Permiso Security
- Company typePrivate
- Founded2020
- HeadquartersPalo Alto, United States
- Headcount11–50
- GTM typeB2B
- OfferingSoftware
Permiso Security firmographics
Firmographics- Name
- Permiso Security
- Legal name
- Permiso Security Inc.
- Website
- https://permiso.io
- Company type
- Private
- Founded year
- 2020
- Operating status
- Operating
- Headcount range
- 11–50 employees
- Ownership category
- akta.pro rank
Permiso Security industry classification
Industry- Product category
- Identity Security Software
- akta.pro primary industry
- Secrets Management & Machine Identity (API keys, certificates, workload identity) (HDAEAJAJ)
- akta.pro secondary industry
- Threat Intelligence Services (BPAEADAC)
Keywords
Where Permiso Security is headquartered
LocationHeadquarters
- HQ city
- Palo Alto
- HQ country
- United States
- HQ region
- North America
Offices1 record
Markets served
Permiso Security business model
Business model- GTM type
- B2B
- Offering type
- Software
- Cost components
- Personnel, Technology or R&D, Marketing or Sales, Operations, Infrastructure
Revenue model
- Subscription-based SaaS Platform: The Permiso Identity Security Platform is sold as a subscription SaaS product, with capabilities across Discover (identity inventory), Protect (posture management), and Defend (threat detection and response). Enterprise sales motion with quote-based pricing implies annual or multi-year subscription contracts.
- Permiso Discover (Free Tier): Permiso Discover is offered as a free identity inventory and visibility tool for human, non-human, and AI identities, serving as a product-led entry point that can convert to paid platform subscriptions.
Pricing tiers
| Model | Billing | Price |
|---|---|---|
| Freemium | Monthly | Permiso Discover - Free identity inventory and visibility |
Go-to-market motion3 records
Distribution channels3 records
Marketing channels8 records
Permiso Security product offering
Product offeringCore offering
Permiso Security delivers a unified identity security platform that discovers, protects, and defends human, non-human, and AI identities across cloud, SaaS, CI/CD, and on-premises environments. The platform is built on the Universal Identity Graph engine and combines identity inventory (Discover), identity security posture management (Protect), and identity threat detection and response (Defend) through an agentless, API-based architecture. P0 Labs threat research provides 1,500+ detection signals powering the platform's detections.
Product overview
Permiso Security offers a unified identity security platform with a modular architecture combining Discover, Protect, and Defend capabilities. The core Permiso Platform is powered by the Universal Identity Graph engine, which tracks all human, non-human, and AI identities across cloud, SaaS, CI/CD, and on-premises environments. Key products include: Permiso Discover (identity inventory), Permiso Protect (posture management/ISPM), Permiso Defend (threat detection & response/ITDR), AI Agent Runtime Security (agent-specific protection), and SandyClaw (dynamic sandbox for AI agent skills). P0 Labs provides threat research and 1,500+ detection signals. The platform is read-only, agentless, and API-based with 50+ native integrations covering AWS, Azure, GCP, Okta, Azure AD, Salesforce, GitHub, Atlassian, and other enterprise systems. The platform won the 2026 SC Award for Best Threat Detection Technology.
Differentiator
Problem solved
Functional benefit
Brands
- SandyClaw: The first dynamic sandbox for AI agent skills and prompts, applying sandbox detonation methodology to analyze and detect malicious behaviors in downloadable AI agent capability packages.
- P0 Labs
- Permiso Platform
Products and services
- Permiso Platform Unified identity security platform that discovers, protects, and defends human, non-human, and AI identities in cloud, SaaS, and on-premises environments. Provides comprehensive visibility, prioritized risk reduction, and proactive threat defense through Discover, Protect, and Defend capabilities, sold to enterprise security teams on a subscription basis.
- Permiso Discover Free identity inventory and visibility tool providing comprehensive discovery of all human, non-human, and AI identities across cloud providers, SaaS applications, and identity systems. Delivers real-time tracking with 50+ native integrations and serves as a product-led growth entry point into the broader Permiso Platform.
- SandyClaw First dynamic sandbox for AI agent skills and prompts that executes AI agent skills in a controlled, instrumented environment and records every action at the LLM and OS level. Delivers behavioral verdicts backed by observed behavior using Sigma, YARA, Nova, and Snort detection engines, available as a standalone offering at sandyclaw.permiso.io with unrestricted access for Permiso platform customers.
Quantifiable outcome
- Most organizations discover significantly more AI agents than expected once Permiso's agent discovery capability is deployed, revealing a gap between leadership assumptions and actual agent inventory.
- +5 more outcomes
Companies that use Permiso Security
Customer profileNamed customers6 records
Segments3 records
Ideal customer profiles2 records
Permiso Security technology and API
TechnologyTechnology focussed Yes
API detail
- Has API
- Yes
- API docs
- API detail
Core technology
AI maturity
App detail
Integration13 records
AI capability9 records
Feature8 records
Permiso Security partnerships and signals
Strategic signalPartnerships
Eight partnerships are on record, tiered flagship and core.
- AutodeskflagshipAutodesk partnered with Permiso Security to deploy AI agent monitoring tools designed to protect its platform and customer data in response to rising industry concerns around AI security risks in enterprise environments. Autodesk is investing significantly in AI across its workforce, infrastructure, and products, and selected Permiso as the natural next step for securing agentic AI identities. Autodesk is deploying Permiso's AI agent runtime security across its products, global workforce, and cloud infrastructure.
- Amazon Web Services (AWS)coreAWS is a core platform integration for Permiso, which monitors AWS environments including IAM, S3, EC2, Lambda, CloudTrail, CloudShell, SecretsManager, and other AWS services. Permiso detects AWS-specific threat patterns and adversary behaviors in AWS environments.
- Microsoft AzurecoreAzure support was added in 2023, extending Permiso's cloud detection and response capabilities to Azure, Azure AD (Entra ID), and Microsoft 365 environments. Permiso detects Azure-specific threat patterns including Apex permissions abuse and Azure Activity Log analysis.
- Google Cloud Platform (GCP)corePermiso provides GCP security monitoring, including research on GCP serviceData deprecation risks and comprehensive GCP cloud audit log analysis capabilities.
- OktacoreOkta (Identity Cloud) is a core identity provider integration for Permiso's identity threat detection capabilities. Permiso monitors Okta for MFA bypass techniques, credential stuffing, and MFA factor manipulation used by threat actors like LUCR-3 (Scattered Spider).
- Azure Active Directory / Microsoft Entra IDcoreAzure AD/Entra ID is monitored for identity-based threats including MFA device manipulation, impossible travel detection, and credential-based attacks. Permiso tracks LUCR-3's use of Azure AD for initial access and persistence.
- Ping IdentitycorePing Identity (PingOne) is monitored as an identity provider for credential-based attacks and MFA bypass techniques used by threat actors targeting enterprise identity infrastructure.
- GitHubcorePermiso added IP and code threat detection for GitHub and Atlassian's suite of products including Confluence and Jira. GitHub is also monitored for CI/CD credential theft and source code exfiltration patterns used by threat actors like LUCR-3.
Scale indicators6 records
Recent moves6 records
Expansion highlights6 records
Permiso Security competitors and assessment
Company assessmentBroad incumbents
- CrowdStrike: Falcon platform includes Falcon Identity Threat Protection for ITDR across cloud and on-prem environments. Larger incumbent with broader XDR/EDR portfolio; Permiso competes for the identity-layer slice of CrowdStrike's enterprise deals.
- Palo Alto Networks: Cortex XDR and Prisma Cloud include identity threat detection and CIEM capabilities. Direct overlap with Permiso's identity-first detection positioning, though Palo Alto bundles identity into a much broader security platform.
- Wiz: Cloud security platform with CIEM, DSPM, and CNAPP capabilities covering identity posture and risk. Competes with Permiso's Protect (ISPM) and Defend (ITDR) modules across cloud and SaaS environments.
- Microsoft (Entra ID / Defender for Identity): Entra ID, Defender for Identity, and Defender for Cloud provide native identity security across Azure and Entra ID environments. Direct competitor in Permiso's core ITDR use cases for Microsoft-centric enterprises.
- Okta: Identity provider with Identity Threat Protection and behavioral detection add-ons. Permiso integrates with and competes against Okta's identity security features within Okta-centric customer environments.
- SentinelOne: Singularity Platform includes identity threat detection and XDR capabilities competing for the same enterprise security budget as Permiso. Broader endpoint-rooted incumbent entering identity security.
Direct peers
- CyberArk: Identity security leader with PAM, secrets management, and now ITDR capabilities for human and non-human identities. Closely aligned with Permiso's machine identity and privileged identity threat detection focus.
- Silverfort: Identity threat protection platform unifying siloed identity systems (Active Directory, Okta, Entra ID) for detection and response. Closest direct peer in agentless, identity-layer ITDR architecture.
- Obsidian Security: SaaS security posture management and identity threat detection for SaaS applications and identities. Comparable niche focus on identity-driven SaaS attack paths, similar target buyer to Permiso.
- Astrix Security: Specialized in non-human identity (NHI) security, governing service accounts, API keys, and machine identities. Directly comparable to Permiso's NHI coverage within the Universal Identity Graph.
Market position
Strengths5 records
Weaknesses5 records
Competitive moat5 records
Key risks7 records
Key highlights7 records
Customer concentration
Permiso Security social profiles
Digital presencePermiso Security compliance and trust
Trust signalCompliance2 records
Permiso Security financial estimates
Financial estimateRevenue estimate
Valuation estimate
Permiso Security leadership team
Management profileNumber of profiles
Profiles9 records
Permiso Security funding detail
Funding detailFunding overview
Funding rounds2 records
Investors6 records
Funding detail is available on the Subscription and Enterprise plan.Contact sales →
Permiso Security M&A and investment
M&A and investmentM&A
Investments
M&A and investment is available on the Subscription and Enterprise plan.Contact sales →
Frequently asked questions about Permiso Security
What does Permiso Security do?
Permiso Security delivers a unified identity security platform that discovers, protects, and defends human, non-human, and AI identities across cloud, SaaS, CI/CD, and on-premises environments. The platform is built on the Universal Identity Graph engine and combines identity inventory (Discover), identity security posture management (Protect), and identity threat detection and response (Defend) through an agentless, API-based architecture. P0 Labs threat research provides 1,500+ detection signals powering the platform's detections.
Is Permiso Security a public or private company?
Permiso Security is a private company. It is classified as venture growth investor backed and is currently operating.
When was Permiso Security founded?
Permiso Security was founded in 2020. It employs 11 to 50 people.
Where is Permiso Security based?
Permiso Security is headquartered in Palo Alto, United States, in the North America region.
How does Permiso Security make money?
Two revenue lines are on record. Subscription-based SaaS Platform is the primary driver. The others are permiso Discover (Free Tier).
Who are Permiso Security's main competitors?
Broad incumbents on record are CrowdStrike, Palo Alto Networks, Wiz, Microsoft (Entra ID / Defender for Identity), Okta and SentinelOne. Direct peers are CyberArk, Silverfort, Obsidian Security and Astrix Security.
Does Permiso Security have an API?
Yes. Permiso operates an agentless, API-based architecture. The platform connects via read-only APIs to customer environments (cloud providers, SaaS applications, identity providers) to perform identity discovery and threat detection. No dedicated developer/API documentation portal is referenced in the available sources. The platform is accessed via arbiter.permiso.io for login and product access. Developer documentation is at arbiter.permiso.io.
What industry is Permiso Security in?
Permiso Security's product category is Identity Security Software. Its primary akta.pro industry code is HDAEAJAJ, Secrets Management & Machine Identity (API keys, certificates, workload identity), with a secondary code of BPAEADAC, Threat Intelligence Services.