Developer docs
API playgroundTry for free, no card

Search company profiles

TAC Security

Full company profile

uuid000071d

Namestring
TAC Security
Legal namestring
TAC InfoSec Limited
Websiteurl
tacsecurity.com
Company typeenum
Public
Founded yearint
2013
Descriptiontext

TAC Security, operating under TAC InfoSec Limited (NSE: TAC) and headquartered in San Francisco with operations across the US, India, and UAE, is an AI-native vulnerability management and application security vendor serving 10,000+ enterprises and government entities in 100+ countries. Its core platform, ESOF (Enterprise Security in One Framework), consolidates risk-based vulnerability management (ESOF VMP), web/mobile application security (ESOF AppSec), PCI DSS scanning (ESOF PCI ASV), agent-based vulnerability and configuration assessment (ESOF VACA), and AI-powered cyber risk quantification (ESOF CRQ) into a single console that produces a unified cyber risk score and 5-year vulnerability history. Supporting offerings include Socify.ai for SOC 2 compliance automation, CyberScope for Web3 smart contract auditing, ioXt IoT certification, and CyberSandia for US government cybersecurity services.

Short descriptiontext

TAC Security is an AI-native vulnerability management and application security platform serving 10,000+ enterprises and government agencies across 100+ countries via its ESOF suite, with FY26 revenue of ₹57.26 Crore.

Operating statusenum
Operating
Ownership categoryenum
Headcount rangeband
251–500
akta.pro rankint
HeadquartersSan Francisco, United States
HQ citystring
San Francisco
HQ countrystring
United States
HQ regionstring
North America
Markets served

Serves global market

Offices6 records

Each record includes

City, Country, Type, Description, Source

Keyword5 values
vulnerability management, application security, cyber risk quantification, compliance automation, web3 security
Industry4 codes
1IT Governance, Risk & Compliance (IT GRC) Platforms
CodeHDAEALAKPrimaryYes
2Enterprise AI Governance, Risk & Compliance Platforms (Model Risk, Audit, Policies)
CodeHDAEANAEPrimaryNo
3Model Governance, Risk & Compliance (GRC) Platforms
CodeHDAAAKAAPrimaryNo
4Governance, Risk & Compliance (GRC) Advisory & Assessments
CodeBPAKAHAHPrimaryNo
NAICS code2 codes
  • Computer Systems Design Services541512
  • Other Computer Related Services541519
SIC code1 code
  • Services-Computer Programming, Data Processing, Etc.7370
Product category
Vulnerability Management & Application Security
GTM motion3 records

Each record includes

Type, Description, Source

Revenue model5 records
1Vulnerability Management Subscriptions
TypeSubscription Recurring
Description

Annual subscription revenue from ESOF VMP platform with tiered pricing (Advanced, Premium, Enterprise). Recurring revenue model with multi-year contract potential.

inc42.com
2Application Security Testing
TypeSubscription Recurring
Description

Per-application pricing for ESOF AppSec ranging from $900 (Advanced) to $1800 (Premium) annually, with Enterprise custom pricing. Additional revenue from manual penetration testing services.

tacsecurity.com
3Compliance Automation (Socify.ai)
TypeSubscription Recurring
Description

SOC 2 compliance automation platform generating subscription revenue from AI-driven compliance workflows and evidence automation.

m.thewire.in
4CyberScope Web3 Security
TypeProfessional Services
Description

Smart contract audits and blockchain security assessments adding approximately USD 1.2 million in revenue from the CyberScope acquisition.

ciso.economictimes.indiatimes.com
5PCI Compliance Services
TypeSubscription Recurring
Description

ESOF PCI ASV Approved Scanning Vendor services for payment card industry compliance with SLA-backed report delivery.

tacsecurity.com
Marketing channels6 records

Each record includes

Title, Type, Stage, Description, Source

Distribution channels4 records

Each record includes

Title, Type, Scope, Target buyer, Description, Source

Cost components4 values
Personnel, Technology or R&D, Marketing or Sales, Operations
Pricing details4 tiers
1ESOF AppSec Advanced - Annual application security testing
ModelSubscriptionBilling cadenceAnnual
Notes

$900 per application per year. Includes Application Security Assessment (Yearly), Support for Vulnerability Remediation, 2 Cycles of Revalidation, DAST.

tacsecurity.com
2ESOF AppSec Premium - Biannual comprehensive AppSec
ModelSubscriptionBilling cadenceAnnual
Notes

$1800 per year. Includes Application Security Assessment (Biannually), Unlimited Automated Vulnerability Revalidation, Manual VAPT by Certified Experts (up to 2 revalidation scans per asset biannually), Executive Summary Report.

tacsecurity.com
3ESOF AppSec Enterprise - Unlimited enterprise-grade security
ModelSubscriptionBilling cadenceMulti-year contract
Notes

Custom pricing. Includes Application Security Assessment (Unlimited), Unlimited Vulnerability Revalidation, Manual VAPT by Certified Experts, Dedicated Account Manager, CREST PT Certified Report, DAST & SAST.

tacsecurity.com
4AASA (Automated Application Security Assessment) - Self-serve for developers and startups
ModelUnit PricingBilling cadencePay-as-you-go
Notes

Starts at $540. Self-serve application security audits with instant reports, automated workflow, tailored templates, and rapid security assessments for SOC 2 compliance.

tacsecurity.com
GTM typeB2B
B2B
Offering typeSoftware
Software
Brand1 of 6 records shown
1ESOF
Description

Enterprise Security in One Framework - AI-Native Vulnerability Management + AppSec platform with Certified Reports, Fast Turnaround, and Global Compliance

tacsecurity.com
+5 more records
Core offering1 text field

TAC Security operates the ESOF (Enterprise Security in One Framework) AI-native platform that consolidates vulnerability management, application security testing, PCI compliance scanning, agent-based configuration assessment, and cyber risk quantification into a single automated solution. It additionally offers Socify.ai for SOC 2 compliance automation, CyberScope for Web3 smart contract security, CyberSandia for U.S. government cybersecurity services, ioXt IoT certification, and the AASA self-serve application security assessment. The platform is used by more than 10,000 enterprises, financial institutions, and government agencies across 100+ countries.

Differentiator
Functional benefit
Problem solved
Quantifiable outcome1 of 6 values shown
  • 60% reduction in security gaps across applications
+5 more records
Product overview1 text field

TAC Security offers an AI-native, integrated cybersecurity platform combining vulnerability management, application security, compliance automation, and Web3 security across 10 distinct products and services. The core ESOF (Enterprise Security in One Framework) platform unifies ESOF VMP for risk-based vulnerability management, ESOF AppSec for web/mobile application security, ESOF PCI ASV for PCI compliance scanning, ESOF VACA for agent-based vulnerability assessment, and ESOF CRQ for cyber risk quantification. Supporting products include Socify.ai (SOC 2 compliance automation), CyberScope (Web3/smart contract security), ioXt (IoT certification), CyberSandia (U.S. government cybersecurity services), and AASA (automated application security assessment). The platform serves 10,000+ enterprises across 100+ countries, positioning TAC Security as the world's 5th largest vulnerability management company.

Product and service10 records
1ESOF VMP (Vulnerability Management Platform)
CategoryVulnerability Management
Description

AI- and ML-powered risk-based vulnerability management platform that discovers, prioritizes, and remediates vulnerabilities across enterprise IT infrastructure, delivering a unified cyber risk score, 5-year vulnerability history, and integrations with existing security tools.

2ESOF AppSec
CategoryApplication Security
Description

Comprehensive web and mobile application security platform providing black box and grey box testing with OWASP Top 10 and SANS 25 vulnerability coverage, AI-powered cyber risk scoring, zero false positive detection, and SDLC-embedded DevSecOps security testing.

3ESOF PCI ASV
CategoryCompliance Scanning
Description

PCI DSS Approved Scanning Vendor solution providing pre-configured scan templates, automated scheduled scans, a comprehensive PCI dashboard, and SLA-backed attested report delivery within 24 hours for payment card industry compliance.

4ESOF VACA (Vulnerability Assessment and Configuration Assessment)
CategoryVulnerability Assessment
Description

Agent-based vulnerability and configuration scanner for Linux and Windows systems that continuously scans, detects threats, and deploys automated patch management, with Threat Intel integration and zero-day vulnerability detection.

5ESOF CRQ (Cyber Risk Quantification)
CategoryCyber Risk Quantification
Description

AI-powered cyber risk quantification platform that translates vulnerabilities into financial dollar impacts using a risk = breach likelihood x Impact + Application tier formula, enabling executives and boards to assess potential breach costs.

6Socify.ai
CategoryCompliance Automation
Description

AI-powered SOC 2 compliance automation platform that simplifies compliance through automated evidence collection, continuous monitoring, and rapid security assessments for AI, SaaS, fintech, and cybersecurity companies.

7CyberScope
CategoryWeb3 and Blockchain Security
Description

Web3 and blockchain security platform providing end-to-end smart contract auditing, token launch security, and blockchain dApp scanning for DeFi protocols, TON-based projects, and USDC stablecoin infrastructure.

8CyberSandia
CategoryGovernment Cybersecurity Services
Description

Statewide government cybersecurity platform delivering VAPT, endpoint protection, and incident response services to U.S. government infrastructure and agencies, including the State of New Mexico under a statewide contract.

9ioXt IoT Security Assessment & Certification
CategoryIoT Security Certification
Description

IoT security assessment and certification service. TAC Security is one of only eight global labs authorized for ioXt Certification, providing security testing for smart devices, wearables, and connected platforms.

10AASA (Automated Application Security Assessment)
CategoryApplication Security (Self-Serve)
Description

Self-serve application security audits platform with instant reports and SOC 2 compliance automation, designed for developers and startups at a starting price of $540.

Scale indicator13 records

Each record includes

Type, Value, Description, Source

Partnership11 partners
Strategic tierMinorTypeGTM or Marketing PartnerAnnounced on2026-04-07
Description

Strategic partnership to integrate security validation with growth-focused services for Web3 projects ahead of token launches and ecosystem expansion.

Strategic tierCoreTypeStrategic or Co-development PartnerAnnounced on2026-03-24
Description

Cyberscope joined TON ecosystem as listed auditor providing smart contract audits, protocol risk assessments, and security support to TON-based developers and projects building on Telegram's blockchain network.

Strategic tierCoreTypeStrategic or Co-development PartnerAnnounced on2026-02-23
Description

CyberScope approved into USDC's Issuer Circle Partner Allowance Program following multi-stage compliance and governance review, positioning CyberScope as recognized security provider for organizations building with USDC.

4App Defense Alliance
Strategic tierCoreTypeStrategic or Co-development PartnerAnnounced on2024-01-01
Description

TAC Security became Partner of App Defense Alliance, Linux Foundation for cloud application security.

tacsecurity.com
Strategic tierCoreTypeStrategic or Co-development PartnerAnnounced on2022-01-01
Description

Protean InfoSec, a NSDL e-Gov and TAC Security alliance for government cybersecurity services.

6Bombay Stock Exchange
Strategic tierCoreTypeChannel Partner/ Reseller/ DistributorAnnounced on2022-01-01
Description

TAC Security signed as Cyber Security Partner for Vulnerability Management for India's premier stock exchange.

tacsecurity.com
Strategic tierCoreTypeChannel Partner/ Reseller/ DistributorAnnounced on2020-01-01
Description

Enterprise security solutions partnership to scale UK, Europe, and SAARC markets through Tech Mahindra's global distribution network.

Strategic tierCoreTypeImplementation/ SI/ Consulting PartnerAnnounced on2020-01-01
Description

Strategic alliance to deliver enterprise security solutions through Deloitte's consulting practice and client relationships.

Strategic tierCoreTypeChannel Partner/ Reseller/ DistributorAnnounced on2020-01-01
Description

Distribution partnership through Ingram Micro's channel network for broader market reach.

10IBM
Strategic tierCoreTypeChannel Partner/ Reseller/ DistributorAnnounced on2020-01-01
Description

Partnership to scale security solutions through IBM's enterprise sales channel to UK, Europe, and SAARC markets.

Strategic tierCoreTypeStrategic or Co-development PartnerAnnounced on2020-01-01
Description

Google partnered with TAC Security to perform risk assessment for their Global Partners. TAC Security also appointed as Google's MASA Security Assessor and Recommended/Preferred Security Partner for CASA (Cloud Application Security Assessment).

Recent move8 records

Each record includes

Date, Type, Title, Description, Source

Peers10 records
TypeDirect peer
Description

Tenable is the publicly-listed leader in vulnerability management (Nessus, Tenable One). Most direct competitor to TAC's ESOF VMP, serving the same Fortune 500 / enterprise customer base with a similar risk-based prioritization narrative, though at materially greater scale.

TypeDirect peer
Description

Qualys is a long-standing cloud-native vulnerability management and compliance platform. Closely comparable to TAC's ESOF VMP + ESOF PCI ASV offerings, especially in PCI DSS compliance scanning where both are Approved Scanning Vendors.

TypeDirect peer
Description

Rapid7 offers InsightVM for vulnerability management alongside application security (InsightAppSec) and SIEM — a portfolio structure that closely mirrors TAC's ESOF VMP + AppSec stack, targeting the same mid-market and enterprise segments.

TypeDirect peer
Description

SecurityScorecard provides cyber risk quantification and ratings, overlapping with TAC's ESOF CRQ module and CRQ-style dollar-value risk translation for executive decision-making.

TypeDirect peer
Description

Bitsight delivers external cyber risk ratings and quantification similar to TAC's CRQ. Both compete for the same board-level risk reporting use case at large enterprises.

TypeDirect peer
Description

Snyk is a developer-first application security platform (SAST, SCA, container security) — directly comparable to TAC's ESOF AppSec module, especially for the AI/SaaS/startup segment TAC targets via AASA and Socify.ai.

TypeDirect peer
Description

Veracode provides application security testing (SAST, DAST, manual pen testing) — directly comparable to ESOF AppSec, including the CREST PT-accredited manual penetration testing service.

TypeDirect peer
Description

Checkmarx offers an enterprise application security platform (SAST, SCA, IaC security). Overlaps with TAC's ESOF AppSec at the enterprise DAST/SAST/SDLC integration level.

TypeEmerging player
Description

Wiz is a fast-growing cloud security platform (CSPM, vulnerability management, CIEM). Competes with TAC's vulnerability and cloud security posture features, especially for cloud-native enterprises, and represents the type of well-capitalized emerging player that could compress TAC's growth.

TypeRegional player
Description

India-based application security and vulnerability management SaaS provider (Indusface WAS, Total Application Security). Directly comparable to TAC's ESOF AppSec + ESOF VMP, particularly for Indian enterprise and SMB customers where both are headquartered.

Market position
Strengths5 records

Each record includes

Headline, Details, Source

Weaknesses5 records

Each record includes

Headline, Details, Source

Competitive moat5 records

Each record includes

Type, Details

Key risks5 records

Each record includes

Headline, Details, Source

Key highlights7 records

Each record includes

Headline, Details, Source

Customer concentration

Classification, Details

Named customers20 records

Each record includes

Name, Industry, Type, Use case, Source, UUID

Segment5 records

Each record includes

Title, Type, Primary, Description, Pain point addressed, Use case, Source

Ideal customer profile4 records

Each record includes

Profile, Firmographic size, Sales motion, Sales cycle length, Buying structure, Purchase trigger, Buyer persona, Geography, Industry vertical, Primary use case, Description, Pain points, Evidence proof points, Target buyer

Technology focused
Yes
API detail
Has APIbool
No

Docs URL, Description

AI capability8 records

Each record includes

Type, Description, Source

AI maturity
App detail

Has app

Feature7 records

Each record includes

Title, Differentiator, Description, Source

Core technology
Revenue estimate
Valuation estimate
Number of profiles
Profiles10 records

Each record includes

Name, Designation, Designation category, Overview, Profile commentary, Source

Subsidiaries4 records

Each record includes

Name, Acquired on, Relationship type, Type, Business focus

Compliance8 records

Each record includes

Name, Class, Description

Funding overview

Funding stage, Last funding date, Total funding USD

Funding rounds3 records

Each record includes

Round, Amount USD, Date, Pre money valuation, Total investors, Investors, News

Investors

Each record includes

Name, Type, Date of entry, Rounds participated, Website

Funding detail is available on the Subscription and Enterprise plan.Contact sales →

M&A3 records

Each record includes

Name, Acquisition type, Announced date, Completed date, Status, Website, News

Investment

Each record includes

Name, Round, Announced date, Lead investor, Website, News

M&A and investment is available on the Subscription and Enterprise plan.Contact sales →

TAC Security

Vulnerability Management & Application Securitytacsecurity.com

TAC Security is an AI-native vulnerability management and application security platform serving 10,000+ enterprises and government agencies across 100+ countries via its ESOF suite, with FY26 revenue of ₹57.26 Crore.

What TAC Security does

TAC Security, operating under TAC InfoSec Limited (NSE: TAC) and headquartered in San Francisco with operations across the US, India, and UAE, is an AI-native vulnerability management and application security vendor serving 10,000+ enterprises and government entities in 100+ countries. Its core platform, ESOF (Enterprise Security in One Framework), consolidates risk-based vulnerability management (ESOF VMP), web/mobile application security (ESOF AppSec), PCI DSS scanning (ESOF PCI ASV), agent-based vulnerability and configuration assessment (ESOF VACA), and AI-powered cyber risk quantification (ESOF CRQ) into a single console that produces a unified cyber risk score and 5-year vulnerability history. Supporting offerings include Socify.ai for SOC 2 compliance automation, CyberScope for Web3 smart contract auditing, ioXt IoT certification, and CyberSandia for US government cybersecurity services.

TAC Security firmographics

Firmographics
Name
TAC Security
Legal name
TAC InfoSec Limited
Website
https://tacsecurity.com
Company type
Public
Founded year
2013
Operating status
Operating
Headcount range
251–500 employees
Short description
TAC Security is an AI-native vulnerability management and application security platform serving 10,000+ enterprises and government agencies across 100+ countries via its ESOF suite, with FY26 revenue of ₹57.26 Crore.
Ownership category
akta.pro rank

TAC Security industry classification

Industry
Product category
Vulnerability Management & Application Security
NAICS
Computer Systems Design Services (541512), Other Computer Related Services (541519)
SIC
Services-Computer Programming, Data Processing, Etc. (7370)
akta.pro primary industry
IT Governance, Risk & Compliance (IT GRC) Platforms (HDAEALAK)
akta.pro secondary industries
Enterprise AI Governance, Risk & Compliance Platforms (Model Risk, Audit, Policies) (HDAEANAE), Model Governance, Risk & Compliance (GRC) Platforms (HDAAAKAA), Governance, Risk & Compliance (GRC) Advisory & Assessments (BPAKAHAH)

Keywords

  • Vulnerability management
  • Application security
  • Cyber risk quantification
  • Compliance automation
  • Web3 security

Where TAC Security is headquartered

Location

Headquarters

HQ city
San Francisco
HQ country
United States
HQ region
North America

Offices6 records

Markets served

TAC Security business model

Business model
GTM type
B2B
Offering type
Software
Cost components
Personnel, Technology or R&D, Marketing or Sales, Operations

Revenue model

  1. Vulnerability Management Subscriptions: Annual subscription revenue from ESOF VMP platform with tiered pricing (Advanced, Premium, Enterprise). Recurring revenue model with multi-year contract potential.
  2. Application Security Testing: Per-application pricing for ESOF AppSec ranging from $900 (Advanced) to $1800 (Premium) annually, with Enterprise custom pricing. Additional revenue from manual penetration testing services.
  3. Compliance Automation (Socify.ai): SOC 2 compliance automation platform generating subscription revenue from AI-driven compliance workflows and evidence automation.
  4. CyberScope Web3 Security: Smart contract audits and blockchain security assessments adding approximately USD 1.2 million in revenue from the CyberScope acquisition.
  5. PCI Compliance Services: ESOF PCI ASV Approved Scanning Vendor services for payment card industry compliance with SLA-backed report delivery.

Pricing tiers

ModelBillingPrice
SubscriptionAnnualESOF AppSec Advanced - Annual application security testing
SubscriptionAnnualESOF AppSec Premium - Biannual comprehensive AppSec
SubscriptionMulti-year contractESOF AppSec Enterprise - Unlimited enterprise-grade security
Unit PricingPay-as-you-goAASA (Automated Application Security Assessment) - Self-serve for developers and startups

Go-to-market motion3 records

Distribution channels4 records

Marketing channels6 records

TAC Security product offering

Product offering

Core offering

TAC Security operates the ESOF (Enterprise Security in One Framework) AI-native platform that consolidates vulnerability management, application security testing, PCI compliance scanning, agent-based configuration assessment, and cyber risk quantification into a single automated solution. It additionally offers Socify.ai for SOC 2 compliance automation, CyberScope for Web3 smart contract security, CyberSandia for U.S. government cybersecurity services, ioXt IoT certification, and the AASA self-serve application security assessment. The platform is used by more than 10,000 enterprises, financial institutions, and government agencies across 100+ countries.

Product overview

TAC Security offers an AI-native, integrated cybersecurity platform combining vulnerability management, application security, compliance automation, and Web3 security across 10 distinct products and services. The core ESOF (Enterprise Security in One Framework) platform unifies ESOF VMP for risk-based vulnerability management, ESOF AppSec for web/mobile application security, ESOF PCI ASV for PCI compliance scanning, ESOF VACA for agent-based vulnerability assessment, and ESOF CRQ for cyber risk quantification. Supporting products include Socify.ai (SOC 2 compliance automation), CyberScope (Web3/smart contract security), ioXt (IoT certification), CyberSandia (U.S. government cybersecurity services), and AASA (automated application security assessment). The platform serves 10,000+ enterprises across 100+ countries, positioning TAC Security as the world's 5th largest vulnerability management company.

Differentiator

Problem solved

Functional benefit

Brands

  • ESOF: Enterprise Security in One Framework - AI-Native Vulnerability Management + AppSec platform with Certified Reports, Fast Turnaround, and Global Compliance
  • Socify.ai
  • CyberScope
  • CyberSandia
  • ioXt
  • AASA

Products and services

  • ESOF VMP (Vulnerability Management Platform) AI- and ML-powered risk-based vulnerability management platform that discovers, prioritizes, and remediates vulnerabilities across enterprise IT infrastructure, delivering a unified cyber risk score, 5-year vulnerability history, and integrations with existing security tools.
  • ESOF AppSec Comprehensive web and mobile application security platform providing black box and grey box testing with OWASP Top 10 and SANS 25 vulnerability coverage, AI-powered cyber risk scoring, zero false positive detection, and SDLC-embedded DevSecOps security testing.
  • ESOF PCI ASV PCI DSS Approved Scanning Vendor solution providing pre-configured scan templates, automated scheduled scans, a comprehensive PCI dashboard, and SLA-backed attested report delivery within 24 hours for payment card industry compliance.
  • ESOF VACA (Vulnerability Assessment and Configuration Assessment) Agent-based vulnerability and configuration scanner for Linux and Windows systems that continuously scans, detects threats, and deploys automated patch management, with Threat Intel integration and zero-day vulnerability detection.
  • ESOF CRQ (Cyber Risk Quantification) AI-powered cyber risk quantification platform that translates vulnerabilities into financial dollar impacts using a risk = breach likelihood x Impact + Application tier formula, enabling executives and boards to assess potential breach costs.
  • Socify.ai AI-powered SOC 2 compliance automation platform that simplifies compliance through automated evidence collection, continuous monitoring, and rapid security assessments for AI, SaaS, fintech, and cybersecurity companies.
  • CyberScope Web3 and blockchain security platform providing end-to-end smart contract auditing, token launch security, and blockchain dApp scanning for DeFi protocols, TON-based projects, and USDC stablecoin infrastructure.
  • CyberSandia Statewide government cybersecurity platform delivering VAPT, endpoint protection, and incident response services to U.S. government infrastructure and agencies, including the State of New Mexico under a statewide contract.
  • ioXt IoT Security Assessment & Certification IoT security assessment and certification service. TAC Security is one of only eight global labs authorized for ioXt Certification, providing security testing for smart devices, wearables, and connected platforms.
  • AASA (Automated Application Security Assessment) Self-serve application security audits platform with instant reports and SOC 2 compliance automation, designed for developers and startups at a starting price of $540.

Quantifiable outcome

  • 60% reduction in security gaps across applications
  • +5 more outcomes

Companies that use TAC Security

Customer profile

Named customers20 records

Segments5 records

Ideal customer profiles4 records

TAC Security technology and API

Technology

Technology focussed Yes

API detail

Has API
No
API docs
API detail

Core technology

AI maturity

App detail

AI capability8 records

Feature7 records

TAC Security partnerships and signals

Strategic signal

Partnerships

Eleven partnerships are on record, tiered minor and core.

  • Lunar StrategyminorGTM or Marketing Partner · 7 April 2026Strategic partnership to integrate security validation with growth-focused services for Web3 projects ahead of token launches and ecosystem expansion.
  • TON (The Open Network)coreStrategic or Co-development Partner · 24 March 2026Cyberscope joined TON ecosystem as listed auditor providing smart contract audits, protocol risk assessments, and security support to TON-based developers and projects building on Telegram's blockchain network.
  • Circle (USDC Issuer)coreStrategic or Co-development Partner · 23 February 2026CyberScope approved into USDC's Issuer Circle Partner Allowance Program following multi-stage compliance and governance review, positioning CyberScope as recognized security provider for organizations building with USDC.
  • App Defense AlliancecoreStrategic or Co-development Partner · 1 January 2024TAC Security became Partner of App Defense Alliance, Linux Foundation for cloud application security.
  • NSDL e-GovcoreStrategic or Co-development Partner · 1 January 2022Protean InfoSec, a NSDL e-Gov and TAC Security alliance for government cybersecurity services.
  • Bombay Stock ExchangecoreChannel Partner/ Reseller/ Distributor · 1 January 2022TAC Security signed as Cyber Security Partner for Vulnerability Management for India's premier stock exchange.
  • Tech MahindracoreChannel Partner/ Reseller/ Distributor · 1 January 2020Enterprise security solutions partnership to scale UK, Europe, and SAARC markets through Tech Mahindra's global distribution network.
  • DeloittecoreImplementation/ SI/ Consulting Partner · 1 January 2020Strategic alliance to deliver enterprise security solutions through Deloitte's consulting practice and client relationships.
  • Ingram MicrocoreChannel Partner/ Reseller/ Distributor · 1 January 2020Distribution partnership through Ingram Micro's channel network for broader market reach.
  • IBMcoreChannel Partner/ Reseller/ Distributor · 1 January 2020Partnership to scale security solutions through IBM's enterprise sales channel to UK, Europe, and SAARC markets.
  • GooglecoreStrategic or Co-development Partner · 1 January 2020Google partnered with TAC Security to perform risk assessment for their Global Partners. TAC Security also appointed as Google's MASA Security Assessor and Recommended/Preferred Security Partner for CASA (Cloud Application Security Assessment).

Scale indicators13 records

Recent moves8 records

TAC Security competitors and assessment

Company assessment

Direct peers

  • Tenable: Tenable is the publicly-listed leader in vulnerability management (Nessus, Tenable One). Most direct competitor to TAC's ESOF VMP, serving the same Fortune 500 / enterprise customer base with a similar risk-based prioritization narrative, though at materially greater scale.
  • Qualys: Qualys is a long-standing cloud-native vulnerability management and compliance platform. Closely comparable to TAC's ESOF VMP + ESOF PCI ASV offerings, especially in PCI DSS compliance scanning where both are Approved Scanning Vendors.
  • Rapid7: Rapid7 offers InsightVM for vulnerability management alongside application security (InsightAppSec) and SIEM — a portfolio structure that closely mirrors TAC's ESOF VMP + AppSec stack, targeting the same mid-market and enterprise segments.
  • SecurityScorecard: SecurityScorecard provides cyber risk quantification and ratings, overlapping with TAC's ESOF CRQ module and CRQ-style dollar-value risk translation for executive decision-making.
  • Bitsight: Bitsight delivers external cyber risk ratings and quantification similar to TAC's CRQ. Both compete for the same board-level risk reporting use case at large enterprises.
  • Snyk: Snyk is a developer-first application security platform (SAST, SCA, container security) — directly comparable to TAC's ESOF AppSec module, especially for the AI/SaaS/startup segment TAC targets via AASA and Socify.ai.
  • Veracode: Veracode provides application security testing (SAST, DAST, manual pen testing) — directly comparable to ESOF AppSec, including the CREST PT-accredited manual penetration testing service.
  • Checkmarx: Checkmarx offers an enterprise application security platform (SAST, SCA, IaC security). Overlaps with TAC's ESOF AppSec at the enterprise DAST/SAST/SDLC integration level.

Emerging players

  • Wiz: Wiz is a fast-growing cloud security platform (CSPM, vulnerability management, CIEM). Competes with TAC's vulnerability and cloud security posture features, especially for cloud-native enterprises, and represents the type of well-capitalized emerging player that could compress TAC's growth.

Regional players

  • Indusface: India-based application security and vulnerability management SaaS provider (Indusface WAS, Total Application Security). Directly comparable to TAC's ESOF AppSec + ESOF VMP, particularly for Indian enterprise and SMB customers where both are headquartered.

Market position

Strengths5 records

Weaknesses5 records

Competitive moat5 records

Key risks5 records

Key highlights7 records

Customer concentration

TAC Security social profiles

Digital presence

TAC Security compliance and trust

Trust signal

Compliance8 records

TAC Security financial estimates

Financial estimate

Revenue estimate

Valuation estimate

TAC Security leadership team

Management profile

Number of profiles

Profiles10 records

TAC Security subsidiaries and ownership

Company hierarchy

Subsidiaries4 records

TAC Security funding detail

Funding detail

Funding overview

Funding rounds3 records

Investors

Funding detail is available on the Subscription and Enterprise plan.Contact sales →

TAC Security M&A and investment

M&A and investment

M&A3 records

Investments

M&A and investment is available on the Subscription and Enterprise plan.Contact sales →

Frequently asked questions about TAC Security

What does TAC Security do?

TAC Security operates the ESOF (Enterprise Security in One Framework) AI-native platform that consolidates vulnerability management, application security testing, PCI compliance scanning, agent-based configuration assessment, and cyber risk quantification into a single automated solution. It additionally offers Socify.ai for SOC 2 compliance automation, CyberScope for Web3 smart contract security, CyberSandia for U.S. government cybersecurity services, ioXt IoT certification, and the AASA self-serve application security assessment. The platform is used by more than 10,000 enterprises, financial institutions, and government agencies across 100+ countries.

Is TAC Security a public or private company?

TAC Security is a public company. It is classified as public and is currently operating.

When was TAC Security founded?

TAC Security was founded in 2013. It employs 251 to 500 people.

Where is TAC Security based?

TAC Security is headquartered in San Francisco, United States, in the North America region.

How does TAC Security make money?

Five revenue lines are on record. Vulnerability Management Subscriptions are the primary driver. The others are application Security Testing, compliance Automation (Socify.ai), cyberScope Web3 Security and PCI Compliance Services.

Who are TAC Security's main competitors?

Direct peers on record are Tenable, Qualys, Rapid7, SecurityScorecard, Bitsight, Snyk, Veracode and Checkmarx. Wiz is listed as an emerging player. Indusface is listed as a regional player.

Does TAC Security have an API?

No public API is recorded for TAC Security.

What industry is TAC Security in?

TAC Security's product category is Vulnerability Management & Application Security. Its primary akta.pro industry code is HDAEALAK, IT Governance, Risk & Compliance (IT GRC) Platforms, with a secondary code of HDAEANAE, Enterprise AI Governance, Risk & Compliance Platforms (Model Risk, Audit, Policies). Its NAICS code is 541512 and its SIC code is 7370.

Unlock the full company data

50 free credits on sign-up, no credit card required.

Contact sales
Live signals
The TribuneTAC InfoSec Limited Reaffirms INR 100 Crore FY27 Guidance at 10th AGM; Targets Two AI Product Launches by FY27TAC InfoSec reaffirmed its INR 100 crore FY27 revenue guidance at its 10th AGM and plans to launch two AI products by Q4 FY27. Q1 FY27 revenue rose 97% to INR 200 million, with profit after tax up 137% to INR 80 million. The company also highlighted its US$100 million AI-led R&D investment ambition through 2030.SecuritybriefSocify.ai reaches 300 customers as growth acceleratesSocify.ai, a SOC 2 compliance platform, reached 300 customers, adding its latest 100 in two months. The company aims to reach 10,000 clients by 2030 and $100 million in annual recurring revenue. TAC Security is using its existing customer base to expand the product.FinancialContent Business PageSocify.ai Surges to 300 Clients, Emerging as a Fast-Growing Challenger in AI-Powered SOC 2 ComplianceTAC Security's Socify.ai AI-powered SOC 2 platform crossed 300 customers, with the latest 100 acquired in two months. The company targets 10,000 clients by 2030, aiming for $100 million in annual recurring revenue.Business Wire BlogSocify.ai Surges to 300 Clients, Emerging as a Fast-Growing Challenger in AI-Powered SOC 2 ComplianceSocify.ai, TAC Security's AI-powered SOC 2 compliance platform, has crossed 300 customers, with the latest 100 acquired in two months. The company targets 10,000 clients by 2030, aiming to make SOC 2 accessible to thousands of businesses globally.TradingViewSocify.ai Surges to 300 Clients, Emerging as a Fast-Growing Challenger in AI-Powered SOC 2 ComplianceSocify.ai, TAC InfoSec's AI-powered SOC 2 compliance platform, crossed 300 customers, with the latest 100 added in two months. The company targets 10,000 clients by 2030 and $100 million in annual recurring revenue.EIN PresswireAttrove Completes SOC 2 Type I with Socify by TAC SecurityAttrove completed its SOC 2 Type I certification with Socify by TAC Security, covering Security and Confidentiality. The platform cut audit preparation effort by roughly 80% and costs by 75-80% versus traditional programs. The certification strengthens buyer confidence as Attrove scales.EIN PresswireTAC InfoSec to Acquire Israel-Based B2C Cybersecurity Firm Safehouse TechnologiesTAC InfoSec will acquire 100% of Israel-based Safehouse Technologies, making it a wholly owned subsidiary. Safehouse's consumer app has over 10 lakh downloads and a 4.2-star rating. The deal expands TAC's cybersecurity platform into the B2C market.BusinessLineAI Cybersecurity Firm TAC InfoSec Sets INR 100 Crore Revenue Guidance for FY27, Q1 FY27 Results Total Income Rises 97% YoY, PAT Surges 137% YoYTAC InfoSec Limited (TAC Security), a listed AI cybersecurity company headquartered in Mumbai, announced revenue guidance of approximately INR 100 crore for FY27, supported by strong Q1 FY27 performance. The company reported total income of INR 20 crore in Q1 FY27, representing a 97% year-on-year increase with PAT surging 137% YoY, while EBITDA margin reached approximately 48%. TAC Security is pursuing its 2030 Bold Vision strategy to build into a USD 100 million ARR AI cybersecurity platform through expansion of its ESOF platform, Socify.ai compliance automation, and global operations including U.S. market expansion.The HinduAI Cybersecurity Firm TAC InfoSec Sets INR 100 Crore Revenue Guidance for FY27, Q1 FY27 Results Total Income Rises 97% YoY, PAT Surges 137% YoYTAC InfoSec Limited (TAC Security), a listed AI cybersecurity company, announced revenue guidance of approximately INR 100 crore for FY27, supported by strong Q1 FY27 performance with total income of INR 20 crore, representing a 97% year-on-year increase. The company reported a 137% YoY surge in PAT and achieved EBITDA margin of approximately 48%, exceeding its 40% operating-margin objective. TAC Security aims to build into a USD 100 million ARR AI cybersecurity platform by 2030 through expansion of its ESOF platform, scaling of Socify.ai, and growth in U.S. operations.The TribuneAI Cybersecurity Firm TAC InfoSec Sets INR 100 Crore Revenue Guidance for FY27, Q1 FY27 Results Total Income Rises 97% YoY, PAT Surges 137% YoYTAC InfoSec Limited, operating under the TAC Security brand, reported total income of INR 20 crore for Q1 FY27, representing a 97% year-on-year increase and 33% quarter-on-quarter growth, with EBITDA margin reaching approximately 48%. The company announced revenue guidance of approximately INR 100 crore for FY27, supported by expansion of its AI-led ESOF cybersecurity platform, Socify.ai compliance automation products, and international operations including U.S. operations. Management stated its longer-term goal under the 2030 Bold Vision strategy is to build TAC Security into a USD 100 million ARR AI cybersecurity platform through recurring products and global scale.