Cyber Security Cloud
Cyber Security Cloud (TSE Growth: 4493) is a Tokyo-headquartered cloud cybersecurity vendor providing AI-powered Web Application Firewalls (攻撃遮断くん, WafCharm, AWS Managed Rules), vulnerability management (SIDfm, CloudFastener), and AI governance (AI MONBAN) to over 6,900 customers across 100+ countries.
- Company typePublic
- Founded2010
- HeadquartersTokyo, Japan
- Headcount51–100
- GTM typeB2B
- OfferingSoftware
What Cyber Security Cloud does
Cyber Security Cloud (株式会社サイバーセキュリティクラウド, TSE Growth: 4493) is a Tokyo-headquartered cloud cybersecurity vendor founded in 2010 (originally as Amitié Corporation, renamed 2014) that builds AI-powered Web Application Firewall (WAF), automated WAF operations, and vulnerability management software. Its portfolio centers on 攻撃遮断くん (Shadan-kun), a cloud-based WAF with proprietary detection rules derived from billions of traffic observations; WafCharm, an AI-driven WAF management automation service for AWS, Azure, and Google Cloud; CSC Managed Rules for AWS WAF (a rule set sold on AWS Marketplace, one of only eight global providers and the sole Japanese manufacturer); SIDfm, a vulnerability information management service with 20+ years of history; CloudFastener, a 24/7 full-managed multi-cloud security service; and a hybrid manual-plus-automated vulnerability assessment practice. The June 2026 launch of AI MONBAN extends the portfolio into AI governance and Shadow AI risk auditing.
The company monetizes primarily through monthly recurring subscriptions based on bandwidth and usage, supplemented by project-based vulnerability diagnostics and consulting. Distribution combines self-serve plans via product websites and AWS Marketplace, an inside-sales motion for SMB accounts, a direct enterprise sales team, and a partner program that includes Fujitsu Japan, IIJ, CTC, SCSK, TIS, Serverworks, and Classmethod. It serves over 6,900 customers across 100+ countries with named enterprise logos spanning aviation (ANA), financial services (SBI証券), retail (PARCO), construction (Shimizu), staffing (パソナ), healthcare (第一三共, 日本新薬), and fintech (freee), targeting a mid-term goal of ¥20B revenue by FY2030.
Operationally the company employs 174 consolidated staff as of July 2025, with offices in Tokyo (HQ), Los Angeles (US regional HQ, relocated April 2022), and Singapore (established May 2024). It also wholly owns Generative Technology (cloud development support, established October 2024) and DataSign (consent management, acquired February 2025). The company is led by Representative Director & CEO Toshihiro Koike (joined 2021) and CTO Yoji Watanabe (joined 2016), supported by CFO Masashi Kurata and CRO Seiichi Nakagawa (joined April 2025). It maintains ISO/IEC 27001 certification, Japanese telecommunications carrier registration, and AWS partner credentials (Select Tier, MSSP Competency, Security Lake Ready Specialization).
Cyber Security Cloud firmographics
Firmographics- Name
- Cyber Security Cloud
- Legal name
- 株式会社サイバーセキュリティクラウド
- Website
- https://cscloud.co.jp
- Company type
- Public
- Founded year
- 2010
- Operating status
- Operating
- Headcount range
- 51–100 employees
- Short description
- Cyber Security Cloud (TSE Growth: 4493) is a Tokyo-headquartered cloud cybersecurity vendor providing AI-powered Web Application Firewalls (攻撃遮断くん, WafCharm, AWS Managed Rules), vulnerability management (SIDfm, CloudFastener), and AI governance (AI MONBAN) to over 6,900 customers across 100+ countries.
- Ownership category
- akta.pro rank
Cyber Security Cloud industry classification
Industry- Product category
- Web Application Firewall
- NAICS
- Computing Infrastructure Providers, Data Processing, Web Hosting, and Related Services (51821), Computer Systems Design and Related Services (54151), Computer Facilities Management Services (541513), Computer Systems Design and Related Services (5415)
- SIC
- Services-Computer Integrated Systems Design (7373), Services-Computer Programming Services (7371)
- akta.pro primary industry
- Web Application Security (WAF, RASP) (HDADACAA)
- akta.pro secondary industries
- Cloud Network Security (Microsegmentation, Cloud Firewall, WAF, DDoS) (HDABAHAJ), Cloud Network Security (Microsegmentation, Cloud Firewall) (HDADADAH), Cloud Security Managed Services (CSPM/CWPP/CNAPP) (BPAEADAF)
Keywords
Where Cyber Security Cloud is headquartered
LocationHeadquarters
- HQ city
- Tokyo
- HQ country
- Japan
- HQ region
- Asia
Offices3 records
Markets served
Cyber Security Cloud business model
Business model- GTM type
- B2B
- Offering type
- Software
- Cost components
- Technology or R&D, Personnel, Marketing or Sales, Operations, Infrastructure
Revenue model
- Subscription (Monthly Billing): Main business model is subscription-based monthly billing where customers pay ongoing fees based on service usage period. Provides stable recurring revenue.
- Professional Services: Vulnerability diagnosis services and consulting services provided as one-time or project-based engagements.
Pricing tiers
| Model | Billing | Price |
|---|---|---|
| Subscription | Monthly | 攻撃遮断くん Web/DDoS Security Type Neo - Website plans starting from 20Mbps |
| Subscription | Monthly | CloudFastener - Full managed security service |
Go-to-market motion4 records
Distribution channels5 records
Marketing channels8 records
Cyber Security Cloud product offering
Product offeringCore offering
Cyber Security Cloud develops and sells cloud-based cybersecurity products including a cloud-based Web Application Firewall (攻撃遮断くん / Shadan-kun), AI-powered automated WAF management (WafCharm), proprietary WAF rule sets for AWS (CSC Managed Rules), vulnerability information management (SIDfm), and full-managed 24/7 multi-cloud security services (CloudFastener). The company serves over 6,900 customers across 100+ countries and holds the No.1 domestic market share in Japan for cloud-based WAF.
Product overview
Cyber Security Cloud operates as a comprehensive Japanese cybersecurity manufacturer offering a multi-product portfolio centered on Web Application Firewall (WAF) and vulnerability management. The core offering consists of 攻撃遮断くん (cloud-based WAF with AI-driven detection), WafCharm (AI-powered automated WAF management for AWS/Azure/Google Cloud), and CSC Managed Rules for AWS WAF (one of only 8 global AWS Managed Rule sellers). Additional products include SIDfm (vulnerability management with 20+ years of history), CloudFastener (full managed security service for multi-cloud environments), and 脆弱性診断サービス (hybrid manual plus automated vulnerability assessment). The company has expanded through group companies DataSign (consent management), Bunsin, and Generative Technology (cloud development), and recently launched AI MONBAN for AI governance. Products serve over 100 countries and 6,700+ customers, primarily via subscription/subscription model.
Differentiator
Problem solved
Functional benefit
Brands
- 攻撃遮断くん (Shadan-kun): Cloud-based WAF service - No.1 market share in Japan for protecting websites from cyber attacks
- WafCharm
- CSC Managed Rules for AWS WAF
- SIDfm
- CloudFastener
- webtru
- Bunsin
- AI MONBAN
- CloudFastener
Products and services
- 攻撃遮断くん (Shadan-kun) Cloud-based Web Application Firewall (WAF) that protects websites from cyber attacks by detecting and blocking threats in real-time using proprietary AI-driven detection rules built on trillions of data points. Holds No.1 domestic market share in Japan for cloud-based WAF (3 consecutive years).
- WafCharm AI-powered automated WAF management service for AWS, Azure, and Google Cloud that automatically generates, updates, and optimizes WAF rules based on threat intelligence and customer environments. Includes vulnerability response management and optimal rule setting as an all-in-one WAF operations solution.
- CSC Managed Rules for AWS WAF Proprietary WAF rule set for AWS WAF, provided as Managed Rules on AWS Marketplace. CSC is one of only 8 global Managed Rule Sellers and the only Japanese manufacturer offering this integration. Distributed globally in 100+ countries.
- SIDfm Vulnerability management service that automatically collects vulnerability information globally and provides patch information and management progress tracking. Japan's first automated vulnerability management tool with 20+ years of operational history and No.1 share in vulnerability information distribution.
- CloudFastener Full managed cloud security service providing 24/7 comprehensive security management and operations for AWS, Azure, and Google Cloud environments. Combines product delivery with consulting and human support for tailored security architecture, including AWS Security Incident Response integration.
- 脆弱性診断サービス (Vulnerability Assessment Service) Security diagnosis service combining expert manual assessment with automated tool scanning for web applications, platforms, and APIs. Covers approximately 2,000 systems with 25+ years of diagnostic expertise and is registered under METI Information Security Services Standards.
- AI MONBAN AI governance service that helps companies visualize, control, and audit AI usage risks including Shadow AI detection and AI governance compliance. Launched June 2026 as part of CSC's expansion into AI security.
- webtru CSC Group company offering privacy-related regulation compliance services including consent management automation for enterprises, addressing data privacy and regulatory compliance requirements.
Quantifiable outcome
- Protects over 20,000 websites cumulatively
- +3 more outcomes
Companies that use Cyber Security Cloud
Customer profileNamed customers14 records
Segments4 records
Ideal customer profiles3 records
Cyber Security Cloud technology and API
TechnologyTechnology focussed Yes
API detail
- Has API
- No
- API docs
- API detail
Core technology
AI maturity
App detail
Integration6 records
AI capability6 records
Feature6 records
Cyber Security Cloud partnerships and signals
Strategic signalPartnerships
Twelve partnerships are on record, tiered core, strategic and major.
- Amazon Web Services (AWS)coreAWS is the core cloud platform partner. CSC provides Managed Rules for AWS WAF, CloudFastener for AWS security management, and participates in AWS Security Incident Response service. CSC is one of only 8 companies globally providing WAF rules on AWS and holds AWS Partner Network certifications including Software Path, MSSP Competency, and Select Tier Service Partner.
- CStreamstrategicStrategic partnership to enhance CloudFastener's compliance capabilities through CStream integration, strengthening compliance management features for customers.
- Fujitsu JapanmajorSIer and technology partner distributing CSC security products including 攻撃遮断くん, WafCharm, SIDfm, and CloudFastener through their customer network.
- IIJ (Internet Initiative Japan)majorSIer partner distributing CSC security products through their network infrastructure services.
- CTC (伊藤忠テクノソリューションズ)majorMajor SIer partner distributing CSC security products.
- SCSKmajorSIer partner distributing CSC security products and services.
- TIS Inc.majorSIer partner distributing CSC security products.
- ServerworksmajorAWS Premier Tier Services Partner and CSC partner for AWS-based security solutions.
- ClassmethodmajorAWS Premier Tier Services Partner and CSC partner distributing AWS WAF solutions.
- Generative Technology (株式会社ジェネレーティブテクノロジー)coreCSC group company established October 2024 for cloud construction and software development support services, leveraging CSC's security expertise.
- DataSign (株式会社DataSign)coreCSC group company acquired February 2025, providing consent management automation services for enterprise privacy regulation compliance.
- Cyber Security Federation (サイバーセキュリティ連盟)strategicIndustry association founded by CSC as initiator, promoting cybersecurity awareness and education through industry-government-academia collaboration.
Scale indicators7 records
Recent moves11 records
Expansion highlights7 records
Cyber Security Cloud competitors and assessment
Company assessmentDirect peers
- Fastly: Edge cloud platform with WAF, bot mitigation, and application security capabilities. Comparable cloud-delivered security model with developer-focused GTM and marketplace distribution patterns similar to CSC's AWS Marketplace approach.
- Imperva (Thales): Pure-play WAF and application security vendor now part of Thales. Direct competitor to CSC's WAF and DDoS offerings, serving similar enterprise and SMB customer segments with comparable subscription and managed service models.
- Radware: Application security and delivery vendor offering WAF, DDoS protection, bot management, and API security. Comparable to CSC's product portfolio with focus on enterprise customers and cloud-delivered security services.
- Cloudflare: Cloud-native security and CDN platform offering WAF, DDoS protection, bot management, and managed rule sets. Directly comparable to CSC's 攻撃遮断くん and WafCharm products, competing in same product category globally with similar subscription-based delivery model.
- Barracuda Networks: Cloud-first security vendor offering WAF, application security, and managed security services. Comparable SaaS security model with similar mid-market and enterprise customer focus, now owned by KKR after take-private.
Broad incumbents
- F5 (NGINX App Protect): Larger application delivery and security vendor offering WAF through NGINX App Protect. Broader portfolio player competing in application security but with wider focus on load balancing, API gateway, and enterprise infrastructure.
- Palo Alto Networks (Prisma Cloud): Global cybersecurity leader offering WAF as part of Prisma Cloud CNAPP portfolio. Larger incumbent with broader security platform competing across multiple CSC product categories including cloud security and managed services.
Regional players
- Trend Micro: Japanese-headquartered global cybersecurity vendor (TSE: 4704). Most relevant Japanese cybersecurity peer for market context, though significantly larger and broader in scope; relevant for understanding Japan enterprise security competitive dynamics.
Emerging players
- Qualys: Cloud-based vulnerability management and security platform. Comparable to CSC's SIDfm vulnerability management offering with similar SaaS delivery model, providing a useful comparable for the vulnerability management product line.
Others
- AWS WAF (native): Native AWS WAF service that is both CSC's largest distribution channel (via AWS Marketplace Managed Rules) and a potential substitute. Considered here as ecosystem participant rather than pure competitor since CSC integrates with and extends AWS WAF capabilities.
Market position
Strengths4 records
Weaknesses4 records
Competitive moat7 records
Key risks5 records
Key highlights7 records
Customer concentration
Cyber Security Cloud social profiles
Digital presenceCyber Security Cloud compliance and trust
Trust signalCompliance6 records
Cyber Security Cloud financial estimates
Financial estimateRevenue estimate
Valuation estimate
Cyber Security Cloud leadership team
Management profileNumber of profiles
Profiles1 record
Cyber Security Cloud subsidiaries and ownership
Company hierarchySubsidiaries4 records
Cyber Security Cloud funding detail
Funding detailFunding overview
Funding rounds5 records
Investors12 records
Funding detail is available on the Subscription and Enterprise plan.Contact sales →
Cyber Security Cloud M&A and investment
M&A and investmentM&A
Investments
M&A and investment is available on the Subscription and Enterprise plan.Contact sales →
Frequently asked questions about Cyber Security Cloud
What does Cyber Security Cloud do?
Cyber Security Cloud develops and sells cloud-based cybersecurity products including a cloud-based Web Application Firewall (攻撃遮断くん / Shadan-kun), AI-powered automated WAF management (WafCharm), proprietary WAF rule sets for AWS (CSC Managed Rules), vulnerability information management (SIDfm), and full-managed 24/7 multi-cloud security services (CloudFastener). The company serves over 6,900 customers across 100+ countries and holds the No.1 domestic market share in Japan for cloud-based WAF.
Is Cyber Security Cloud a public or private company?
Cyber Security Cloud is a public company. It is classified as public and is currently operating.
When was Cyber Security Cloud founded?
Cyber Security Cloud was founded in 2010. It employs 51 to 100 people.
Where is Cyber Security Cloud based?
Cyber Security Cloud is headquartered in Tokyo, Japan, in the Asia region.
How does Cyber Security Cloud make money?
Two revenue lines are on record. Subscription (Monthly Billing) is the primary driver. The others are professional Services.
Who are Cyber Security Cloud's main competitors?
Direct peers on record are Fastly, Imperva (Thales), Radware, Cloudflare and Barracuda Networks. Broad incumbents are F5 (NGINX App Protect) and Palo Alto Networks (Prisma Cloud). Trend Micro is listed as a regional player. Qualys is listed as an emerging player. AWS WAF (native) is listed as an others.
Does Cyber Security Cloud have an API?
No public API is recorded for Cyber Security Cloud.
What industry is Cyber Security Cloud in?
Cyber Security Cloud's product category is Web Application Firewall. Its primary akta.pro industry code is HDADACAA, Web Application Security (WAF, RASP), with a secondary code of HDABAHAJ, Cloud Network Security (Microsegmentation, Cloud Firewall, WAF, DDoS). Its NAICS code is 51821 and its SIC code is 7373.