Developer docs
API playgroundTry for free, no card

Search company profiles

Sekoia.io

Full company profile

uuid000077g

Namestring
Sekoia.io
Legal namestring
Sekoia
Websiteurl
sekoia.io
Company typeenum
Private
Founded yearint
2022
Descriptiontext

Sekoia.io is a France-based (Paris, with a Rennes presence) cybersecurity software company that sells an agentic AI Security Operations Center (SOC) platform to enterprises, government agencies, and managed security service providers (MSSPs). The platform bundles four product modules — Sekoia Defend (a cloud-native SIEM replacement), Sekoia Intelligence (cyber threat intelligence), Sekoia Reveal (CAASM, or cyber asset attack surface management), and Sekoia Elevate (AI SOC agents for autonomous triage, investigation, and response) — under a single AI engine that correlates logs, signals, threat intel, and behavioral analytics into high-context alerts and a one-click course of action. The platform is differentiated by an in-house Threat Detection & Research (TDR) team whose original adversary research feeds the detection rules and is cited in major outlets (The Hacker News, SecurityWeek, ZDNet, Le Monde), and by a 'Made in EU' positioning targeted at organizations subject to NIS2 and DORA.

The company generates revenue primarily through annual recurring subscriptions sold via two motions: a direct enterprise sales-led motion (a prominent 'Get a demo' / 'Speak to a Sekoia expert' CTA on the website, with quote-based pricing and named logos including NATO and URSSAF) and a channel partner program aimed at MSSPs and resellers (Sekoia University, partner portal, and a 'Become a partner' funnel). Additional revenue comes from professional services and training delivered through Sekoia University. Customer segments span government, healthcare, technology, energy & utilities, and manufacturing, with MSSP identified as the primary segment.

Sekoia has raised €60 million cumulatively — a €35 million Series A (May 2023, co-led by Banque des Territoires and Bright Pixel) and a €26 million Series B (April 2025, led by Revaia) — and is operating with 101-250 employees. Its go-to-market has expanded beyond France into multiple European countries, the United States, Asia, and the Middle East, accelerated by a strategic partnership with Thales (October 2025) and reinforced by an ESET PROTECT integration (May 2026) that is jointly marketed as European sovereign technology. The company is recognized by Frost & Sullivan (Frost Radar XDR 2024 Leader), Gartner (2025), and Forrester (XDR Landscape Q1 2026).

Short descriptiontext

Sekoia.io is a French cybersecurity company that provides an agentic AI SOC platform combining SIEM, CTI, CAASM, and AI SOC agents to enterprises, governments, and MSSPs for automated threat detection, investigation, and response.

Operating statusenum
Operating
Ownership categoryenum
Headcount rangeband
101–250
akta.pro rankint
HeadquartersRennes, France
HQ citystring
Rennes
HQ countrystring
France
HQ regionstring
Europe
Markets served

Serves global market

Offices6 records

Each record includes

City, Country, Type, Description, Source

Keyword5 values
extended detection response, security operations platform, threat intelligence platform, security information management, managed security services
Industry2 codes
1Security Operations Center (SOC) as a Service
CodeBPAEADABPrimaryYes
2Threat Intelligence Services
CodeBPAEADACPrimaryNo
NAICS code1 code
  • Computer Systems Design and Related Services54151
SIC code1 code
  • Services-Computer Integrated Systems Design7373
Product category
Extended Detection and Response (XDR) / Security Operations Platform
Social media profiles2 records
GTM motion4 records

Each record includes

Type, Description, Source

Revenue model3 records
1Security-as-a-Service Subscription
TypeSubscription Recurring
Description

Recurring subscription to Sekoia's XDR/SIEM platform that monitors threats and integrates with existing cybersecurity solutions. Delivered as a cloud-native service.

securityweek.com
2Managed SOC / MSSP Channel Revenue
TypeSubscription Recurring
Description

Revenue distributed through a partner network of MSSPs and resellers (e.g., ConnectProtect) who deliver Sekoia's platform as part of their managed detection and response services.

sekoia.com
3Professional Services and Training
TypeProfessional Services
Description

Revenue from training courses, Sekoia University, and partner enablement programs supporting deployment and ongoing use of the platform.

sekoia.com
Marketing channels8 records

Each record includes

Title, Type, Stage, Description, Source

Distribution channels4 records

Each record includes

Title, Type, Scope, Target buyer, Description, Source

Cost components5 values
Technology or R&D, Personnel, Marketing or Sales, Infrastructure, Operations
Pricing details1 tier
1Quote-based subscription for the Sekoia AI SOC Platform (Defend, Intelligence, Reveal, Elevate)
ModelSubscriptionBilling cadenceAnnual
Notes

No public price list; sales-led quoting process with tailored demos and proposal-based pricing.

sekoia.com
GTM typeB2B
B2B
Offering typeSoftware
Software
Brand1 of 4 records shown
1Sekoia Defend
Description

SIEM product within the Sekoia unified SOC platform.

sekoia.com
+3 more records
Core offering1 text field

Sekoia.io provides an autonomous, agentic AI SOC platform that combines four integrated products — Sekoia Defend (SIEM), Sekoia Intelligence (CTI), Sekoia Reveal (CAASM), and Sekoia Elevate (AI SOC agents) — to detect, investigate, and respond to cyber threats in real time. The platform is fueled by Sekoia's in-house Threat Detection & Research (TDR) team and is sold to enterprise security teams and MSSPs across Europe, the US, Asia, and the Middle East.

Differentiator
Functional benefit
Problem solved
Quantifiable outcome1 of 4 values shown
  • Goal of protecting more than 3.5 million employees across Europe within two years (stated at Series A).
+3 more records
Product overview1 text field

Sekoia.io offers a unified, agentic Security Operations (SOC) platform, sold as a core AI SOC Platform that bundles four named modules: Sekoia Defend (SIEM), Sekoia Intelligence (CTI), Sekoia Reveal (CAASM), and Sekoia Elevate (AI SOC agents). The platform is augmented by services from the in-house Sekoia Threat Detection & Research (TDR) team, Sekoia University training courses, and a Partner Portal for MSSPs and resellers, with bi-directional integrations across the customer's existing security and IT stack.

Product and service3 records
1Sekoia AI SOC Platform
CategoryCore Security Operations Platform (XDR)
Description

Unified, agentic Security Operations platform that combines detection, hunting, investigation, and response into a single workflow driven by autonomous AI agents. It funnels logs, signals, and threat intelligence through one AI engine that correlates activity and presents analysts with high-context alerts and a one-click course of action. Sold to enterprise SOC teams and MSSPs.

2Sekoia Threat Detection & Research (TDR) Team
CategoryThreat Intelligence Research Service
Description

In-house threat intelligence research service that produces original adversary research, FLINT reports, and continuously updated detection content that fuels Sekoia's platform and is available to customers as part of the intelligence subscription.

3Sekoia University / Training Courses
CategoryTraining and Enablement Services
Description

Formal paid training portal and courses that partners and customers can purchase to build skills on the Sekoia platform and the MSSP partner program.

Scale indicator8 records

Each record includes

Type, Value, Description, Source

Partnership18 partners
Strategic tierCore Technology PartnerTypeTechnology or IntegrationAnnounced on2026-05-18
Description

ESET and Sekoia announced an integration of the ESET PROTECT platform with Sekoia Defend to enhance AI-driven threat detection and response for SOC teams. Endpoint telemetry and alerts from ESET PROTECT are forwarded into Sekoia Defend, where they are enriched with threat intelligence, processed via detection rules, and correlated into full-context alerts. Both companies market the joint offering as trusted 'Made in EU' technology.

Strategic tierFlagship Strategic Partner For International ExpansionTypeStrategic or Co-development PartnerAnnounced on2025-10-12
Description

Thales and Sekoia announced a partnership to expand Sekoia's international presence, including distribution of Sekoia's XDR platform through Thales's channels and joint cybersecurity solutions for organizations with high data-protection needs in France and abroad. The collaboration emphasizes AI-powered threat intelligence.

Strategic tierCore Technology PartnerTypeTechnology or Integration
Description

Cloudflare is featured as a primary technology integration within Sekoia's integration framework, enabling bi-directional exchange of signals, alerts, and context across the security stack.

Strategic tierCore Technology PartnerTypeTechnology or Integration
Description

Microsoft Entra ID and Azure Windows integrations are featured prominently in Sekoia's integrations catalog, allowing identity and cloud telemetry to flow into Sekoia's detection and response workflows.

Strategic tierCore Technology PartnerTypeTechnology or Integration
Description

AWS CloudTrail is featured in Sekoia's integrations catalog for cloud-audit telemetry ingestion into the Sekoia platform.

Strategic tierCore Technology PartnerTypeTechnology or Integration
Description

Cisco Secure Firewall and Cisco Meraki MX integrations enable network telemetry to feed Sekoia's SOC platform for detection and response.

Strategic tierCore Technology PartnerTypeTechnology or Integration
Description

Fortinet FortiGate integration is featured in Sekoia's integrations catalog, ingesting firewall telemetry for threat detection.

Strategic tierCore Technology PartnerTypeTechnology or Integration
Description

Palo Alto NGFW integration is featured in Sekoia's integrations catalog for network and firewall telemetry.

Strategic tierCore Technology PartnerTypeTechnology or Integration
Description

Sophos Firewall is listed in Sekoia's integrations catalog for ingesting firewall telemetry.

Strategic tierStrategic European Cybersecurity PartnerTypeTechnology or Integration
Description

Stormshield SNS integration is featured in Sekoia's integrations catalog, aligning two European cybersecurity vendors for joint sovereign offerings.

Strategic tierCore Technology PartnerTypeTechnology or Integration
Description

HarfangLab EDR integration is featured in Sekoia's integrations catalog for endpoint detection telemetry.

Strategic tierFlagship Mssp Partner (Cited Testimonial)TypeChannel Partner/ Reseller/ Distributor
Description

ConnectProtect is an MSSP that re-architected its managed XDR platform around Sekoia, citing Sekoia's AI capabilities and commercial fit (testimonial from founder & CEO Rob Gupta on the Sekoia homepage).

Strategic tierCore Technology PartnerTypeTechnology or Integration
Description

WALLIX Bastion is featured in Sekoia's integrations catalog for privileged-access telemetry ingestion.

Strategic tierCore Technology PartnerTypeTechnology or Integration
Description

Veeam Backup is listed in Sekoia's integrations catalog for backup and recovery telemetry.

Strategic tierCore Technology PartnerTypeTechnology or Integration
Description

Varonis Data Security is featured in Sekoia's integrations catalog for data-security telemetry.

Strategic tierCore Technology PartnerTypeTechnology or Integration
Description

Anomali ThreatStream is featured in Sekoia's integrations catalog, enabling threat-intelligence platform interoperability.

Strategic tierCore Technology PartnerTypeTechnology or Integration
Description

Google Workspace is listed in Sekoia's integrations catalog for productivity/identity telemetry ingestion.

Strategic tierCore Technology PartnerTypeTechnology or Integration
Description

VMware ESXi is listed in Sekoia's integrations catalog for virtualization infrastructure telemetry.

Recent move7 records

Each record includes

Date, Type, Title, Description, Source

Expansion highlight6 records

Each record includes

Type, Description

Peers10 records
TypeDirect peer
Description

CrowdStrike Falcon XDR is a direct competitor to Sekoia's AI SOC platform, offering endpoint, identity, cloud, and threat intelligence in a unified agent-based architecture for enterprise SOC teams.

TypeBroad incumbent
Description

Palo Alto's Cortex XDR is a direct XDR/SIEM competitor and Palo Alto also integrates with Sekoia's platform, illustrating overlapping detection-and-response capabilities at much larger scale.

TypeBroad incumbent
Description

Microsoft Sentinel is a leading cloud-native SIEM/XDR and a primary 'SIEM replacement' competitor to Sekoia Defend, benefiting from bundling with the broader Microsoft security and Azure stack.

TypeDirect peer
Description

SentinelOne's Singularity XDR platform competes head-on with Sekoia in autonomous, AI-driven detection and response, targeting the same enterprise SOC consolidation narrative.

TypeBroad incumbent
Description

Splunk (now part of Cisco) is a category-defining SIEM that Sekoia explicitly targets for replacement; its enterprise scale and Cisco distribution make it a key incumbent competitor.

TypeDirect peer
Description

Elastic Security offers SIEM and XDR capabilities built on the Elastic Search platform and competes with Sekoia in the cloud-native SIEM replacement market.

TypeDirect peer
Description

Exabeam is a direct competitor in AI-driven SIEM and security analytics, targeting the same SOC analyst-efficiency and threat-detection use cases as Sekoia Defend.

TypeEmerging player
Description

Arctic Wolf provides managed detection and response built on a proprietary cloud-native platform, competing with Sekoia both directly (platform) and via its own MSSP-like delivery model.

TypeBroad incumbent
Description

Trellix (formed from FireEye and McAfee Enterprise) offers a broad XDR platform that overlaps with Sekoia's detection, intelligence, and response capabilities for enterprise SOC buyers.

TypeDirect peer
Description

Devo is a cloud-native SIEM/XDR platform targeting enterprise SOC modernization, directly competing with Sekoia Defend in high-volume, AI-assisted detection and analytics.

Market position
Strengths5 records

Each record includes

Headline, Details, Source

Weaknesses4 records

Each record includes

Headline, Details, Source

Competitive moat6 records

Each record includes

Type, Details

Key risks6 records

Each record includes

Headline, Details, Source

Key highlights7 records

Each record includes

Headline, Details, Source

Customer concentration

Classification, Details

Named customers4 records

Each record includes

Name, Industry, Type, Use case, Source, UUID

Segment6 records

Each record includes

Title, Type, Primary, Description, Pain point addressed, Use case, Source

Ideal customer profile3 records

Each record includes

Profile, Firmographic size, Sales motion, Sales cycle length, Buying structure, Purchase trigger, Buyer persona, Geography, Industry vertical, Primary use case, Description, Pain points, Evidence proof points, Target buyer

Technology focused
Yes
API detail
Has APIbool
No

Docs URL, Description

Integration22 records

Each record includes

Title, Type, Description, Source

AI capability11 records

Each record includes

Type, Description, Source

AI maturity
App detail

Has app

Feature8 records

Each record includes

Title, Differentiator, Description, Source

Core technology
Revenue estimate
Valuation estimate
Number of profiles
Profiles1 record

Each record includes

Name, Designation, Designation category, Overview, Profile commentary, Source

No data
Compliance1 record

Each record includes

Name, Class, Description

Funding overview

Funding stage, Last funding date, Total funding USD

Funding rounds4 records

Each record includes

Round, Amount USD, Date, Pre money valuation, Total investors, Investors, News

Investors10 records

Each record includes

Name, Type, Date of entry, Rounds participated, Website

Funding detail is available on the Subscription and Enterprise plan.Contact sales →

M&A

Each record includes

Name, Acquisition type, Announced date, Completed date, Status, Website, News

Investment

Each record includes

Name, Round, Announced date, Lead investor, Website, News

M&A and investment is available on the Subscription and Enterprise plan.Contact sales →

Sekoia.io

Extended Detection and Response (XDR) / Security Operations Platformsekoia.io

Sekoia.io is a French cybersecurity company that provides an agentic AI SOC platform combining SIEM, CTI, CAASM, and AI SOC agents to enterprises, governments, and MSSPs for automated threat detection, investigation, and response.

What Sekoia.io does

Sekoia.io is a France-based (Paris, with a Rennes presence) cybersecurity software company that sells an agentic AI Security Operations Center (SOC) platform to enterprises, government agencies, and managed security service providers (MSSPs). The platform bundles four product modules — Sekoia Defend (a cloud-native SIEM replacement), Sekoia Intelligence (cyber threat intelligence), Sekoia Reveal (CAASM, or cyber asset attack surface management), and Sekoia Elevate (AI SOC agents for autonomous triage, investigation, and response) — under a single AI engine that correlates logs, signals, threat intel, and behavioral analytics into high-context alerts and a one-click course of action. The platform is differentiated by an in-house Threat Detection & Research (TDR) team whose original adversary research feeds the detection rules and is cited in major outlets (The Hacker News, SecurityWeek, ZDNet, Le Monde), and by a 'Made in EU' positioning targeted at organizations subject to NIS2 and DORA.

The company generates revenue primarily through annual recurring subscriptions sold via two motions: a direct enterprise sales-led motion (a prominent 'Get a demo' / 'Speak to a Sekoia expert' CTA on the website, with quote-based pricing and named logos including NATO and URSSAF) and a channel partner program aimed at MSSPs and resellers (Sekoia University, partner portal, and a 'Become a partner' funnel). Additional revenue comes from professional services and training delivered through Sekoia University. Customer segments span government, healthcare, technology, energy & utilities, and manufacturing, with MSSP identified as the primary segment.

Sekoia has raised €60 million cumulatively — a €35 million Series A (May 2023, co-led by Banque des Territoires and Bright Pixel) and a €26 million Series B (April 2025, led by Revaia) — and is operating with 101-250 employees. Its go-to-market has expanded beyond France into multiple European countries, the United States, Asia, and the Middle East, accelerated by a strategic partnership with Thales (October 2025) and reinforced by an ESET PROTECT integration (May 2026) that is jointly marketed as European sovereign technology. The company is recognized by Frost & Sullivan (Frost Radar XDR 2024 Leader), Gartner (2025), and Forrester (XDR Landscape Q1 2026).

Sekoia.io firmographics

Firmographics
Name
Sekoia.io
Legal name
Sekoia
Website
https://sekoia.io
Company type
Private
Founded year
2022
Operating status
Operating
Headcount range
101–250 employees
Short description
Sekoia.io is a French cybersecurity company that provides an agentic AI SOC platform combining SIEM, CTI, CAASM, and AI SOC agents to enterprises, governments, and MSSPs for automated threat detection, investigation, and response.
Ownership category
akta.pro rank

Sekoia.io industry classification

Industry
Product category
Extended Detection and Response (XDR) / Security Operations Platform
NAICS
Computer Systems Design and Related Services (54151)
SIC
Services-Computer Integrated Systems Design (7373)
akta.pro primary industry
Security Operations Center (SOC) as a Service (BPAEADAB)
akta.pro secondary industry
Threat Intelligence Services (BPAEADAC)

Keywords

  • Extended detection response
  • Security operations platform
  • Threat intelligence platform
  • Security information management
  • Managed security services

Where Sekoia.io is headquartered

Location

Headquarters

HQ city
Rennes
HQ country
France
HQ region
Europe

Offices6 records

Markets served

Sekoia.io business model

Business model
GTM type
B2B
Offering type
Software
Cost components
Technology or R&D, Personnel, Marketing or Sales, Infrastructure, Operations

Revenue model

  1. Security-as-a-Service Subscription: Recurring subscription to Sekoia's XDR/SIEM platform that monitors threats and integrates with existing cybersecurity solutions. Delivered as a cloud-native service.
  2. Managed SOC / MSSP Channel Revenue: Revenue distributed through a partner network of MSSPs and resellers (e.g., ConnectProtect) who deliver Sekoia's platform as part of their managed detection and response services.
  3. Professional Services and Training: Revenue from training courses, Sekoia University, and partner enablement programs supporting deployment and ongoing use of the platform.

Pricing tiers

ModelBillingPrice
SubscriptionAnnualQuote-based subscription for the Sekoia AI SOC Platform (Defend, Intelligence, Reveal, Elevate)

Go-to-market motion4 records

Distribution channels4 records

Marketing channels8 records

Sekoia.io product offering

Product offering

Core offering

Sekoia.io provides an autonomous, agentic AI SOC platform that combines four integrated products — Sekoia Defend (SIEM), Sekoia Intelligence (CTI), Sekoia Reveal (CAASM), and Sekoia Elevate (AI SOC agents) — to detect, investigate, and respond to cyber threats in real time. The platform is fueled by Sekoia's in-house Threat Detection & Research (TDR) team and is sold to enterprise security teams and MSSPs across Europe, the US, Asia, and the Middle East.

Product overview

Sekoia.io offers a unified, agentic Security Operations (SOC) platform, sold as a core AI SOC Platform that bundles four named modules: Sekoia Defend (SIEM), Sekoia Intelligence (CTI), Sekoia Reveal (CAASM), and Sekoia Elevate (AI SOC agents). The platform is augmented by services from the in-house Sekoia Threat Detection & Research (TDR) team, Sekoia University training courses, and a Partner Portal for MSSPs and resellers, with bi-directional integrations across the customer's existing security and IT stack.

Differentiator

Problem solved

Functional benefit

Brands

  • Sekoia Defend: SIEM product within the Sekoia unified SOC platform.
  • Sekoia Intelligence
  • Sekoia Reveal
  • Sekoia Elevate

Products and services

  • Sekoia AI SOC Platform Unified, agentic Security Operations platform that combines detection, hunting, investigation, and response into a single workflow driven by autonomous AI agents. It funnels logs, signals, and threat intelligence through one AI engine that correlates activity and presents analysts with high-context alerts and a one-click course of action. Sold to enterprise SOC teams and MSSPs.
  • Sekoia Threat Detection & Research (TDR) Team In-house threat intelligence research service that produces original adversary research, FLINT reports, and continuously updated detection content that fuels Sekoia's platform and is available to customers as part of the intelligence subscription.
  • Sekoia University / Training Courses Formal paid training portal and courses that partners and customers can purchase to build skills on the Sekoia platform and the MSSP partner program.

Quantifiable outcome

  • Goal of protecting more than 3.5 million employees across Europe within two years (stated at Series A).
  • +3 more outcomes

Companies that use Sekoia.io

Customer profile

Named customers4 records

Segments6 records

Ideal customer profiles3 records

Sekoia.io technology and API

Technology

Technology focussed Yes

API detail

Has API
No
API docs
API detail

Core technology

AI maturity

App detail

Integration22 records

AI capability11 records

Feature8 records

Sekoia.io partnerships and signals

Strategic signal

Partnerships

18 partnerships are on record, tiered core technology partner, flagship strategic partner for international expansion, strategic european cybersecurity partner and flagship mssp partner (cited testimonial).

  • ESETcore technology partnerTechnology or Integration · 18 May 2026ESET and Sekoia announced an integration of the ESET PROTECT platform with Sekoia Defend to enhance AI-driven threat detection and response for SOC teams. Endpoint telemetry and alerts from ESET PROTECT are forwarded into Sekoia Defend, where they are enriched with threat intelligence, processed via detection rules, and correlated into full-context alerts. Both companies market the joint offering as trusted 'Made in EU' technology.
  • Thalesflagship strategic partner for international expansionStrategic or Co-development Partner · 12 October 2025Thales and Sekoia announced a partnership to expand Sekoia's international presence, including distribution of Sekoia's XDR platform through Thales's channels and joint cybersecurity solutions for organizations with high data-protection needs in France and abroad. The collaboration emphasizes AI-powered threat intelligence.
  • Cloudflarecore technology partnerTechnology or IntegrationCloudflare is featured as a primary technology integration within Sekoia's integration framework, enabling bi-directional exchange of signals, alerts, and context across the security stack.
  • Microsoft (Entra ID / Azure)core technology partnerTechnology or IntegrationMicrosoft Entra ID and Azure Windows integrations are featured prominently in Sekoia's integrations catalog, allowing identity and cloud telemetry to flow into Sekoia's detection and response workflows.
  • AWS (CloudTrail)core technology partnerTechnology or IntegrationAWS CloudTrail is featured in Sekoia's integrations catalog for cloud-audit telemetry ingestion into the Sekoia platform.
  • Cisco (Secure Firewall, Meraki MX)core technology partnerTechnology or IntegrationCisco Secure Firewall and Cisco Meraki MX integrations enable network telemetry to feed Sekoia's SOC platform for detection and response.
  • Fortinet (FortiGate)core technology partnerTechnology or IntegrationFortinet FortiGate integration is featured in Sekoia's integrations catalog, ingesting firewall telemetry for threat detection.
  • Palo Alto Networks (NGFW)core technology partnerTechnology or IntegrationPalo Alto NGFW integration is featured in Sekoia's integrations catalog for network and firewall telemetry.
  • Sophos (Firewall)core technology partnerTechnology or IntegrationSophos Firewall is listed in Sekoia's integrations catalog for ingesting firewall telemetry.
  • Stormshield (SNS)strategic european cybersecurity partnerTechnology or IntegrationStormshield SNS integration is featured in Sekoia's integrations catalog, aligning two European cybersecurity vendors for joint sovereign offerings.
  • HarfangLab (EDR)core technology partnerTechnology or IntegrationHarfangLab EDR integration is featured in Sekoia's integrations catalog for endpoint detection telemetry.
  • ConnectProtectflagship mssp partner (cited testimonial)Channel Partner/ Reseller/ DistributorConnectProtect is an MSSP that re-architected its managed XDR platform around Sekoia, citing Sekoia's AI capabilities and commercial fit (testimonial from founder & CEO Rob Gupta on the Sekoia homepage).
  • WALLIX (Bastion)core technology partnerTechnology or IntegrationWALLIX Bastion is featured in Sekoia's integrations catalog for privileged-access telemetry ingestion.
  • Veeam (Backup)core technology partnerTechnology or IntegrationVeeam Backup is listed in Sekoia's integrations catalog for backup and recovery telemetry.
  • Varonis (Data Security)core technology partnerTechnology or IntegrationVaronis Data Security is featured in Sekoia's integrations catalog for data-security telemetry.
  • Anomali (ThreatStream)core technology partnerTechnology or IntegrationAnomali ThreatStream is featured in Sekoia's integrations catalog, enabling threat-intelligence platform interoperability.
  • Google (Workspace)core technology partnerTechnology or IntegrationGoogle Workspace is listed in Sekoia's integrations catalog for productivity/identity telemetry ingestion.
  • VMware (ESXi)core technology partnerTechnology or IntegrationVMware ESXi is listed in Sekoia's integrations catalog for virtualization infrastructure telemetry.

Scale indicators8 records

Recent moves7 records

Expansion highlights6 records

Sekoia.io competitors and assessment

Company assessment

Direct peers

  • CrowdStrike: CrowdStrike Falcon XDR is a direct competitor to Sekoia's AI SOC platform, offering endpoint, identity, cloud, and threat intelligence in a unified agent-based architecture for enterprise SOC teams.
  • SentinelOne: SentinelOne's Singularity XDR platform competes head-on with Sekoia in autonomous, AI-driven detection and response, targeting the same enterprise SOC consolidation narrative.
  • Elastic Security: Elastic Security offers SIEM and XDR capabilities built on the Elastic Search platform and competes with Sekoia in the cloud-native SIEM replacement market.
  • Exabeam: Exabeam is a direct competitor in AI-driven SIEM and security analytics, targeting the same SOC analyst-efficiency and threat-detection use cases as Sekoia Defend.
  • Devo Technology: Devo is a cloud-native SIEM/XDR platform targeting enterprise SOC modernization, directly competing with Sekoia Defend in high-volume, AI-assisted detection and analytics.

Broad incumbents

  • Palo Alto Networks: Palo Alto's Cortex XDR is a direct XDR/SIEM competitor and Palo Alto also integrates with Sekoia's platform, illustrating overlapping detection-and-response capabilities at much larger scale.
  • Microsoft: Microsoft Sentinel is a leading cloud-native SIEM/XDR and a primary 'SIEM replacement' competitor to Sekoia Defend, benefiting from bundling with the broader Microsoft security and Azure stack.
  • Splunk: Splunk (now part of Cisco) is a category-defining SIEM that Sekoia explicitly targets for replacement; its enterprise scale and Cisco distribution make it a key incumbent competitor.
  • Trellix: Trellix (formed from FireEye and McAfee Enterprise) offers a broad XDR platform that overlaps with Sekoia's detection, intelligence, and response capabilities for enterprise SOC buyers.

Emerging players

  • Arctic Wolf: Arctic Wolf provides managed detection and response built on a proprietary cloud-native platform, competing with Sekoia both directly (platform) and via its own MSSP-like delivery model.

Market position

Strengths5 records

Weaknesses4 records

Competitive moat6 records

Key risks6 records

Key highlights7 records

Customer concentration

Sekoia.io social profiles

Digital presence

Sekoia.io compliance and trust

Trust signal

Compliance1 record

Sekoia.io financial estimates

Financial estimate

Revenue estimate

Valuation estimate

Sekoia.io leadership team

Management profile

Number of profiles

Profiles1 record

Sekoia.io funding detail

Funding detail

Funding overview

Funding rounds4 records

Investors10 records

Funding detail is available on the Subscription and Enterprise plan.Contact sales →

Sekoia.io M&A and investment

M&A and investment

M&A

Investments

M&A and investment is available on the Subscription and Enterprise plan.Contact sales →

Frequently asked questions about Sekoia.io

What does Sekoia.io do?

Sekoia.io provides an autonomous, agentic AI SOC platform that combines four integrated products — Sekoia Defend (SIEM), Sekoia Intelligence (CTI), Sekoia Reveal (CAASM), and Sekoia Elevate (AI SOC agents) — to detect, investigate, and respond to cyber threats in real time. The platform is fueled by Sekoia's in-house Threat Detection & Research (TDR) team and is sold to enterprise security teams and MSSPs across Europe, the US, Asia, and the Middle East.

Is Sekoia.io a public or private company?

Sekoia.io is a private company. It is classified as venture growth investor backed and is currently operating.

When was Sekoia.io founded?

Sekoia.io was founded in 2022. It employs 101 to 250 people.

Where is Sekoia.io based?

Sekoia.io is headquartered in Rennes, France, in the Europe region.

How does Sekoia.io make money?

Three revenue lines are on record. Security-as-a-Service Subscription is the primary driver. The others are managed SOC / MSSP Channel Revenue and professional Services and Training.

Who are Sekoia.io's main competitors?

Direct peers on record are CrowdStrike, SentinelOne, Elastic Security, Exabeam and Devo Technology. Broad incumbents are Palo Alto Networks, Microsoft, Splunk and Trellix. Arctic Wolf is listed as an emerging player.

Does Sekoia.io have an API?

No public API is recorded for Sekoia.io.

What industry is Sekoia.io in?

Sekoia.io's product category is Extended Detection and Response (XDR) / Security Operations Platform. Its primary akta.pro industry code is BPAEADAB, Security Operations Center (SOC) as a Service, with a secondary code of BPAEADAC, Threat Intelligence Services. Its NAICS code is 54151 and its SIC code is 7373.

Unlock the full company data

50 free credits on sign-up, no credit card required.

Contact sales
Live signals
Financial PostSekoia Elevate brings autonomous cyber defense to life: from security data to verdict in 99 secondsSekoia announced general availability of its Elevate agentic AI layer, which delivers audit-ready verdicts in 99 seconds on average. The platform completed over 425,000 autonomous investigations across 2,000 customers, with MSSPs reporting up to a fivefold reduction in investigation time.FinanzNachrichten.deSekoia Elevate macht autonome Cyberabwehr zur Realität: von Sicherheitsmeldungen zur Bewertung in 99 SekundenSekoia announced general availability of its Elevate agentive AI layer for autonomous cyber defense, which converts security alerts into auditable assessments in 99 seconds. The system performed over 425,000 autonomous investigations during early access, with MSSPs reporting up to five times faster investigations.ReutersFrance's Sekoia rolls out AI cybersecurity platform to its clientsSekoia rolled out its AI cybersecurity platform Elevate to clients after an early access program with about 2,000 customers. The company said investigation times were cut by up to fivefold, and CEO Freddy Milesi said the system around the model, not the model itself, is the moat.Channel NewsAsiaFrance's Sekoia rolls out AI cybersecurity platform to its clientsSekoia rolled out its AI cybersecurity platform Elevate to clients after an early access program with about 2,000 customers. The company reported investigation times cut by up to fivefold, and CEO Freddy Milesi said the system around the model, not the model itself, is the moat.MarketScreenerFrance's Sekoia rolls out AI cybersecurity platform to its clientsSekoia rolled out its AI cybersecurity platform Elevate to clients after an early access program with about 2,000 customers. Service providers reported investigation times cut by up to fivefold. The company, founded in 2022, lists EDF, Vinci, and the French armed forces ministry among its clients.The Times of IndiaFrance's Sekoia rolls out AI cybersecurity platform to its clients - The Economic TimesSekoia rolled out its AI cybersecurity platform Elevate to clients after an early access program with about 2,000 customers. The platform allows clients to connect their preferred AI model for autonomous threat analysis, and early testers reported investigation times cut by up to fivefold. CEO Freddy Milesi said the system around the model, not the model itself, is the moat.FinanzNachrichten.deH.O.L.M. Security Sweden AB: Holm Security und Sekoia schließen sich zusammen, um SOC-Teams einen umfassenden Überblick über Ressourcen und Risiken in den Bereichen IT und OT zu bietenHolm Security and Sekoia announced an integration that imports Holm's vulnerability and asset data into Sekoia's SOC platform, giving analysts context for incident response. The integration is available to end customers and MSSPs, and a joint webinar is scheduled for October 15.BleepingcomputerARToken PhaaS exposes EvilTokens' Microsoft 365 phishing toolkitCisco Talos researchers discovered ARToken PhaaS, an affiliate of EvilTokens, exposing over 80 API endpoints for Microsoft 365 compromise. The platform enables token theft, persistent access via Primary Refresh Tokens, and BEC automation, with identical API calls to EvilTokens. It also supports multi-tenant affiliate campaigns and AI-driven fraud workflows.Cyber Security NewsHackers Use Mapbox Dead-Drop C2 and Python RAT to Target Vulnerability ResearchersSecurity researchers at Sekoia have uncovered a long-running campaign called ChocoPoC that hides a Python remote access trojan inside poisoned proof-of-concept exploit code distributed through GitHub repositories and PyPI packages, targeting vulnerability researchers who download the malicious code. The malware uses Mapbox's legitimate Datasets API as a dead-drop command-and-control channel, blending malicious traffic with normal cloud requests to evade detection. Active since at least 2023, the campaign exploits researchers who frequently disable security tools while testing exploits, allowing the RAT to steal files, execute commands, and harvest browser data.Security BoulevardChocoPoC Malware Targets Researchers Through Trojanized PoC ExploitsCybersecurity firm Sekoia identified a malware campaign dubbed ChocoPoC that targets security researchers through at least seven trojanized proof-of-concept exploit repositories hosted on GitHub. The attack uses a dependency-based delivery method where malicious Python packages (frint and skytext) are added to PoC repositories, ultimately delivering a remote access trojan that can execute arbitrary code, steal browser credentials, collect files, and exfiltrate data via Mapbox datasets. The malicious skytext package was downloaded approximately 2,400 times, predominantly on Linux systems, with increased downloads correlating to trending vulnerability disclosures.