Guardey
Guardey B.V. is a Netherlands-based SaaS company, founded in 2022, that delivers a gamified security awareness training platform with weekly microlearning, phishing simulation, and pre-built audit-ready compliance reporting for SMBs and mid-market customers across healthcare, education, municipalities, industry, and financial services in Europe.
- Company typePrivate
- Founded2022
- HeadquartersRotterdam, Netherlands
- Headcount11–50
- GTM typeB2B
- OfferingSoftware
What Guardey does
Guardey B.V. is a Netherlands-headquartered (Rijswijk with an Amsterdam office) SaaS company founded in 2022 as a subsidiary of Gizmo Cyber Group B.V., built by the team behind consumer VPN provider GOOSE VPN. The company operates a gamified security awareness training platform that delivers weekly 3-minute microlearning challenges combined with phishing simulations, reporting dashboards, and pre-built compliance reporting. Product delivery spans web, iOS, and Android mobile apps, with a content library covering sector-specific training for healthcare, education, municipalities, industry/logistics, developers, hospitality, and regional safety authorities, plus dedicated modules for ISO 27001, NIS2, HIPAA, SOC2, PCI DSS, and the EU AI Act.
Underlying technology integrations include Microsoft Entra ID for automated provisioning, Microsoft Teams for in-workflow notification delivery, SAML/SSO with Microsoft and Google identity providers, and report-phishing buttons for Outlook and Gmail. The platform is ISO 27001 certified, GDPR compliant with EU data residency, and supports randomized phishing campaigns with real-time analytics. Tech stack dependencies include Stripe for payments, HubSpot for marketing automation, Zendesk for support, and Cloudflare for CDN/security.
The business model is a tiered per-user SaaS subscription across Phishing, Awareness, and Advanced plans with quote-based pricing, annual or multi-year billing, and a 14-day self-serve free trial requiring no credit card. Go-to-market combines product-led growth (self-serve trial), a sales-assisted motion for 50+ user accounts, and a formal channel partner program covering IT partners, MSPs, and resellers such as Xerox, KPN, Zurich Resilience Solutions, and Fendix. Customer base spans 500+ organizations and 45,000+ end users, with notable enterprise logos including the European Parliament, Canon, Zurich Resilience Solutions, and AIG (via reseller Priore), alongside a heavy concentration of Dutch municipalities and healthcare providers.
Guardey firmographics
Firmographics- Name
- Guardey
- Legal name
- Guardey B.V.
- Website
- https://guardey.com
- Company type
- Private
- Founded year
- 2022
- Operating status
- Operating
- Headcount range
- 11–50 employees
- Short description
- Guardey B.V. is a Netherlands-based SaaS company, founded in 2022, that delivers a gamified security awareness training platform with weekly microlearning, phishing simulation, and pre-built audit-ready compliance reporting for SMBs and mid-market customers across healthcare, education, municipalities, industry, and financial services in Europe.
- Ownership category
- akta.pro rank
Guardey industry classification
Industry- Product category
- Security Awareness Training
- NAICS
- Computer Training (61142)
- SIC
- Services-Educational Services (8200), Services-Computer Integrated Systems Design (7373)
- akta.pro primary industry
- Security Awareness, Training & Compliance Attestation (HDADAIAJ)
- akta.pro secondary industries
- Phishing, Social Engineering & Business Email Compromise (BEC) Training (EDABAGAB), Cybersecurity Awareness & Digital Safety Training for Security Personnel (BPAKAOAO)
Keywords
Where Guardey is headquartered
LocationHeadquarters
- HQ city
- Rotterdam
- HQ country
- Netherlands
- HQ region
- Europe
Offices2 records
Markets served
Guardey business model
Business model- GTM type
- B2B
- Offering type
- Software
- Cost components
- Personnel, Technology or R&D, Marketing or Sales, Operations, Infrastructure
Revenue model
- SaaS Subscription (Per-User): Guardey operates on a tiered SaaS subscription model with per-user pricing across three plans: Phishing (phishing-first), Awareness (gamified training + phishing), and Advanced (full suite). All plans include a 14-day free trial with no credit card required. Pricing is customized via quote based on organization size and requirements. Multi-year contracts are offered with discounted rates. No minimum user commitment for entry plans.
Pricing tiers
| Model | Billing | Price |
|---|---|---|
| Subscription | Annual | Phishing plan — phishing-first teams with gamified security awareness training, monthly email reports, LMS insights, phishing simulation module, custom content, NIS2 compliance, mobile app, Azure AD user provisioning, Customer Success Manager. |
| Subscription | Annual | Awareness plan — build a security culture with weekly + bonus challenges, achievements, in-company and worldwide leaderboards, monthly progress reports, real-time LMS, certificates, unlimited phishing simulations, report phishing button, custom modules and challenges, role-based training, unlimited admins, unlimited users, SSO, SCIM, 24/7 support. |
| Subscription | Multi-year contract | Advanced plan — full suite with all Awareness features plus maximum functionality across all dimensions. |
Go-to-market motion3 records
Distribution channels5 records
Marketing channels9 records
Guardey product offering
Product offeringCore offering
Guardey operates a SaaS-based gamified security awareness training platform that delivers 3-minute weekly microlearning challenges combined with phishing simulations and real-time compliance reporting. The platform is sold on a per-user subscription basis across three tiers (Phishing, Awareness, Advanced) with sector-specific content for healthcare, education, municipalities, industry/logistics, developers, hospitality, and regional safety authorities, and supports compliance with NIS2, ISO 27001, HIPAA, SOC2, PCI DSS, and the EU AI Act.
Product overview
Guardey is a gamified security awareness training platform that combines weekly 3-minute microlearning challenges with phishing simulations and real-time compliance reporting. The core Guardey Security Awareness Platform is available as a cloud-based SaaS with three pricing tiers: Phishing (phishing simulation-focused), Awareness (gamified training with reporting), and Advanced (full suite). Key modules include the Mobile App (iOS/Android), Phishing Simulations (100+ templates with spear phishing and randomized campaign variants), and Custom Content for organizational policy alignment. Industry-specific verticals cover Healthcare, Education, Municipalities, Industry & Logistics, Developers, Hospitality, and Regional Safety Authorities. Compliance-focused modules address ISO 27001, NIS2, HIPAA, SOC2, PCI DSS, and the EU AI Act. The platform's differentiation comes from gamification elements (storyline, leaderboards, achievements, streaks) and microlearning format, designed to achieve higher completion rates than traditional e-learning. All data is hosted in the EU with GDPR compliance.
Differentiator
Problem solved
Functional benefit
Products and services
- Guardey Security Awareness Platform Cloud-based SaaS platform delivering gamified weekly 3-minute security awareness challenges combined with phishing simulations and real-time reporting to build lasting security habits and meet regulatory compliance for SMB, mid-market, and enterprise customers.
- Guardey Mobile App Native iOS and Android mobile application enabling employees to complete security awareness challenges on smartphones and tablets, with smart push notifications, in-app inbox, leaderboards, and achievements.
- Phishing Simulations Phishing simulation tool featuring 100+ templates covering credential harvesting, fake invoices, and package delivery scams, with real-time dashboards tracking open rates, click behavior, credential submissions, and reporting actions integrated with Outlook and Gmail.
- Cybersecurity Awareness Escape Room Immersive gamified escape room experience where teams learn to recognize threats like phishing and ransomware while solving challenges in a hands-on, interactive setting.
- NIS2 Executive Training Leadership-focused training equipping board members and management with knowledge to recognize cyber threats and implement safeguards as required by the NIS2 directive's management accountability provisions.
- Cybersecurity Guest Speaker Service Expert speaker service featuring real-life hacking stories to make cyber risks tangible and create urgency for security awareness training in organizations.
- ISO 27001 Awareness Training Security awareness training aligned with ISO 27001 Clause 7.2 (Competence), 7.3 (Awareness), 8.2 (Communication), and A.6.3 (Information Security Awareness, Education, and Training) requirements, helping organizations demonstrate competence and ongoing training.
- NIS2 Security Awareness Training Security awareness training fulfilling NIS2 Article 20 requirements for continuous employee training, management accountability, and documentation for regulatory audits.
- HIPAA Security Awareness Training Security awareness training for HIPAA compliance covering device security, patient privacy, and ongoing training requirements for covered entities and business associates.
- SOC2 Security Awareness Training Security awareness training meeting SOC2 requirements for ongoing threat updates, role-based training, and regular effectiveness evaluation with documentation for auditors.
- PCI DSS Security Awareness Training Security awareness training covering PCI DSS requirements for cardholder data security, incident response procedures, social engineering recognition, and maintaining training records for compliance audits.
- EU AI Act Security Awareness Training Security awareness training covering AI Act literacy requirements, deepfakes, safe AI usage, and AI-powered cyber attacks, with real-time tracking of AI literacy levels and organizational benchmarking.
- Healthcare Security Awareness Training Sector-specific security awareness training for healthcare organizations covering HIPAA and NIS2 compliance, with scenarios from real care environments including device security and patient privacy.
- Education Security Awareness Training Security awareness training tailored for education professionals and students (ages 12-18), covering cyberbullying, sextortion, AI risks, social media safety, and compliance with DfE Cyber Standards and Normenkader IBP.
- Municipalities Security Awareness Training Security awareness training for municipal employees covering transparency, data protection, and incident reporting, aligned with NIS2 essential entity requirements and frameworks like CyberFundamentals and ISO 27001.
- Industry and Logistics Security Awareness Training Security awareness training for industrial and logistics organizations featuring mobile-first challenges, custom content for logistics data security, and NIS2 compliance reporting for shift and mobile workers.
- Hospitality Security Awareness Training Security awareness training for hospitality organizations covering front-desk scenarios, reservation systems, guest data handling, and payment security in high-pressure service environments.
- Regional Safety Authority Training Security awareness training designed for public safety and crisis response organizations, including control room operators and operational field teams, aligned with BIO and NIS2 compliance requirements.
Quantifiable outcome
- Phishing click rate improved by 84% within weeks of using Guardey (Delta Wines case study)
- +2 more outcomes
Companies that use Guardey
Customer profileNamed customers50 records
Segments9 records
Ideal customer profiles3 records
Guardey technology and API
TechnologyTechnology focussed Yes
API detail
- Has API
- No
- API docs
- API detail
Core technology
AI maturity
App detail
Integration3 records
Feature10 records
Guardey partnerships and signals
Strategic signalPartnerships
13 partnerships are on record, tiered core and flagship.
- Microsoft Entra ID (Azure AD)coreMicrosoft Entra ID (formerly Azure AD) integration enables automated user provisioning and de-provisioning, allowing organizations to manage Guardey users efficiently through their existing identity infrastructure. This streamlines onboarding and offboarding workflows.
- Microsoft TeamscoreMicrosoft Teams integration delivers Guardey notifications directly into Teams, where employees already spend their workday. This reduces friction for training participation and keeps security awareness top of mind within existing workflows.
- Microsoft Single Sign-On (SSO)coreSAML-based SSO integration (Microsoft and Google) enables one-click access to Guardey, eliminating password fatigue and improving adoption rates across organizations using Microsoft or Google identity providers.
- Microsoft OutlookcoreGuardey's reporting button for Microsoft Outlook allows employees to flag suspicious emails directly from their inbox, turning reporting into a seamless habit and rewarding users with XP points for active engagement.
- GmailcoreGuardey's reporting button for Gmail allows employees to flag suspicious emails directly from their inbox, tracking reporting behavior alongside click rates and providing gamification XP rewards for reporting.
- XeroxflagshipXerox is a strategic IT partner/reseller that distributes Guardey as part of its managed services portfolio. Xerox targets customers in the office equipment and managed services space with Guardey as a cybersecurity add-on.
- KPNflagshipKPN is a Dutch telecommunications provider and IT services partner that resells and deploys Guardey for its business customers. KPN also helped Museum Boijmans Van Beuningen manage security awareness using Guardey.
- Zurich Resilience SolutionsflagshipZurich Resilience Solutions, part of the Zurich Insurance Group, is a strategic partner that incorporates Guardey into its cyber risk management and resilience offerings for commercial customers.
- FendixcoreFendix is an information security consultancy that advises its clients to use Guardey for ISO 27001 compliance. Fendix provides Guardey as a recommended, affordable security awareness alternative to clients undertaking ISO 27001 certification.
- StripecoreStripe is used for payment processing on guardey.com, handling credit card transactions without storing card data on Guardey's servers. Stripe enables secure online transactions as part of Guardey's checkout process.
- HubSpotcoreHubSpot is used for marketing automation, CRM, email campaigns, lead nurturing, and analytics. HubSpot tracks visitor behavior and manages marketing campaigns to support Guardey's demand generation and sales pipeline.
- ZendeskcoreZendesk provides customer support and help desk functionality, including the Zendesk Answer Bot for self-service assistance. Zendesk is used for 24/7 support via chat and email.
- CloudflarecoreCloudflare provides CDN, DDoS protection, and DNS services (cf.turnstile) to protect guardey.com and its subdomains from threats and ensure reliable global performance.
Scale indicators7 records
Recent moves6 records
Expansion highlights6 records
Guardey competitors and assessment
Company assessmentBroad incumbents
- KnowBe4: KnowBe4 is the largest dedicated security awareness training platform, serving enterprises globally with phishing simulation, compliance training, and a large content library. It directly competes with Guardey in the same product category but operates at significantly larger scale following its Vista Equity acquisition.
- Proofpoint Security Awareness: Proofpoint is a large email security and compliance vendor with a security awareness training module integrated into its broader platform. It competes with Guardey in phishing simulation and compliance training but bundles these capabilities with a much wider email security portfolio.
- SANS Institute: SANS Institute is a leading cybersecurity training and certification organization offering security awareness programs for enterprises. It competes with Guardey in security awareness content delivery, though SANS leans more toward formal certification while Guardey emphasizes gamified continuous training.
- Microsoft Defender for Office 365 Attack Simulation Training: Microsoft bundles phishing simulation and security training within its Defender for Office 365 and Microsoft 365 Defender suites, often included for enterprise customers. It competes with Guardey as a default option for organizations already standardized on Microsoft 365, particularly for basic awareness and phishing needs.
Direct peers
- Hoxhunt: Hoxhunt provides gamified, behavior-changing security awareness training with measurable phishing simulation outcomes. It targets the same enterprise buyer with continuous engagement-based training and is a direct competitor to Guardey's gamified microlearning approach, particularly in Europe.
- SoSafe: SoSafe is a European security awareness and phishing simulation vendor offering a gamified e-learning platform with strong DACH presence. It competes head-to-head with Guardey for mid-market and enterprise customers, particularly in German-speaking markets.
- CybSafe: CybSafe is a UK-based security awareness platform emphasizing behavioral analytics and risk reduction metrics. It targets similar enterprise buyers with continuous awareness training and competes with Guardey in the same product category.
- Ninjio: Ninjio delivers animated, story-driven security awareness training to engage employees and reduce phishing risk. It uses a similar engagement-led approach to Guardey with monthly episodes and phishing simulations, serving SMB and mid-market customers.
- Phished: Phished is a Belgian security awareness and phishing simulation platform offering automated training journeys and reporting. It is a direct European competitor to Guardey, with particular strength in the Benelux market where Guardey also operates.
- Terranova Security: Terranova Security is a security awareness training vendor offering phishing simulation, GDPR training, and customizable content modules. It competes with Guardey in the same product category, particularly with enterprise and multilingual requirements.
Market position
Strengths5 records
Weaknesses4 records
Competitive moat5 records
Key risks6 records
Key highlights7 records
Customer concentration
Guardey social profiles
Digital presenceGuardey compliance and trust
Trust signalCompliance8 records
Guardey financial estimates
Financial estimateRevenue estimate
Valuation estimate
Guardey leadership team
Management profileNumber of profiles
Profiles7 records
Guardey funding detail
Funding detailFunding overview
Funding rounds1 record
Investors
Funding detail is available on the Subscription and Enterprise plan.Contact sales →
Guardey M&A and investment
M&A and investmentM&A
Investments
M&A and investment is available on the Subscription and Enterprise plan.Contact sales →
Frequently asked questions about Guardey
What does Guardey do?
Guardey operates a SaaS-based gamified security awareness training platform that delivers 3-minute weekly microlearning challenges combined with phishing simulations and real-time compliance reporting. The platform is sold on a per-user subscription basis across three tiers (Phishing, Awareness, Advanced) with sector-specific content for healthcare, education, municipalities, industry/logistics, developers, hospitality, and regional safety authorities, and supports compliance with NIS2, ISO 27001, HIPAA, SOC2, PCI DSS, and the EU AI Act.
Is Guardey a public or private company?
Guardey is a private company. It is classified as corporate owned and is currently operating.
When was Guardey founded?
Guardey was founded in 2022. It employs 11 to 50 people.
Where is Guardey based?
Guardey is headquartered in Rotterdam, Netherlands, in the Europe region.
How does Guardey make money?
One revenue line is on record: saaS Subscription (Per-User).
Who are Guardey's main competitors?
Broad incumbents on record are KnowBe4, Proofpoint Security Awareness, SANS Institute and Microsoft Defender for Office 365 Attack Simulation Training. Direct peers are Hoxhunt, SoSafe, CybSafe, Ninjio, Phished and Terranova Security.
Does Guardey have an API?
No public API is recorded for Guardey.
What industry is Guardey in?
Guardey's product category is Security Awareness Training. Its primary akta.pro industry code is HDADAIAJ, Security Awareness, Training & Compliance Attestation, with a secondary code of EDABAGAB, Phishing, Social Engineering & Business Email Compromise (BEC) Training. Its NAICS code is 61142 and its SIC code is 8200.