SecureG
SecureG provides PKI-based trusted identity infrastructure for telecom operators, IoT manufacturers, critical infrastructure operators, federal agencies, and enterprises deploying AI agents, via products including MCP Gateway, PKI Foundation, Supply Chain Traceability, Branded Calling ID, and PKIaaS.
- Company typePrivate
- Founded2019
- HeadquartersHerndon, United States
- Headcount11–50
- GTM typeB2B
- OfferingSoftware
What SecureG does
SecureG delivers PKI-based trusted identity and control infrastructure for critical systems, supply chains, and AI deployments. Founded in 2019 and headquartered in Virginia, the company provides a portfolio of products built on a common cryptographic backbone: a hardened PKI Foundation / Root of Trust (described as the most secure commercially available PKI, housed in a fortified facility with armed protection and offline vault storage); PKIaaS (CA, RA, OCSP, and ACME automation, deployable on cloud, on-premises, or hybrid, with FedRAMP and WebTrust certifications); Branded Calling ID (BCID), a STIR/SHAKEN-based Rich Call Data ecosystem for which CTIA designated SecureG as the sole root of trust; Supply Chain Traceability (SCT) for verifying hardware and software provenance with zero-touch provisioning and a centralized registry; the MCP Gateway for identity, authentication, authorization, and audit of AI agents and Model Context Protocol communications; and SecureG Analytics, a certificate-analytics add-on that produces Cryptographic Bill of Materials (CBOM) and supports post-quantum cryptography migration.
The company serves telecom operators and 5G network equipment manufacturers (via BCID and the NTIA-funded O-RAN program with Fujitsu), IoT and semiconductor manufacturers needing device identity, critical infrastructure and OT operators subject to NERC/FERC/NIST requirements, federal agencies preparing for post-quantum cryptography under Executive Order 14028, enterprises deploying agentic AI, and enterprises seeking branded caller ID. Revenue is generated through multi-year enterprise subscriptions for PKIaaS, transaction fees on confirmed-delivered BCID calls, usage-based certificate issuance, and professional services for policy building, key ceremonies, and audit. Distribution is primarily direct enterprise field sales with white-glove onboarding, supplemented by inside sales for PKIaaS and a partnership network spanning CTIA, MITRE Engenuity, SunSpec Alliance, Crypto4a, NumHub, Authorize.id, and Tenable.
SecureG was conceived by MITRE Engenuity and CTIA to establish trust for 5G networks and machine-to-machine communications. Its board includes representatives from MITRE (Chairman Charles Clancy, an IEEE Fellow), CTIA (Rocco Carlitti, John Marinho), and Blu Ventures (Dendy Young, Steven Chen); technical advisors include RFC authors Sean Turner and Russ Housley. The company holds SOC 2, FedRAMP, and WebTrust certifications, and CEO Damon Kachur previously managed PKI infrastructure for over one billion IoT devices and 350 million subscribers at VeriSign and Symantec.
SecureG firmographics
Firmographics- Name
- SecureG
- Legal name
- SecureG Inc
- Website
- https://secureg.io
- Company type
- Private
- Founded year
- 2019
- Operating status
- Operating
- Headcount range
- 11–50 employees
- Short description
- SecureG provides PKI-based trusted identity infrastructure for telecom operators, IoT manufacturers, critical infrastructure operators, federal agencies, and enterprises deploying AI agents, via products including MCP Gateway, PKI Foundation, Supply Chain Traceability, Branded Calling ID, and PKIaaS.
- Ownership category
- akta.pro rank
SecureG industry classification
Industry- Product category
- Public Key Infrastructure (PKI) / Cybersecurity
- NAICS
- Security Systems Services (except Locksmiths) (561621), Security Systems Services (56162), Computing Infrastructure Providers, Data Processing, Web Hosting, and Related Services (518210)
- akta.pro primary industry
- Device Identity & Certificate-Based Authentication (PKI) (BPAMAEAL)
- akta.pro secondary industries
- Key Management, Encryption & Secrets Management (KMS/HSM/Vault) (HDABAHAG), Secure Communications & Encryption for Utility Networks (VPN, PKI, Key Management) (EUADANAG), Quantum-Safe PKI, Key Management & HSMs (HDAGAGAE), Secure/Encrypted Messaging (BPAMACAG)
Keywords
Where SecureG is headquartered
LocationHeadquarters
- HQ city
- Herndon
- HQ country
- United States
- HQ region
- North America
Offices2 records
Markets served
SecureG business model
Business model- GTM type
- B2B
- Offering type
- Software
- Cost components
- Personnel, Technology or R&D, Infrastructure, Operations, Marketing or Sales
Revenue model
- PKIaaS Subscription: Subscription-based PKI services including CA, RA, and ACME certificate management. Deployed on-cloud or on-premises with flexible architecture.
- Certificate Issuance and Management: Usage-based or subscription-based digital certificate issuance, validation, and lifecycle management for devices, networks, and AI agents.
- Branded Calling ID Service: Call signing service for Originating Service Providers with high-performance BCID support. Enterprises pay only for confirmed delivered branded calls.
- Advisory and Consulting Services: Strategic policy building, PKI consulting, key ceremony execution and audit, and best practices guidance for customer-specific PKI implementations.
Pricing tiers
| Model | Billing | Price |
|---|---|---|
| Subscription | Multi-year contract | Enterprise PKI Solutions - Custom quoting |
Go-to-market motion2 records
Distribution channels2 records
Marketing channels5 records
SecureG product offering
Product offeringCore offering
SecureG provides high-assurance Public Key Infrastructure (PKI) and identity-based security products for devices, AI agents, networks, and telecom systems. The company offers a hardened root of trust, certificate management, supply chain traceability, branded calling ID verification, and an MCP Gateway for AI agent authentication. Its offerings are delivered as managed services and cloud-based PKI designed for machine speed and scale.
Product overview
SecureG offers a unified platform of PKI-based security products centered on digital trust and identity infrastructure. The core portfolio includes MCP Gateway for AI agent security, Supply Chain Traceability for hardware/software provenance, PKI Foundation as the underlying root of trust, Branded Calling ID for caller authentication, and PKIaaS for flexible certificate management. SecureG Analytics provides certificate inventory and cryptographic assessment as an analytical layer. The products share a common PKI backbone and can be deployed together as an integrated security architecture or procured individually based on customer requirements.
Differentiator
Problem solved
Functional benefit
Brands
- Supply Chain Traceability (SCT): Security-focused framework for verifying the integrity and origin of hardware components through cryptographic and digital identity layer of the supply chain.
- Branded Calling ID (BCID)
- PKIaaS (PKI as a Service)
- MCP Gateway
Products and services
- PKI Foundation / Root of Trust A high-assurance public key infrastructure foundation and root of trust anchoring all SecureG identity products. Designed for enterprises, government agencies, and telecom operators that require a certified, military-grade trust anchor.
- PKIaaS (PKI as a Service) Cloud-based, automated certificate lifecycle management service with ACME-based issuance and renewal. Targets enterprises, IoT manufacturers, and government agencies needing scalable certificate management.
- MCP Gateway Identity and authentication gateway purpose-built for AI agents and machine-to-machine communications, providing provenance-aware identities for agentic AI systems.
- Supply Chain Traceability PKI-backed supply chain traceability and provenance solution for IoT manufacturers, semiconductor vendors, and critical infrastructure operators needing end-to-end chain-of-custody verification.
- Branded Calling ID (BCID) STIR/SHAKEN-based branded calling solution that cryptographically verifies enterprise call identity, displaying branded caller name, logo, and reason-for-call. Designed for enterprises, voice service providers, and consumers receiving calls.
- SecureG Analytics (CBOM) Certificate analytics and Certificate Bill of Materials (CBOM) solution providing visibility into certificate inventories across enterprise environments.
Quantifiable outcome
- 80% of consumers don't answer unknown phone calls, driving adoption of BCID branded calling
- +4 more outcomes
Companies that use SecureG
Customer profileNamed customers4 records
Segments6 records
Ideal customer profiles5 records
SecureG technology and API
TechnologyTechnology focussed Yes
API detail
- Has API
- Yes
- API docs
- API detail
Core technology
AI maturity
App detail
AI capability5 records
Feature6 records
SecureG partnerships and signals
Strategic signalPartnerships
Six partnerships are on record, tiered core.
- FujitsucoreSecureG is partnering with Fujitsu and other industry leaders to research and develop O-RAN supply chain traceability architecture. The partnership aims to reduce implementation costs and integration hurdles for O-RU suppliers and enhance the overall security posture of the O-RAN ecosystem.
- Rhythmic TechnologiescorePartner in the NTIA-funded O-RAN integrity and interoperability project. Contributes to research and development of novel supply chain traceability architecture.
- NTIA (National Telecommunications and Information Administration)coreNTIA awarded SecureG a $6M grant from the Public Wireless Supply Chain Innovation Fund to develop supply chain traceability for Open Radio Units and device identity centralized registry.
- CTIAcoreSecureG was conceived by CTIA to establish and maintain trust for 5G networks. CTIA selected SecureG as the sole root of trust to validate BCID service provider credentials. John Marinho, VP Technology and Cyber Security at CTIA, serves as Board Observer.
- MITRE / MITRE EngenuitycoreSecureG was conceived by MITRE Engenuity and CTIA. Chairman of the Board Charles Clancy is Senior VP at MITRE and heads MITRE Labs. MITRE is shown as a partner logo on the website.
- SunSpec AlliancecoreSecureG joined SunSpec Alliance to fortify cybersecurity standards for Distributed Energy Resources. SecureG provides PKI-based identity solutions for DER systems. Dylan Tansy, Executive Director of SunSpec Alliance, provided a testimonial praising SecureG's cybersecurity dedication.
Scale indicators7 records
Recent moves6 records
Expansion highlights6 records
SecureG competitors and assessment
Company assessmentDirect peers
- DigiCert: One of the largest commercial Certificate Authorities and PKI providers, serving enterprise and IoT customers globally. Directly competes with SecureG's PKIaaS, PKI Foundation, and device identity offerings across the same target verticals.
- Sectigo: Major commercial CA and PKI automation vendor offering certificate lifecycle management and IoT identity solutions. Directly comparable product set to SecureG's PKIaaS, including CA, RA, and ACME automation; SecureG CEO previously held PKI leadership there.
- Keyfactor: PKI and machine identity management platform formed from the merger of Keyfactor and PrimeKey. Offers enterprise PKIaaS and certificate lifecycle automation directly competitive with SecureG's PKIaaS portfolio; CEO Damon Kachur previously led PKI there.
- Entrust: Long-established PKI, digital identity, and certificate authority serving government, financial, and enterprise markets. Competes with SecureG across PKIaaS, post-quantum preparation, and high-assurance identity for federal customers.
- Venafi (CyberArk): Machine identity management platform (acquired by CyberArk) specializing in certificate lifecycle, code signing, and TLS/SSH key management. Closely comparable to SecureG's certificate analytics and CBOM capabilities for machine identity at scale.
Emerging players
- AppViewX: Certificate lifecycle management and PKI automation vendor for enterprise IT and DevOps. Overlaps with SecureG PKIaaS for ACME-driven certificate management and certificate analytics, but focuses more on enterprise IT than OT/critical infrastructure.
Broad incumbents
- HashiCorp Vault: Secrets management and encryption-as-a-service platform used widely for PKI and key management. Competes in the broader secrets/encryption/KMS space adjacent to SecureG's PKIaaS and certificate analytics offerings.
- CyberArk: Identity security leader with privileged access, machine identity (via Venafi), and emerging AI agent security capabilities. Competes with SecureG in machine identity and increasingly in AI agent access control adjacent to MCP Gateway.
- Okta: Identity and access management platform serving enterprise and government customers. While primarily human-identity focused, Okta's expansion into machine and AI agent identity could overlap with SecureG's MCP Gateway trajectory.
Regional players
- TransUnion TruContact (Branded Calling ecosystem): Branded calling and call authentication solutions operating in the same STIR/SHAKEN ecosystem that SecureG's BCID serves. Competes at the application layer above SecureG's root-of-trust position for branded call signing and reputation.
Market position
Weaknesses5 records
Competitive moat5 records
Key risks6 records
Key highlights7 records
Customer concentration
SecureG social profiles
Digital presenceSecureG compliance and trust
Trust signalCompliance3 records
SecureG financial estimates
Financial estimateRevenue estimate
Valuation estimate
SecureG leadership team
Management profileNumber of profiles
Profiles12 records
SecureG funding detail
Funding detailFunding overview
Funding rounds4 records
Investors1 record
Funding detail is available on the Subscription and Enterprise plan.Contact sales →
SecureG M&A and investment
M&A and investmentM&A
Investments
M&A and investment is available on the Subscription and Enterprise plan.Contact sales →
Frequently asked questions about SecureG
What does SecureG do?
SecureG provides high-assurance Public Key Infrastructure (PKI) and identity-based security products for devices, AI agents, networks, and telecom systems. The company offers a hardened root of trust, certificate management, supply chain traceability, branded calling ID verification, and an MCP Gateway for AI agent authentication. Its offerings are delivered as managed services and cloud-based PKI designed for machine speed and scale.
Is SecureG a public or private company?
SecureG is a private company. It is classified as venture growth investor backed and is currently operating.
When was SecureG founded?
SecureG was founded in 2019. It employs 11 to 50 people.
Where is SecureG based?
SecureG is headquartered in Herndon, United States, in the North America region.
How does SecureG make money?
Four revenue lines are on record. PKIaaS Subscription is the primary driver. The others are certificate Issuance and Management, branded Calling ID Service and advisory and Consulting Services.
Who are SecureG's main competitors?
Direct peers on record are DigiCert, Sectigo, Keyfactor, Entrust and Venafi (CyberArk). AppViewX is listed as an emerging player. Broad incumbents are HashiCorp Vault, CyberArk and Okta. TransUnion TruContact (Branded Calling ecosystem) is listed as a regional player.
Does SecureG have an API?
Yes. PKIaaS includes ACME (Automatic Certificate Management Environment) which automates PKI deployments for certificate issuance, validation, and management. MCP Gateway acts as an intermediary layer for AI agents connecting to MCP servers, providing centralized identity, authentication, and authorization enforcement.
What industry is SecureG in?
SecureG's product category is Public Key Infrastructure (PKI) / Cybersecurity. Its primary akta.pro industry code is BPAMAEAL, Device Identity & Certificate-Based Authentication (PKI), with a secondary code of HDABAHAG, Key Management, Encryption & Secrets Management (KMS/HSM/Vault). Its NAICS code is 561621.