Edgescan
Edgescan is a Dublin-based cybersecurity SaaS platform that combines AI-powered automated vulnerability scanning with CREST/OSCP-certified human validation to deliver continuous, full-stack security testing and exposure management for regulated enterprises.
- Company typePrivate
- Founded2017
- HeadquartersDublin, Ireland
- Headcount101–250
- GTM typeB2B
- OfferingSoftware
What Edgescan does
Edgescan, legally operated as BCC Risk Advisory Limited (company registration number 497804) and headquartered in Dublin, Ireland, is a continuous security testing and unified exposure management SaaS platform that combines AI-powered automated scanning with human expert validation. The company sells six integrated product lines — Penetration Testing as a Service (PTaaS), Dynamic Application Security Testing (DAST), Network Vulnerability Management (NVM), API Security Testing, Mobile Application Security Testing (MAST), and Attack Surface Management (ASM) — unified by shared platform capabilities including AI Insights, Full Stack coverage, Risk Rating, and PCI Approved Scanning Vendor status. Its underlying technology pairs automation with verification by CREST- and OSCP-certified penetration testers to eliminate false positives, and an AI Insights feature leverages a proprietary data lake of 15-20 million verified vulnerabilities for exploit prediction and threat-based prioritization. The platform integrates with Jira, supports webhook-based workflow automation, and is available on AWS Marketplace.
Edgescan targets regulated and enterprise customers across financial services, healthcare, technology, retail, telecommunications, government, and digital entertainment. Pricing follows a fixed monthly subscription with unlimited assessments, sold through a direct enterprise field sales motion with phone contact in the US, UK, and Ireland. The company has a regional headquarters in New York City, holds PCI ASV certification, is a founding signatory of the CREST AI Charter, and is listed on Gartner Peer Insights with a 98% recommendation rate. Customer-facing outcomes cited include a 95% retention rate, a 40% reduction in mean time to remediation, and cost savings equivalent to 2.1 full-time staff per month per customer.
Edgescan firmographics
Firmographics- Name
- Edgescan
- Legal name
- BCC Risk Advisory Limited
- Website
- https://edgescan.com
- Company type
- Private
- Founded year
- 2017
- Operating status
- Operating
- Headcount range
- 101–250 employees
- Short description
- Edgescan is a Dublin-based cybersecurity SaaS platform that combines AI-powered automated vulnerability scanning with CREST/OSCP-certified human validation to deliver continuous, full-stack security testing and exposure management for regulated enterprises.
- Ownership category
- akta.pro rank
Edgescan industry classification
Industry- Product category
- Cybersecurity Software
- NAICS
- Testing Laboratories and Services (54138), Other Computer Related Services (541519)
- SIC
- Services-Prepackaged Software (7372)
- akta.pro primary industry
- Vulnerability Assessment & Scanning (HDADAHAA)
- akta.pro secondary industries
- Penetration Testing Platforms (PTaaS) (HDADAHAG), Application Security Testing (SAST/DAST/IAST/SCA) (HDADACAC)
Keywords
Where Edgescan is headquartered
LocationHeadquarters
- HQ city
- Dublin
- HQ country
- Ireland
- HQ region
- Europe
Offices2 records
Markets served
Edgescan business model
Business model- GTM type
- B2B
- Offering type
- Software
- Cost components
- Personnel, Technology or R&D, Marketing or Sales, Operations, Infrastructure
Revenue model
- Subscription-Based SaaS: Continuous security testing and exposure management delivered as a SaaS platform with a fixed monthly fee model providing unlimited assessments for customers.
- AWS Marketplace: Available on AWS Marketplace for native procurement and deployment, enabling seamless security testing integration with AWS infrastructure.
Pricing tiers
| Model | Billing | Price |
|---|---|---|
| Subscription | Monthly | Enterprise continuous security testing platform with unlimited assessments |
Go-to-market motion1 record
Distribution channels2 records
Marketing channels7 records
Edgescan product offering
Product offeringCore offering
Edgescan is a continuous security testing and unified exposure management SaaS platform that combines AI-powered automated scanning with human expert (CREST/OSCP-certified) validation to deliver full-stack, zero-false-positive vulnerability intelligence. The platform unifies six core capabilities — Penetration Testing as a Service (PTaaS), Dynamic Application Security Testing (DAST), API Security Testing, Network Vulnerability Management (NVM), Mobile Application Security Testing (MAST), and Attack Surface Management (ASM) — delivered on a single subscription-based platform with unlimited assessments and integrated remediation guidance.
Product overview
Edgescan is a continuous security testing and unified exposure management SaaS platform delivered as a single integrated solution combining six core security testing products: Penetration Testing as a Service (PTaaS), Dynamic Application Security Testing (DAST), Network Vulnerability Management (NVM), API Security Testing, Mobile Application Security Testing (MAST), and Attack Surface Management (ASM). These core products are unified by shared platform capabilities including AI Insights (which leverages 15+ million verified vulnerabilities for exploit prediction and threat-based prioritization), Full Stack coverage, Risk Rating, PCI Approved scanning vendor status, and End-to-End Support by CREST/OSCP-certified experts. The platform is available on AWS Marketplace for native procurement and supports Jira and webhook-based integrations for enterprise workflow automation. The company operates as BCC Risk Advisory Limited, Dublin, Ireland, and holds PCI Approved Scanning Vendor (ASV) certification.
Differentiator
Problem solved
Functional benefit
Products and services
- Penetration Testing as a Service (PTaaS) Hybrid penetration testing solution combining the breadth of automation with the depth of human expert assessment, providing continuous security testing, on-demand offensive testing, unlimited retests, expert remediation guidance and validated risk reporting for enterprise security teams.
- Dynamic Application Security Testing (DAST) Automated web application scanning combined with human expertise and AI to validate risk, eliminate false positives and prioritise fixes using proven exploits, with optional AI enhancing clarity and breach probability insight for enterprise AppSec teams.
- API Security Testing Discovers and tests APIs across cloud environments, surfacing vulnerabilities in one of today's highest-risk attack surfaces with validated findings and expert remediation guidance included for enterprise API security programmes.
- Network Vulnerability Management (NVM) Validated network vulnerability intelligence that eliminates scanner noise and provides a single, accurate source of truth for prioritisation and remediation of network-layer exposures across enterprise IT estates.
- Mobile Application Security Testing (MAST) Complete testing coverage for iOS and Android applications, detecting vulnerabilities unique to mobile environments including insecure data storage, improper authentication and client-side risks, with validated findings and remediation guidance.
- Attack Surface Management (ASM) Continuous insight into shadow IT and rogue assets across the entire IT ecosystem, enabling newly discovered assets to be tested immediately within the platform and providing real-time visibility into the external attack surface.
- AI/LLM Penetration Testing Specialised penetration testing service for Large Language Models (LLMs), assessing AI systems for unique vulnerabilities and security weaknesses specific to LLM deployments, offered as a dedicated service line within the Edgescan platform.
Quantifiable outcome
- 95% customer retention rate demonstrating high client satisfaction and continued business value
- +5 more outcomes
Companies that use Edgescan
Customer profileNamed customers15 records
Segments4 records
Ideal customer profiles4 records
Edgescan technology and API
TechnologyTechnology focussed Yes
API detail
- Has API
- Yes
- API docs
- API detail
Core technology
AI maturity
App detail
Integration2 records
AI capability6 records
Feature9 records
Edgescan partnerships and signals
Strategic signalPartnerships
Three partnerships are on record, tiered core.
- AWS MarketplacecoreEdgescan is available on AWS Marketplace for native procurement and deployment, enabling seamless security testing, natively integrated with AWS infrastructure for streamlined customer onboarding.
- CRESTcoreCREST (Council of Registered Ethical Security Testers) certification for security experts ensuring standardized, qualified penetration testing services.
- OSCP (Offensive Security Certified Professional)coreOSCP certification for penetration testers ensuring team members have advanced offensive security skills and hands-on testing capabilities.
Scale indicators7 records
Recent moves6 records
Expansion highlights6 records
Edgescan competitors and assessment
Company assessmentDirect peers
- Qualys: Public VM platform with VMDR, cloud security, and web app scanning. Directly competes with Edgescan's Network Vulnerability Management and DAST, though Qualys is a broader, more automated platform without Edgescan's human validation layer.
- Tenable: Public vulnerability management leader (Nessus, Tenable One) covering VM, ASM, and cloud security. Competes head-to-head with Edgescan's NVM and ASM, with a much larger install base and broader platform scope.
- Rapid7: Public security analytics platform offering InsightVM, AppSec, and managed pen testing. Directly comparable to Edgescan's continuous VM and pen testing capabilities and serves similar regulated enterprise buyers.
- Cobalt: PTaaS platform connecting customers to vetted pen testers for on-demand and continuous testing. Most direct peer to Edgescan's PTaaS offering, both emphasizing human-validated results over automated-only scanners.
- HackerOne: Crowdsourced security testing and bug bounty platform offering continuous pen testing and attack resistance. Competes with Edgescan in the PTaaS and continuous testing market with a different talent model (community of ethical hackers).
- Synack: PTaaS platform using a curated network of vetted researchers combined with AI for continuous testing. Comparable to Edgescan's hybrid model and targets similar regulated enterprise and government buyers.
- Detectify: ASM and external attack surface management platform with crowdsourced vulnerability research. Comparable to Edgescan's ASM and DAST capabilities, primarily automated rather than human-validated.
- Invicti (formerly Netsparker): DAST and application security platform with proof-based scanning and ASM. Directly competes with Edgescan's DAST and ASM products for enterprise web application security budgets.
Emerging players
- Pentera: Automated security validation platform performing continuous breach and attack simulation. Adjacent to Edgescan's PTaaS but takes an automated (rather than hybrid) approach, increasingly bought by similar enterprise security teams.
- Bishop Fox: Penetration testing and offensive security services firm with Cosmos continuous pen testing platform. Comparable to Edgescan's PTaaS, particularly for enterprise buyers wanting high-touch expert-led engagements.
Market position
Strengths5 records
Weaknesses5 records
Competitive moat5 records
Key risks6 records
Key highlights7 records
Customer concentration
Edgescan social profiles
Digital presenceEdgescan compliance and trust
Trust signalCompliance1 record
Edgescan financial estimates
Financial estimateRevenue estimate
Valuation estimate
Edgescan leadership team
Management profileNumber of profiles
Profiles4 records
Edgescan funding detail
Funding detailFunding overview
Funding rounds4 records
Investors2 records
Funding detail is available on the Subscription and Enterprise plan.Contact sales →
Edgescan M&A and investment
M&A and investmentM&A
Investments
M&A and investment is available on the Subscription and Enterprise plan.Contact sales →
Frequently asked questions about Edgescan
What does Edgescan do?
Edgescan is a continuous security testing and unified exposure management SaaS platform that combines AI-powered automated scanning with human expert (CREST/OSCP-certified) validation to deliver full-stack, zero-false-positive vulnerability intelligence. The platform unifies six core capabilities — Penetration Testing as a Service (PTaaS), Dynamic Application Security Testing (DAST), API Security Testing, Network Vulnerability Management (NVM), Mobile Application Security Testing (MAST), and Attack Surface Management (ASM) — delivered on a single subscription-based platform with unlimited assessments and integrated remediation guidance.
Is Edgescan a public or private company?
Edgescan is a private company. It is classified as venture growth investor backed and is currently operating.
When was Edgescan founded?
Edgescan was founded in 2017. It employs 101 to 250 people.
Where is Edgescan based?
Edgescan is headquartered in Dublin, Ireland, in the Europe region.
How does Edgescan make money?
Two revenue lines are on record. Subscription-Based SaaS are the primary driver. The others are AWS Marketplace.
Who are Edgescan's main competitors?
Direct peers on record are Qualys, Tenable, Rapid7, Cobalt, HackerOne, Synack, Detectify and Invicti (formerly Netsparker). Emerging players are Pentera and Bishop Fox.
Does Edgescan have an API?
Yes. Edgescan supports webhook integrations and API-based integrations for automated alert delivery and ticketing workflow automation. The platform integrates with enterprise ticketing and workflow systems to push vulnerability intelligence and remediation guidance directly into operational workflows. Specific endpoint documentation, auth method, rate limits, and a developer portal URL are not publicly listed in the available source material.
What industry is Edgescan in?
Edgescan's product category is Cybersecurity Software. Its primary akta.pro industry code is HDADAHAA, Vulnerability Assessment & Scanning, with a secondary code of HDADAHAG, Penetration Testing Platforms (PTaaS). Its NAICS code is 54138 and its SIC code is 7372.