NetFoundry
- Company typePrivate
- Founded2017
- HeadquartersCharlotte, United States
- Headcount51–100
- GTM typeB2B
- OfferingSoftware
NetFoundry firmographics
Firmographics- Name
- NetFoundry
- Legal name
- NetFoundry
- Website
- https://netfoundry.io
- Company type
- Private
- Founded year
- 2017
- Operating status
- Operating
- Headcount range
- 51–100 employees
- Ownership category
- akta.pro rank
NetFoundry industry classification
Industry- Product category
- Zero Trust Networking Platform
- NAICS
- Computing Infrastructure Providers, Data Processing, Web Hosting, and Related Services (5182), Computer Systems Design and Related Services (54151)
- SIC
- Services-Prepackaged Software (7372)
- akta.pro primary industry
- Private Cloud Networking & SDN/NFV Management (HDABABAK)
Keywords
Where NetFoundry is headquartered
LocationHeadquarters
- HQ city
- Charlotte
- HQ country
- United States
- HQ region
- North America
Offices1 record
Markets served
NetFoundry business model
Business model- GTM type
- B2B
- Offering type
- Software
- Cost components
- Personnel, Technology or R&D, Infrastructure, Marketing or Sales, Operations, Others
Revenue model
- Subscription/Platform Licensing: NetFoundry Cloud (NaaS) subscription for zero trust overlay network services. Flexible on-premise licensing options based on network size and complexity.
- Managed Services: Managed by NetFoundry option where NetFoundry experts host and manage the Ziti Platform for customers.
- Professional Services: Implementation and consulting services for enterprise deployments and integration.
Pricing tiers
| Model | Billing | Price |
|---|---|---|
| Freemium | Pay-as-you-go | NetFoundry Cloud - 30-day Free Trial |
| Subscription | Annual | On-Premise Licensing |
Go-to-market motion5 records
Distribution channels4 records
Marketing channels6 records
NetFoundry product offering
Product offeringCore offering
NetFoundry provides a zero trust networking platform that delivers identity-first reachability for machine-to-machine interactions, eliminating attack surfaces by making workloads invisible until their machine identity is authorized. The platform is built on the open-source OpenZiti project and replaces VPNs, SD-WANs, and firewall-based perimeters with software-defined overlay microsegmentation. It is delivered as a Network-as-a-Service (NaaS) subscription, with managed, hybrid cloud, and on-premise deployment options, and includes specialized solutions for AI, API, OT, DevOps, and remote/3rd-party access use cases.
Product overview
NetFoundry offers a comprehensive zero trust networking platform built on the open-source OpenZiti project. The core platform consists of NetFoundry Fabric (overlay mesh architecture), NetFoundry Console (management interface), NetFoundry Edge (endpoint clients), and NetFoundry AppNets (zero trust microsegmentation). These core components are delivered through multiple deployment options including NetFoundry Cloud (NaaS), NetFoundry Hybrid Cloud, NetFoundry On-Premise, and Managed by NetFoundry services. The platform addresses specific use cases including Zero Trust AI Enclaves for AI security, Zero Trust API Security, Zero Trust OT for operational technology, Zero Trust DevOps for CI/CD and Kubernetes, Zero Trust Remote Management, and Zero Trust 3rd Party Access. An optional FIPS Inside add-on provides FIPS 140-2/140-3 validated cryptography for government compliance. The company reports over 1 billion sessions per month across 3,000+ organizations including Fortune 10 companies.
Differentiator
Problem solved
Functional benefit
Brands
- OpenZiti: Open-source zero-trust networking platform and the world's most widely integrated open source networking platform. NetFoundry is the developer and commercial provider of OpenZiti.
- AppNets
- NetFoundry Fabric
- Zero Trust AI Enclaves
- NetFoundry Cloud
Products and services
- NetFoundry Platform Core zero trust networking platform providing identity-first reachability for machine-to-machine interactions. The platform eliminates attack surfaces by making workloads invisible until their machine identity is authorized, and serves enterprises, government/defense contractors, and large financial institutions.
- NetFoundry Fabric Zero trust overlay mesh architecture creating a self-healing, dynamically routed network over tier one backbones. Provides end-to-end control, telemetry, performance, resiliency, and latency minimization for enterprise and critical infrastructure deployments.
- NetFoundry Console Centralized management interface for orchestrating overlay networks, identities, and policies. Provides visibility, controls, and telemetry across zero trust deployments for network operations and security teams.
- NetFoundry Edge Edge client and gateway software enabling secure connectivity endpoints. Supports installation as host-based agents, gateways, virtual machines, or containers across modern operating systems including mobile, for connecting workloads and users to the zero trust fabric.
- NetFoundry AppNets NetFoundry's implementation of zero trust microsegmentation. AppNets connect authorized sessions without exposing the network, providing session-level security with least-privileged access for application-specific connectivity.
- Zero Trust AI Enclaves Security solution for AI deployments including AI agents, AI users, MCP servers, and LLMs. Routes AI clients through dedicated private connections with cryptographic identity, end-to-end encryption, no shared API keys, no open ports, and no VPN required.
- Zero Trust API Security Solution that makes APIs invisible until access is authorized, eliminating 99.99% of the threat to API attack surfaces through identity-based governance and observability. Supports both agent and agentless options and enables publishing public APIs without an API gateway while blocking lateral movement.
- Zero Trust OT Identity-based segmentation and microsegmentation solution for operational technology (OT) networks. Enables universal IT/OT/IOT connectivity with zero trust access based on identities and services for utilities, manufacturing, and critical infrastructure operators.
- Zero Trust DevOps Solution integrating zero trust security into DevOps and Kubernetes workflows. Secures CI/CD pipelines, provides secure ingress/egress for cluster services, and embeds zero trust networking into Kubernetes environments for developer and platform engineering teams.
- Zero Trust Remote Management Secure remote access solution eliminating VPN and firewall risks. Uses cryptographically validated identities, mutual TLS, and software-defined architecture for application-specific microsegmented access by remote workers, vendors, and operators.
- Zero Trust 3rd Party Access Solution for managing and securing third-party vendor and partner access to enterprise environments. Enforces strict access controls and continuous monitoring with detailed auditing for supply chain and partner connectivity scenarios.
- FIPS Inside FIPS 140 compliant connectivity solution with FIPS-validated cryptographic modules supporting both FIPS 140-2 and 140-3 standards. Designed for FedRAMP, CJIS, and government cloud compliance for federal agencies and regulated industries.
- OpenZiti Open source zero trust networking platform and the world's most widely integrated open source networking platform. Forms the foundation of NetFoundry's commercial offerings and is freely available for developers and organizations to deploy self-managed zero trust networks.
- NetFoundry Applications Collection of NetFoundry client applications including Ziti Desktop Edge for Windows and other endpoint software enabling secure zero trust connectivity for end users and developer environments.
Quantifiable outcome
- Reduces API attack surface threat by 99.99%
- +7 more outcomes
Companies that use NetFoundry
Customer profileNamed customers12 records
Segments8 records
Ideal customer profiles4 records
NetFoundry technology and API
TechnologyTechnology focussed Yes
API detail
- Has API
- Yes
- API docs
- API detail
Core technology
AI maturity
App detail
Integration4 records
AI capability3 records
Feature7 records
NetFoundry partnerships and signals
Strategic signalPartnerships
One partnership is on record.
- Stellar CybercoreStrategic partnership to combine AI-driven security operations with zero trust networking capabilities. The integration enables identity-based visibility and control beyond traditional IP addressing. NetFoundry joined Stellar Cyber's Open Cybersecurity Alliance to enhance interoperability. Joint solution is available immediately.
Scale indicators15 records
Recent moves5 records
Expansion highlights6 records
NetFoundry competitors and assessment
Company assessmentDirect peers
- Zscaler: Largest pure-play zero trust / SASE vendor (ZIA, ZPA, ZDX). Competes head-to-head with NetFoundry in zero trust network access for enterprises and government; both target VPN replacement and identity-based segmentation.
- Cloudflare: Cloudflare Zero Trust / Access / Tunnel provides ZTNA, identity-based access, and application security—directly comparable to NetFoundry's identity-first overlay mesh for SaaS and internal applications.
- Tailscale: WireGuard-based mesh VPN / zero trust overlay for developers and enterprises. Similar identity-first overlay networking model and developer-led adoption, with strong open source community (Headscale).
- Cato Networks: SASE platform combining SD-WAN and zero trust network access. Targets the same VPN-replacement and secure access use cases as NetFoundry, particularly for distributed enterprises.
- Appgate: Zero Trust SDP / ZTNA vendor with deep roots in software-defined perimeter. Directly comparable in identity-first zero trust networking for enterprise and government customers.
Broad incumbents
- Palo Alto Networks: Prisma Access / Prisma SASE competes in zero trust networking as part of a broader security platform. Larger incumbent with deep enterprise relationships and FIPS-certified products that overlap NetFoundry's regulated-industry positioning.
- Cisco: Cisco Secure Access, Duo, and SD-WAN portfolio overlaps NetFoundry's zero trust networking. Cisco is both a competitor and Series A strategic investor, complicating the competitive dynamic.
- Akamai: Akamai App & API Protector and Guardicore (acquired) provide zero trust microsegmentation and API security—overlapping NetFoundry's AppNets and Zero Trust API Security offerings for large enterprise customers.
Emerging players
- Twingate: Zero trust network access vendor focused on developer-friendly, easy-to-deploy ZTNA. Smaller scale but similar identity-first overlay model targeting mid-market and developer-led adoption.
- HashiCorp Boundary: Identity-based session management and remote access for infrastructure. Competes in adjacent zero trust access space, particularly for cloud and DevOps use cases overlapping NetFoundry's Zero Trust DevOps solution.
Market position
Strengths4 records
Weaknesses4 records
Competitive moat5 records
Key risks6 records
Key highlights7 records
Customer concentration
NetFoundry social profiles
Digital presenceNetFoundry compliance and trust
Trust signalCompliance12 records
NetFoundry financial estimates
Financial estimateRevenue estimate
Valuation estimate
NetFoundry leadership team
Management profileNumber of profiles
Profiles10 records
NetFoundry funding detail
Funding detailFunding overview
Funding rounds2 records
Investors3 records
Funding detail is available on the Subscription and Enterprise plan.Contact sales →
NetFoundry M&A and investment
M&A and investmentM&A
Investments
M&A and investment is available on the Subscription and Enterprise plan.Contact sales →
Frequently asked questions about NetFoundry
What does NetFoundry do?
NetFoundry provides a zero trust networking platform that delivers identity-first reachability for machine-to-machine interactions, eliminating attack surfaces by making workloads invisible until their machine identity is authorized. The platform is built on the open-source OpenZiti project and replaces VPNs, SD-WANs, and firewall-based perimeters with software-defined overlay microsegmentation. It is delivered as a Network-as-a-Service (NaaS) subscription, with managed, hybrid cloud, and on-premise deployment options, and includes specialized solutions for AI, API, OT, DevOps, and remote/3rd-party access use cases.
Is NetFoundry a public or private company?
NetFoundry is a private company. It is classified as venture growth investor backed and is currently operating.
When was NetFoundry founded?
NetFoundry was founded in 2017. It employs 51 to 100 people.
Where is NetFoundry based?
NetFoundry is headquartered in Charlotte, United States, in the North America region.
How does NetFoundry make money?
Three revenue lines are on record. Subscription/Platform Licensing is the primary driver. The others are managed Services and professional Services.
Who are NetFoundry's main competitors?
Direct peers on record are Zscaler, Cloudflare, Tailscale, Cato Networks and Appgate. Broad incumbents are Palo Alto Networks, Cisco and Akamai. Emerging players are Twingate and HashiCorp Boundary.
Does NetFoundry have an API?
Yes. NetFoundry provides SDKs and APIs for embedding zero trust networking into applications and automating network management. SDKs available for Go, Java, Python, C/C++, .NET, JavaScript, Swift, and Android. APIs enable Infrastructure-as-Code automation, automated provisioning, and policy management. The platform supports REST APIs for cloud orchestration via web console. Developer documentation is at netfoundry.io/documentation.
What industry is NetFoundry in?
NetFoundry's product category is Zero Trust Networking Platform. Its primary akta.pro industry code is HDABABAK, Private Cloud Networking & SDN/NFV Management. Its NAICS code is 5182 and its SIC code is 7372.