, MSSPs, and a broad set of verticals including financial services, government and defense, healthcare, higher education, and manufacturing. Customer logos include NASA, U.S. Air Force, MUFG, BRAC Bank, KIA, AsahiKasei, Under Armour, Dayforce, SiriusXM, and Resorts World Las Vegas, among 35+ named accounts. The company monetizes primarily through annual cloud-native subscriptions (New-Scale SIEM, New-Scale Analytics, New-Scale Fusion) on Google Cloud with usage-based EPS/ingestion pricing, complemented by LogRhythm SIEM (subscription or perpetual license under a True Unlimited Data Platform), professional services, training (including a Tuwaiq Academy partnership in Saudi Arabia), and a new MSSP pooled/federated licensing framework. Distribution combines direct enterprise field sales, the global APEX Partner Program, Google Cloud Marketplace, and regional channel partnerships in MENA, East Asia, and Africa. Exabeam has been recognized as a Leader in the Gartner Magic Quadrant for SIEM for six consecutive years through 2025, holds ISO 27001, SOC 2 Type II, IRAP Protected, and Privacy Shield certifications, and is led by CEO Pete Harteveld (appointed October 2025) with Steve Wilson as Chief AI and Product Officer.

Exabeam firmographics

Firmographics
Name
Exabeam
Legal name
Exabeam Inc.
Website
https://exabeam.com
Company type
Private
Founded year
2013
Operating status
Operating
Headcount range
501–1,000 employees
Short description
Exabeam is a US-based, PE-owned cybersecurity vendor that delivers a cloud-native security operations platform on Google Cloud, combining SIEM, UEBA, six AI agents (Exabeam Nova), and first-to-market Agent Behavior Analytics for AI agents, serving enterprise SOC teams, MSSPs, and government/regulated verticals globally.
Ownership category
akta.pro rank

Exabeam industry classification

Industry
Product category
Security Operations Platform (SIEM / Security Analytics)
NAICS
Computer Systems Design and Related Services (5415), Custom Computer Programming Services (541511), Security Systems Services (56162)
SIC
Services-Computer Programming, Data Processing, Etc. (7370)
akta.pro primary industry
Access Security & Identity Threat Detection (ITDR, UEBA for Identity) (HDADAAAI)
akta.pro secondary industries
Responsible AI, Security & Privacy Platforms (Safety, Guardrails, PII) (HDAEANAG), AI Observability, Monitoring & Evaluation Platforms (Drift, Quality, Safety) (HDAEANAF), Identity Threat Detection & Response (ITDR) (HDAEAJAH), Identity, Access & Secrets Management for AI Systems (IAM for agents/models) (HDAAAKAJ), Identity & Access Management (IAM) Managed Services (BPAEADAE)

Keywords

  • Security information event management
  • User entity behavior analytics
  • Security orchestration automation response
  • Cloud-native security operations
  • Agent behavior analytics

Where Exabeam is headquartered

Location

Headquarters

HQ city
Foster City
HQ country
United States
HQ region
North America

Offices2 records

Markets served

Exabeam business model

Business model
GTM type
B2B
Offering type
Software
Cost components
Personnel, Technology or R&D, Marketing or Sales, Infrastructure, Operations

Revenue model

  1. Cloud-native Subscription (New-Scale Fusion): Subscription-based cloud-native SIEM and behavioral analytics platform delivered on Google Cloud Platform, with flexible consumption-based elements tied to data ingestion and EPS volumes.
  2. LogRhythm SIEM Licensing: Available as subscription (software as a subscription) or perpetual license, using the True Unlimited Data Platform model with no tiers or hidden fees.
  3. LogRhythm Intelligence Add-on: Subscription add-on product to LogRhythm SIEM delivering AI/behavioral analytics via New-Scale Fusion in a hybrid deployment.
  4. Professional Services and Training: Professional services, education and training programs including instructor-led sessions, certification curricula, and authorized training centers (e.g., Tuwaiq Academy in Saudi Arabia).
  5. MSSP Pooled License Program: MSSP-specific commercial framework within APEX offering a single pooled license for high-volume multi-tenant environments with centralized management.

Pricing tiers

ModelBillingPrice
SubscriptionAnnualLogRhythm SIEM: True Unlimited Data Platform pricing
Usage-basedAnnualNew-Scale SIEM: Quote-based cloud-native SIEM pricing
SubscriptionAnnualNew-Scale Analytics: Quote-based behavioral analytics add-on
SubscriptionMulti-year contractMSSP Pooled License Framework

Go-to-market motion4 records

Distribution channels6 records

Marketing channels10 records

Exabeam product offering

Product offering

Core offering

Exabeam sells a cloud-native security operations platform (New-Scale Fusion) that combines a SIEM (New-Scale SIEM), user-and-entity behavior analytics (New-Scale Analytics), AI agents (Exabeam Nova), and automation for threat detection, investigation, and response. It also offers the self-hosted LogRhythm SIEM (acquired in 2024), the LogRhythm Intelligence UEBA add-on, the NetMon network sensor, and the open-source Praxen tool for AI agent behavior verification, sold primarily to enterprise security operations teams and delivered via subscription, perpetual license, or professional services.

Product overview

Exabeam offers a platform-plus-modules security operations architecture rather than a single monolithic product. The flagship is the cloud-native New-Scale Fusion Security Operations Platform, which combines New-Scale SIEM (cloud-native log management, search, correlation, and Threat Center workbench) and New-Scale Analytics (UEBA, dynamic risk scoring, and Agent Behavior Analytics for AI agents) under a unified AI-driven experience. Layered on top of New-Scale Fusion is Exabeam Nova, a team of six AI agents (Investigation, Advisor, Search, Visualization, Analyst Assistant, Threat Scoring) built on Google Gemini within Google Cloud Platform, and Outcomes Navigator, which provides coverage benchmarking, AI Agent Security readiness, and detection engineering guidance. Customers can augment an existing SIEM (Splunk, Microsoft Sentinel, IBM QRadar) with New-Scale Analytics or replace it entirely. Following the July 2024 merger with LogRhythm (Thoma Bravo-backed), Exabeam also offers the self-hosted LogRhythm SIEM and the LogRhythm Intelligence UEBA add-on. Capabilities such as TDIR, UEBA, SOAR (Automation Management), Insider Threats, Compliance, and the new Agent Behavior Analytics (ABA) span both the cloud-native New-Scale and self-hosted LogRhythm deployments. NetMon provides network traffic visibility into either SIEM, and the company released Praxen as an open-source tool for AI agent behaviour verification.

Differentiator

Problem solved

Functional benefit

Brands

  • New-Scale Fusion: Cloud-native security operations platform combining New-Scale SIEM and New-Scale Analytics with AI-driven TDIR workflows.
  • New-Scale SIEM
  • New-Scale Analytics
  • Exabeam Nova
  • Outcomes Navigator
  • NetMon
  • LogRhythm SIEM
  • LogRhythm Intelligence
  • Praxen

Products and services

  • New-Scale Fusion Security Operations Platform Cloud-native Security Operations Platform that combines New-Scale SIEM and New-Scale Analytics, applying AI and automation to detect, investigate, and respond to threats faster for enterprise SOC teams. Built on Google Cloud Platform with ISO 27001, SOC 2 Type II, and IRAP Protected certifications.
  • New-Scale SIEM Cloud-native SIEM built on New-Scale Fusion providing high-performance search across terabytes of data, fast ingestion (2M+ EPS), 7,000+ prebuilt parsers, correlation rule authoring, Threat Intelligence Service, Threat Center workbench, and Outcomes Navigator integration. Sold to enterprise security teams.
  • New-Scale Analytics Machine-learned behavioral analytics and automation layer that augments an existing SIEM (Splunk, Microsoft Sentinel, IBM QRadar) or runs within New-Scale SIEM, providing UEBA for users, Agent Behavior Analytics for AI agents, dynamic baselines, and Exabeam Nova agent support.
  • Exabeam Nova AI agent framework built on Google Gemini within Google Cloud Platform comprising six integrated agents (Investigation, Advisor, Search, Visualization, Analyst Assistant, Threat Scoring) that automate triage, summarize cases, classify threats, recommend next steps, and support human-agent teaming for SOC analysts.
  • Outcomes Navigator Industry-first solution within New-Scale Fusion for measuring and improving real security outcomes through coverage mapping to use cases, MITRE ATT&CK, and compliance frameworks; AI Agent Security readiness assessment; peer benchmarking; and detection engineering guidance powered by the Nova Advisor Agent.
  • LogRhythm SIEM Self-hosted (on-premises or customer-managed cloud) SIEM offering with Machine Data Intelligence Fabric, 1,100+ out-of-the-box correlation rules mapped to MITRE ATT&CK and compliance mandates (PCI DSS, NIST CSF, NIST 800-53/171, CIS Controls, COBIT), embedded SOAR via SmartResponse, and optional LogRhythm Intelligence UEBA add-on. Available as subscription or perpetual license.
  • LogRhythm Intelligence AI and behavioral analytics add-on to LogRhythm SIEM delivered through New-Scale Fusion. Applies Exabeam UEBA models to LogRhythm SIEM data to detect insider threats, credential misuse, privilege abuse, and identity-driven attacks, with Exabeam Nova summarization integrated into the analyst workflow.
  • NetMon Network traffic monitoring product offering real-time visibility into New-Scale or LogRhythm SIEM deployments via True Application Identification across ~4,700+ apps, 10Gb/s inspection, Deep Packet Analytics (DPA), SmartCapture session capture, and PCAP-based forensics integration.
  • Praxen Open-source tool released under Apache 2.0 license for verifying AI agent behavior before deployment, introducing Agent Behaviour Verification as a new security approach that examines whether an AI agent's configured role, permissions, and controls match its intended tasks.

Quantifiable outcome

  • 5x SOC productivity through AI-driven TDIR
  • +10 more outcomes

Companies that use Exabeam

Customer profile

Named customers37 records

Segments8 records

Ideal customer profiles3 records

Exabeam technology and API

Technology

Technology focussed Yes

API detail

Has API
Yes
API docs
API detail

Core technology

AI maturity

App detail

Integration18 records

AI capability12 records

Feature8 records

Exabeam partnerships and signals

Strategic signal

Partnerships

Twelve partnerships are on record, tiered major, flagship and minor.

  • Tuwaiq AcademymajorImplementation/ SI/ Consulting Partner · 17 June 2026LogRhythm | Exabeam partnered with Tuwaiq Academy to deliver cybersecurity certification programs, training bootcamps, and professional development courses across Saudi Arabia, targeting over 40,000 students at nine major universities. Tuwaiq Academy designated as the first authorized LogRhythm | Exabeam training centre in the Middle East.
  • Google CloudflagshipTechnology or Integration · 22 April 2026Strategic partnership integrating Exabeam Agent Behavior Analytics with Google Cloud's Agent Development Kit and Google Agent Gateway for multi-agent workflows. Exabeam also awarded Google Cloud Security Partner of the Year 2026 - Analytics & Operations.
  • Al Moammar Information Systems Co. (MIS)majorChannel Partner/ Reseller/ Distributor · 1 December 2025Strategic partnership with Saudi Arabian systems integrator to launch Customer Innovation Center in Riyadh and jointly offer SIEM and security operations platform solutions to Saudi-based organizations. Aligned with Saudi Vision 2030 objectives.
  • Virtual Infosec AfricaminorChannel Partner/ Reseller/ Distributor · 21 November 2025Virtual Infosec Africa announced a partnership with Exabeam to introduce AI-powered threat detection and modern SIEM capabilities to Ghanaian businesses via a cybersecurity event in Accra on 25 November 2025.
  • Recorded FutureflagshipTechnology or Integration · 18 November 2025Strategic partnership to integrate Recorded Future's threat intelligence with Exabeam's platform for enhanced threat detection and response. Enables real-time threat intelligence enrichment, automation of response actions, and improved investigation efficiency.
  • S2WmajorTechnology or Integration · 11 November 2025South Korean cybersecurity firm S2W announced a strategic partnership to integrate its proprietary threat intelligence technology into Exabeam's New-Scale Security Operations Platform. Marks S2W's first overseas corporate collaboration following its IPO.
  • CriblmajorTechnology or Integration · 1 January 2025Strategic partnership to extend behavioral detections and insider risk capabilities via Cribl's data routing and observability pipeline technology.
  • DataBahnmajorTechnology or Integration · 1 January 2025Strategic partnership to extend behavioral detections and insider risk capabilities via DataBahn's data management technology.
  • LogRhythm (Thoma Bravo)flagshipStrategic or Co-development Partner · 18 July 2024Exabeam and Thoma Bravo-backed LogRhythm completed their merger on July 18, 2024, combining AI-driven security operations. The merged company retains the Exabeam name while incorporating LogRhythm's data ingestion capabilities. LogRhythm SIEM is now exclusively available as an on-premises solution under Exabeam.
  • SplunkmajorTechnology or IntegrationExabeam's New-Scale Analytics integrates with Splunk and other SIEMs (Microsoft Sentinel, IBM QRadar) via prebuilt integrations, enabling behavioral analytics deployment on top of customers' existing Splunk investment.
  • Microsoft SentinelmajorTechnology or IntegrationExabeam integrates with Microsoft Sentinel via prebuilt integrations and supports federated search across Sentinel deployments. Customers can keep their Sentinel SIEM and add Exabeam behavioral analytics.
  • IBM QRadarmajorTechnology or IntegrationExabeam integrates with IBM QRadar via prebuilt integrations and supports data ingestion from QRadar, enabling behavioral analytics augmentation for QRadar deployments.

Scale indicators15 records

Recent moves8 records

Expansion highlights8 records

Exabeam competitors and assessment

Company assessment

Direct peers

  • Sumo Logic: Sumo Logic is a cloud-native log management and security analytics platform competing with Exabeam's New-Scale SIEM on ingestion scale, federated search, and SIEM-as-a-service for cloud-forward enterprises.
  • Splunk: Splunk (now owned by Cisco) is the leading enterprise SIEM and observability platform and the most direct competitor to Exabeam's New-Scale SIEM. The two compete head-to-head on cloud-native log management, behavioral analytics, and SOC workflows; Exabeam's New-Scale Analytics even integrates with Splunk as an augmentation layer.
  • Microsoft Sentinel: Microsoft Sentinel is a cloud-native SIEM built on Azure that competes directly with Exabeam's New-Scale SIEM. Sentinel benefits from deep integration with the Microsoft security ecosystem and aggressive bundling, putting sustained pricing pressure on cloud-native SIEM evaluations.
  • IBM QRadar: IBM QRadar is a longstanding enterprise SIEM that overlaps directly with Exabeam's self-hosted LogRhythm SIEM offering and competes in regulated, on-premises deployments. Exabeam's New-Scale Analytics can be deployed as an augmentation layer on top of QRadar, making them both partners and competitors.
  • Securonix: Securonix is a cloud-native SIEM built around UEBA that competes with Exabeam's New-Scale SIEM and New-Scale Analytics in enterprise SOC deployments. Both vendors pioneered ML-driven UEBA and target the same Fortune 500 and MSSP buyers.
  • Rapid7: Rapid7 offers InsightIDR, a SIEM/XDR platform with behavioral analytics, that competes with Exabeam's TDIR and UEBA capabilities for mid-market and enterprise SOC buyers. Both target security teams seeking integrated detection, investigation, and response.
  • Devo Technology: Devo Technology operates a cloud-native security analytics platform that directly competes with Exabeam's New-Scale SIEM, with overlapping emphasis on high-EPS ingestion, behavioral analytics, and SOC productivity.

Broad incumbents

  • CrowdStrike: CrowdStrike's Falcon platform extends from endpoint detection into SIEM-adjacent log search and SOC workflows (Falcon LogScale, Falcon Next-Gen SIEM), making it a broader incumbent competing with Exabeam for SOC budget, particularly in endpoint-led accounts.
  • Palo Alto Networks: Palo Alto Networks offers XSIAM, a SIEM/XDR platform that competes with Exabeam's New-Scale Fusion as part of a much broader security portfolio. XSIAM bundles data lake, EDR, and SOC automation, increasing competition for large enterprise platform consolidation deals.

Emerging players

  • Arctic Wolf: Arctic Wolf is an MDR-first provider with its own SIEM/data lake that competes with Exabeam in the mid-market and MSSP segment. It is comparable as a SOC-outsourced alternative to deploying Exabeam's New-Scale Fusion directly, particularly for buyers preferring managed outcomes over platform ownership.

Market position

Strengths5 records

Weaknesses5 records

Competitive moat5 records

Key risks6 records

Key highlights7 records

Customer concentration

Exabeam social profiles

Digital presence

Exabeam compliance and trust

Trust signal

Compliance11 records

Exabeam financial estimates

Financial estimate

Revenue estimate

Valuation estimate

Exabeam leadership team

Management profile

Number of profiles

Profiles18 records

Exabeam subsidiaries and ownership

Company hierarchy

Subsidiaries1 record

Exabeam funding detail

Funding detail

Funding overview

Funding rounds8 records

Investors16 records

Funding detail is available on the Subscription and Enterprise plan.Contact sales →

Exabeam M&A and investment

M&A and investment

M&A2 records

Investments

M&A and investment is available on the Subscription and Enterprise plan.Contact sales →

Frequently asked questions about Exabeam

What does Exabeam do?

Exabeam sells a cloud-native security operations platform (New-Scale Fusion) that combines a SIEM (New-Scale SIEM), user-and-entity behavior analytics (New-Scale Analytics), AI agents (Exabeam Nova), and automation for threat detection, investigation, and response. It also offers the self-hosted LogRhythm SIEM (acquired in 2024), the LogRhythm Intelligence UEBA add-on, the NetMon network sensor, and the open-source Praxen tool for AI agent behavior verification, sold primarily to enterprise security operations teams and delivered via subscription, perpetual license, or professional services.

Is Exabeam a public or private company?

Exabeam is a private company. It is classified as private equity controlled and is currently operating.

When was Exabeam founded?

Exabeam was founded in 2013. It employs 501 to 1,000 people.

Where is Exabeam based?

Exabeam is headquartered in Foster City, United States, in the North America region.

How does Exabeam make money?

Five revenue lines are on record. Cloud-native Subscription (New-Scale Fusion) is the primary driver. The others are logRhythm SIEM Licensing, logRhythm Intelligence Add-on, professional Services and Training and MSSP Pooled License Program.

Who are Exabeam's main competitors?

Direct peers on record are Sumo Logic, Splunk, Microsoft Sentinel, IBM QRadar, Securonix, Rapid7 and Devo Technology. Broad incumbents are CrowdStrike and Palo Alto Networks. Arctic Wolf is listed as an emerging player.

Does Exabeam have an API?

Yes. Exabeam provides a Developer Portal that exposes a standards-based API (Open API Standard/OAS) for building third-party integrations and automations within the New-Scale Platform. The platform offers SDKs in multiple programming languages, an Open API Standard-compliant Developer Portal, and a no-code/low-code Playbook Designer for building integrations. APIs support use cases including log forwarding, ingestion from third-party SIEMs (Splunk, Microsoft Sentinel, IBM QRadar), automation of TDIR workflows, integration with ticketing/ITSM tools such as ServiceNow, STIX/TAXII threat intelligence ingestion, federated search across third-party storage, and embedding of Exabeam data into external agentic workflows via the Exabeam MCP Server. Access is documented at https://docs.exabeam.com/. Developer documentation is at docs.exabeam.com.

What industry is Exabeam in?

Exabeam's product category is Security Operations Platform (SIEM / Security Analytics). Its primary akta.pro industry code is HDADAAAI, Access Security & Identity Threat Detection (ITDR, UEBA for Identity), with a secondary code of HDAEANAG, Responsible AI, Security & Privacy Platforms (Safety, Guardrails, PII). Its NAICS code is 5415 and its SIC code is 7370.

Unlock the full company data

50 free credits on sign-up, no credit card required.

Contact sales
Live signals
iTWireThe Agentic SOC, Delivered: Exabeam Accelerates AI-Powered Security Operations to Machine SpeedExabeam introduced new Agentic SOC capabilities for cloud and on-premises environments, including Nova AI that triages cases in about 10 minutes, 30 times faster than human analysts. The platform also adds AI CLI agent plugins and on-premises LogRhythm SIEM with generative AI collectors. The company aims to keep analysts in control while accelerating investigation.SecuritybriefExabeam adds AI tools for agentic security operationsExabeam introduced AI tools for its security operations products, including Nova AI as a persistent investigator and plugins for Claude and Codex. Nova AI triaged an average case in about 10 minutes versus five hours for a human analyst. The company also updated LogRhythm SIEM for on-premises environments.Help Net SecurityExabeam brings AI-assisted security investigations to data that must stay on-premisesExabeam introduced new AI-assisted security capabilities for cloud and on-premises environments, including Nova AI that triages cases in about 10 minutes and plugins for AI CLI agents. The company also updated LogRhythm SIEM with generative AI collectors and a local MCP server for on-premises data.ChannelE2EExabeam channel partners drive significant sales growthExabeam's channel partners now represent its largest sales channel, surpassing all other routes. In H1 2026, the channel exceeded targets with 138% growth in new logo pipeline and 125% over target for new product bookings. The Sherpa AI tool and partner education initiatives drove this success.AijournOne year on, Exabeam’s channel-first bet is paying off, with an AI assistant doing some of the heavy liftingExabeam's APEX Partner Program, launched in July 2025, saw channel-driven new-logo pipeline beat target by 138% and expansion bookings reach 125% of plan in H1 2026. The channel is now the highest-volume sales source, with partners citing AI-powered Sherpa for enablement and high satisfaction scores.ChanneldiveExabeam touts surge in channel-led bookingsExabeam said channel partners now account for more sales than any other route, outperforming first-half 2026 goals with new logo pipeline growth of 138% over target and new product bookings 125% over target. The company expanded its Sherpa AI tool to include deal registration, training, and pre-sales enablement, and plans to focus on agentic AI opportunities.iTWireExabeam Accelerates Global Channel Momentum as Exabeam APEX Partner Program Drives Measurable GrowthExabeam announced that its channel-driven new-logo pipeline exceeded target by 138% in H1 2026, with expansion bookings at 125% of plan. The channel became the highest-volume sales source, and partner satisfaction rose to 82% in the 2026 Voice of the Partner survey.IntelligenttechchannelsExabeam channel-driven new-logo pipeline exceeds target by 138% – Intelligent Tech ChannelsExabeam reported that its channel-driven new-logo pipeline exceeded target by 138% globally in H1 2026, with expansion bookings reaching 125% of plan. The channel became its highest-volume sales source, and pipeline targets were exceeded in three of four regions. The company plans to continue investing in partner enablement and tools.SecurityBrief AustraliaAI agents top insider risk concern for security chiefsExabeam's survey of 600 security and finance decision-makers found AI agents with excessive or unintended access ranked as the top insider risk, cited by 48% of respondents. The study also noted 60% use dedicated AI security tools, but 27% cited limited behavioral context as a key limitation. Security and finance leaders are aligned on risk tolerance, yet 55% delayed initiatives due to inability to frame risk in financial terms.iTWireExabeam Research: Security Leaders Identify AI Agent Access as a Top Insider Risk PriorityExabeam's research found 48% of security leaders rank AI agents with excessive, compromised, or unintended access as the top threat to their organizations. Monitoring approaches face gaps in behavioral context and cross-system visibility, while 55% of security leaders delayed initiatives due to inability to frame risk in financial terms.