TrojAI
TrojAI provides an enterprise AI security platform offering automated red teaming (Detect) and a real-time AI firewall (Defend, plus Defend for MCP) that protects Fortune 500 companies, AI-first organizations, and MSSPs from prompt injection, jailbreaks, and data exfiltration in generative and agentic AI deployments.
- Company typePrivate
- Founded2019
- HeadquartersSaint John, Canada
- Headcount11–50
- GTM typeB2B
- OfferingSoftware
What TrojAI does
TrojAI is an enterprise AI security company founded in New Brunswick, Canada with a secondary US presence in Boston, Massachusetts. It builds a platform that protects organizations deploying generative AI, large language models, and agentic AI systems from model-layer attacks such as prompt injection, jailbreaks, data leakage, and PII exfiltration. The company was acquired by A10 Networks (NYSE: ATEN) in June 2026.
The product portfolio is organized around the AI application lifecycle. TrojAI Detect provides automated, agent-led red teaming at build time, simulating adversarial prompts against models before deployment. TrojAI Defend is a real-time AI firewall that inspects live inference traffic to block malicious prompts, jailbreak attempts, and data exfiltration; the company has publicly cited blocking 504,000+ firewall events. TrojAI Defend for MCP extends this runtime protection to the Model Context Protocol traffic generated by agentic AI systems. The platform is mapped to OWASP, MITRE ATLAS, and NIST AI risk frameworks, and the CTO represents New Brunswick on the ISO/IEC SC 42 AI standards committee.
TrojAI commercializes through a freemium tier for individual developers plus enterprise subscriptions targeted at Fortune 500 companies, AI-first organizations, and managed security service providers (MSSPs). Distribution is layered: direct enterprise sales in North America, the TAPP (TrojAI AI Protection Partner) channel program for MSSPs and resellers, and integrations with major platforms including OpenAI, Microsoft (via the Pegasus Program), MongoDB, JFrog, Wiz, and TrueFoundry. The company raised approximately $8.1M USD equivalent across two seed rounds (CAD$3M in January 2022 and $5.75M USD in April 2024), operating with a headcount of 11-50 employees prior to acquisition.
TrojAI firmographics
Firmographics- Name
- TrojAI
- Legal name
- TrojAI, Inc.
- Website
- https://troj.ai
- Company type
- Private
- Founded year
- 2019
- Operating status
- Acquired
- Headcount range
- 11–50 employees
- Short description
- TrojAI provides an enterprise AI security platform offering automated red teaming (Detect) and a real-time AI firewall (Defend, plus Defend for MCP) that protects Fortune 500 companies, AI-first organizations, and MSSPs from prompt injection, jailbreaks, and data exfiltration in generative and agentic AI deployments.
- Ownership category
- akta.pro rank
TrojAI industry classification
Industry- Product category
- AI Security Software
- NAICS
- Computer Systems Design and Related Services (5415), Security Systems Services (56162)
- SIC
- Services-Computer Integrated Systems Design (7373)
- akta.pro primary industry
- Responsible AI, Security & Privacy Platforms (Safety, Guardrails, PII) (HDAEANAG)
- akta.pro secondary industries
- Model Security Testing & Red Teaming (adversarial ML, jailbreaks) (HDAAAKAC), Secure Model Deployment & Runtime Protection (sandboxing, isolation) (HDAAAKAH), Prompt Security & Injection Defense (HDAAAKAE), Safety & Alignment Evaluation (red-teaming, harmful capability testing) (HDAAAMAL), Enterprise AI Governance, Risk & Compliance Platforms (Model Risk, Audit, Policies) (HDAEANAE)
Keywords
Where TrojAI is headquartered
LocationHeadquarters
- HQ city
- Saint John
- HQ country
- Canada
- HQ region
- North America
Offices3 records
Markets served
TrojAI business model
Business model- GTM type
- B2B
- Offering type
- Software
- Cost components
- Technology or R&D, Personnel, Marketing or Sales, Infrastructure, Operations
Revenue model
- SaaS Platform Subscription: Subscription-based SaaS platform providing access to TrojAI Detect and TrojAI Defend products. Platform offered as SaaS package with optional self-hosted deployment. Annual and multi-year contract options available.
- Enterprise Platform License: Commercial subscription packages for corporations providing full platform access with enterprise features, support, and SLAs. Separate from free individual license tier.
- Self-Hosted Deployment: Self-hosted package option where subscribers can deactivate aggregate data collection. Provides enterprise data sovereignty for organizations with strict security requirements.
Pricing tiers
| Model | Billing | Price |
|---|---|---|
| Freemium | Others | Free Individual Tier |
| Subscription | Annual | Commercial Enterprise Subscription |
| Subscription | Annual | Self-Hosted Enterprise |
Go-to-market motion3 records
Distribution channels4 records
Marketing channels6 records
TrojAI product offering
Product offeringCore offering
TrojAI provides an enterprise AI security platform that combines build-time automated red teaming (TrojAI Detect) with runtime AI firewall protection (TrojAI Defend) to secure AI models, applications, and agentic workflows against adversarial attacks. The platform identifies vulnerabilities through agentic multi-turn attack simulations aligned to OWASP, MITRE ATLAS, and NIST AI RMF frameworks before deployment, then continuously monitors and blocks prompt injection, jailbreaking, data leakage, DoS attacks, and toxic content in production. A specialized module, TrojAI Defend for MCP, extends runtime defense to Model Context Protocol servers and AI agent workflows.
Product overview
TrojAI is an enterprise AI security platform offering a modular product portfolio centered on two core products — TrojAI Detect and TrojAI Defend — plus a specialized add-on module, TrojAI Defend for MCP. TrojAI Detect operates at build time as an automated red teaming platform that proactively identifies AI model vulnerabilities through agentic and multi-turn attack simulations. TrojAI Defend operates at runtime as an AI application firewall providing real-time threat protection across on-premises, cloud, and hybrid environments. TrojAI Defend for MCP extends runtime defense to Model Context Protocol (MCP) servers and agentic AI workflows. The platform is designed for Fortune 500 enterprises deploying generative AI, AI agents, and large language models at scale.
Differentiator
Problem solved
Functional benefit
Brands
- TrojAI Detect: AI security platform product providing automated red teaming that identifies weaknesses and vulnerabilities in AI models at build time before deployment.
- TrojAI Defend
- TrojAI Defend for MCP
Products and services
- TrojAI Detect Automated red teaming platform that identifies vulnerabilities and risky behaviors in AI models before deployment. Performs AI model pentesting including agentic and multi-turn attacks, evaluating model behavior against OWASP, MITRE, and NIST AI security frameworks to deliver remediation guidance at build time. Targets security and AI/ML teams at enterprises deploying AI models in production.
- TrojAI Defend Real-time AI application firewall that protects AI models and applications from adversarial attacks during production. Monitors inputs and outputs, blocks prompt injection, jailbreaking, data leakage, DoS attacks, and toxic content, and enforces custom safety policies with full runtime visibility. Designed for enterprise security teams running generative AI, LLMs, and agentic applications.
- TrojAI Defend for MCP Specialized runtime defense module for the Model Context Protocol (MCP). Monitors MCP server traffic, provides real-time visibility, policy analysis, and runtime enforcement to prevent unauthorized or malicious activity in agentic AI workflows that use MCP for connecting AI models to external data sources and applications. Targets organizations adopting the Model Context Protocol open standard.
Quantifiable outcome
- Attack detection rates: Data Leakage 94%, Prompt Injection 89%, PII Leakage 78%, Jailbreak 50%
- +1 more outcomes
Companies that use TrojAI
Customer profileSegments3 records
Ideal customer profiles3 records
TrojAI technology and API
TechnologyTechnology focussed Yes
API detail
- Has API
- No
- API docs
- API detail
Core technology
AI maturity
App detail
Integration8 records
AI capability9 records
Feature7 records
TrojAI partnerships and signals
Strategic signalPartnerships
Nine partnerships are on record, tiered core and minor.
- WizcoreTrojAI integrated with Wiz's AI Application Protection Platform (AI-APP). The integration connects Wiz's AI asset discovery capabilities with TrojAI's AI security testing and runtime protection, providing comprehensive end-to-end AI security across code, cloud, and runtime environments.
- JFrogcoreIntegration securing the AI supply chain with TrojAI's model scanning, automated red teaming, compliance evidence, and GenAI runtime defense combined with JFrog's DevOps and software supply chain platform.
- OpenAIcoreStrategic integration with OpenAI's ChatGPT Enterprise Compliance API providing enhanced AI security and compliance capabilities for enterprises using OpenAI's platform.
- Cloud Security AlliancecoreFounding AI Corporate Member of Cloud Security Alliance, the world's leading organization dedicated to defining cloud security standards. TrojAI serves as strategic partner in CSA's AI Safety Ambassador program helping shape secure AI standards.
- Microsoft for StartupscoreMember of Microsoft for Startups Pegasus Program providing access to Azure AI Foundry, Azure OpenAI Service support, and go-to-market resources. Kevin Magee noted TrojAI's alignment with Microsoft's mission to empower startups with secure AI solutions.
- MongoDBcoreIntegration securing MongoDB Atlas vector databases and RAG-based AI applications. TrojAI Defend monitors traffic between AI applications and LLMs, protecting against prompt injections, jailbreaks, and data leakage while validating data consistency in vector database workflows.
- 1LabsminorListed among team expertise/experience; cybersecurity company specializing in Total Security Intelligence.
- Recorded FutureminorListed among team expertise/experience; threat intelligence company.
- CycodeminorListed among team expertise/experience; code security company.
Scale indicators5 records
Recent moves6 records
Expansion highlights6 records
TrojAI competitors and assessment
Company assessmentBroad incumbents
- CrowdStrike: Endpoint and cloud security leader expanding into AI workload security, including agentic AI monitoring. Competes with TrojAI for enterprise security budget through bundled platform offerings.
- Palo Alto Networks: Cybersecurity incumbent with Prisma AI Security addressing AI workload protection, model scanning, and runtime safety. Competes with TrojAI at the platform level, bundling AI security into broader enterprise security contracts.
- Wiz: Cloud security leader whose AI Application Protection Platform (AI-APP) integrates with TrojAI but also offers overlapping AI asset discovery, posture management, and threat detection. Acts as both a partner and a potential competitor for AI security budget.
Direct peers
- HiddenLayer: AI security company offering adversarial ML defense, model scanning, and threat detection for AI/ML applications. Directly competes with both TrojAI Detect (red teaming) and TrojAI Defend (runtime protection) in the same enterprise buyer segment.
- Protect AI: AI/ML security platform providing model scanning, automated red teaming, and runtime security for LLMs and ML models. Closely comparable to TrojAI Detect in build-time vulnerability assessment and to TrojAI Defend in production protection.
- Lakera: AI security platform centered on prompt injection defense and LLM guardrails (Lakera Guard). Directly competes with TrojAI Defend for runtime prompt injection, jailbreak, and data leakage protection across enterprise LLM deployments.
- Calypso AI: AI security platform providing red teaming, model evaluation, and security testing for LLMs and ML models. Directly competes with TrojAI Detect on build-time AI security assessment and policy enforcement.
- Prompt Security: AI security vendor focused on prompt injection, data leakage prevention, and compliance for LLM-powered applications. Closely comparable to TrojAI Defend's runtime protection capabilities across enterprise GenAI deployments.
- Robust Intelligence (Cisco AI Defense): AI security platform offering model validation, red teaming, and AI firewall capabilities, acquired by Cisco in 2024. Now competing against TrojAI as part of Cisco's broader security portfolio with bundled enterprise distribution.
Emerging players
- Adversa AI: Specialized AI security research and red teaming firm focused on adversarial ML and LLM vulnerabilities. Comparable to TrojAI Detect's red teaming focus with research-driven differentiation rather than platform breadth.
Market position
Strengths5 records
Weaknesses5 records
Competitive moat6 records
Key risks6 records
Key highlights7 records
Customer concentration
TrojAI social profiles
Digital presenceTrojAI compliance and trust
Trust signalCompliance4 records
TrojAI financial estimates
Financial estimateRevenue estimate
Valuation estimate
TrojAI leadership team
Management profileNumber of profiles
Profiles3 records
TrojAI funding detail
Funding detailFunding overview
Funding rounds5 records
Investors8 records
Funding detail is available on the Subscription and Enterprise plan.Contact sales →
TrojAI M&A and investment
M&A and investmentM&A
Investments
M&A and investment is available on the Subscription and Enterprise plan.Contact sales →
Frequently asked questions about TrojAI
What does TrojAI do?
TrojAI provides an enterprise AI security platform that combines build-time automated red teaming (TrojAI Detect) with runtime AI firewall protection (TrojAI Defend) to secure AI models, applications, and agentic workflows against adversarial attacks. The platform identifies vulnerabilities through agentic multi-turn attack simulations aligned to OWASP, MITRE ATLAS, and NIST AI RMF frameworks before deployment, then continuously monitors and blocks prompt injection, jailbreaking, data leakage, DoS attacks, and toxic content in production. A specialized module, TrojAI Defend for MCP, extends runtime defense to Model Context Protocol servers and AI agent workflows.
Is TrojAI a public or private company?
TrojAI is a private company. It is classified as corporate owned and is currently acquired.
When was TrojAI founded?
TrojAI was founded in 2019. It employs 11 to 50 people.
Where is TrojAI based?
TrojAI is headquartered in Saint John, Canada, in the North America region.
How does TrojAI make money?
Three revenue lines are on record. SaaS Platform Subscription is the primary driver. The others are enterprise Platform License and self-Hosted Deployment.
Who are TrojAI's main competitors?
Broad incumbents on record are CrowdStrike, Palo Alto Networks and Wiz. Direct peers are HiddenLayer, Protect AI, Lakera, Calypso AI, Prompt Security and Robust Intelligence (Cisco AI Defense). Adversa AI is listed as an emerging player.
Does TrojAI have an API?
No public API is recorded for TrojAI.
What industry is TrojAI in?
TrojAI's product category is AI Security Software. Its primary akta.pro industry code is HDAEANAG, Responsible AI, Security & Privacy Platforms (Safety, Guardrails, PII), with a secondary code of HDAAAKAC, Model Security Testing & Red Teaming (adversarial ML, jailbreaks). Its NAICS code is 5415 and its SIC code is 7373.