Strike
Strike provides AI-powered continuous penetration testing combined with expert human validation through a SaaS platform serving 100+ enterprise customers across finance, technology, telecom, energy, healthcare, and manufacturing sectors in the Americas and Europe.
- Company typePrivate
- Founded2022
- HeadquartersMiami, United States
- Headcount51–100
- GTM typeB2B
- OfferingSoftware
What Strike does
Strike is a Miami-headquartered, Delaware-incorporated cybersecurity company that delivers AI-powered continuous penetration testing to enterprise customers through a hybrid human-machine validation model. Founded in 2021 by Santiago Rosenblatt, the company operates regional entities in the United States (Miami), Uruguay (Montevideo, Strike SAS), Mexico (Mexico City, Airstrike SRL de CV), and Brazil (São Paulo, Strike Brazil LTDA), serving 100+ enterprise clients across finance, technology, telecom, energy, healthcare, and manufacturing. Named customers include Santander (multi-region deployments), Bancolombia, Credicorp, Bancoestado, Banco Galicia, Mercado Libre / Mercado Pago, Globant, Okta, PepsiCo, Stitch Fix, Raizen, Telefonica, Bitso, and Clara, indicating a roster anchored by Latin American financial institutions and global technology and consumer brands.
The company's core product is the Always-on Platform, which combines proprietary AI agents with a curated network of ethical hackers ("Strikers") to perform continuous vulnerability discovery and threat emulation. The platform architecture comprises three integrated modules: Live Asset Radar for real-time asset discovery via integration with infrastructure, DNS, and code repositories; Threat Emulation Engine for autonomous scheduled, on-demand, and triggered attack emulations; and Remediation Support Hub for guided remediation workflows with automated retesting and audit-ready reporting in PCI DSS, SOC 2, and ISO 27001 formats. AI agents surface up to 80% of validated findings at a reported 97% precision rate (3% false positives), while human Strikers confirm 100% of results, enabling detection of business-logic vulnerabilities AI cannot replicate. Add-on Manual Pentesting and Red Teaming projects are scoped and priced separately, and Strike 360 was introduced in March 2025 as a new platform iteration. The platform integrates with Jira, Slack, and CI/CD pipelines and exposes API access for programmatic security workflows.
Strike generates revenue through annual SaaS subscriptions for the Always-on Platform (12-month terms, automatic renewal, non-cancellable, non-refundable) and discrete professional-services engagements for Manual Pentesting and Red Teaming. Pricing is quote-based and not publicly disclosed, tailored to organization size, asset scope, and testing frequency. The go-to-market combines direct enterprise field sales targeting finance, technology, healthcare, telecom, energy, and manufacturing verticals with a self-serve "Try Strike for free" product-led growth option for smaller customers. The company has raised approximately $18.87M across three rounds: a $370K pre-seed from Latitud in July 2021, a $5.4M seed in April 2022 led by Greyhound Capital with participation from FJ Labs, Canary, NXTP, VentureFriends, Magma Partners, Latitud, and Orok Ventures, and a $13.5M Series A in March 2025 led by FinTech Collective with participation from Carao Ventures, Galicia Ventures, FJ Labs, Greyhound Capital, and Canary. Strike maintains SOC 2 Type II, ISO 27001, and a HIPAA-aligned compliance program, and has been recognized as a 2026 IT-Harvest Cyber 150 winner and a GigaOm Radar Challenger/Fast Mover in offensive security.
Strike firmographics
Firmographics- Name
- Strike
- Legal name
- Strike Security LLC
- Website
- https://strike.sh
- Company type
- Private
- Founded year
- 2022
- Operating status
- Operating
- Headcount range
- 51–100 employees
- Short description
- Strike provides AI-powered continuous penetration testing combined with expert human validation through a SaaS platform serving 100+ enterprise customers across finance, technology, telecom, energy, healthcare, and manufacturing sectors in the Americas and Europe.
- Ownership category
- akta.pro rank
Strike industry classification
Industry- Product category
- Offensive Security / Continuous Penetration Testing
- NAICS
- Testing Laboratories and Services (541380)
- SIC
- Services-Testing Laboratories (8734)
- akta.pro primary industry
- Penetration Testing Platforms (PTaaS) (HDADAHAG)
- akta.pro secondary industries
- Penetration Testing & Red Teaming (BPAKAHAF), Penetration Testing & Red Teaming (BPAKADAE)
Keywords
Where Strike is headquartered
LocationHeadquarters
- HQ city
- Miami
- HQ country
- United States
- HQ region
- North America
Offices4 records
Markets served
Strike business model
Business model- GTM type
- B2B
- Offering type
- Software
- Cost components
- Personnel, Technology or R&D, Marketing or Sales, Operations
Revenue model
- Always-On Platform Subscription: Core SaaS subscription providing continuous hybrid security testing with AI-driven vulnerability detection and human expert validation. Subscription terms typically 12 months with automatic renewal.
- Manual Pentesting Projects: Discrete, human-led penetration testing engagements performed by Strikers on specific assets, scoped and priced separately from the Always-on Platform subscription.
- Red Teaming Projects: Adversarial simulation exercises designed to test organization detection and response capabilities through realistic attack scenarios. Scoped and priced separately.
- Platform Add-ons: Additional services including hybrid testing booster and specialized testing modules beyond core platform coverage.
Pricing tiers
| Model | Billing | Price |
|---|---|---|
| Subscription | Annual | Enterprise subscription with full platform access |
Go-to-market motion2 records
Distribution channels3 records
Marketing channels6 records
Strike product offering
Product offeringCore offering
Strike provides an AI-powered continuous penetration testing platform that combines automated threat emulation with expert human validation by a network of ethical hackers called "Strikers." The platform performs 24/7 hybrid security validation across enterprise environments, including real-time asset discovery, autonomous vulnerability testing, and guided remediation workflows to reduce mean time to remediation.
Product overview
Strike offers a platform-plus-modules architecture centered on its AI-powered Always-on Platform for Continuous Hybrid Validation. The core platform combines automated AI-driven security testing with human validation from ethical hackers (Strikers). Supporting modules include Manual Pentesting Project and Red Teaming Project for discrete engagements requiring deeper human-led analysis. The platform comprises three integrated components: Live Asset Radar (asset discovery and monitoring), Threat Emulation Engine (continuous vulnerability testing), and Remediation Support Hub (vulnerability resolution and compliance reporting). In 2025, Strike launched Strike 360, a new iteration of its AI-powered platform.
Differentiator
Problem solved
Functional benefit
Products and services
- Always-on Platform Strike's flagship AI-powered continuous penetration testing SaaS platform combining automated threat emulation with expert human validation by Strikers to deliver 24/7 continuous hybrid validation of enterprise attack surfaces for large enterprise customers.
- Manual Pentesting Project Discrete, human-led penetration testing engagement performed by Strikers on specific assets or functionalities requiring focused, high-impact analysis beyond the platform's automated coverage. Scoped and priced separately from the core platform subscription.
- Red Teaming Project Adversarial simulation exercises designed to test an organization's detection and response capabilities through realistic attack scenarios. Scoped and priced separately from the core platform subscription.
- Strike 360 New AI-powered platform iteration launched in 2025 for enhanced cybersecurity capabilities, serving over 100 customers globally with continuous penetration testing as a successor iteration of the Always-on Platform.
Quantifiable outcome
- 97% precision with only 3% false positives
- +7 more outcomes
Companies that use Strike
Customer profileNamed customers27 records
Segments6 records
Ideal customer profiles4 records
Strike technology and API
TechnologyTechnology focussed Yes
API detail
- Has API
- Yes
- API docs
- API detail
Core technology
AI maturity
App detail
Integration3 records
AI capability5 records
Feature7 records
Strike partnerships and signals
Strategic signalScale indicators11 records
Recent moves6 records
Expansion highlights6 records
Strike competitors and assessment
Company assessmentDirect peers
- Pentera: Pentera is a leading Automated Security Validation / PTaaS platform that continuously emulates attacks against enterprise environments. It is the closest direct competitor to Strike's Always-on Platform, competing head-to-head on AI-driven, continuous offensive security for large enterprises.
- Cobalt: Cobalt operates a PTaaS platform that combines on-demand pentesting with a global community of vetted security researchers. Like Strike, it blends technology with a human tester network and sells into SaaS and enterprise customers, making it a direct comparable.
- Synack: Synack runs a crowdsourced, AI-augmented pentesting platform that pairs vetted ethical hackers with automation, serving large enterprises and government agencies. It is structurally similar to Strike's hybrid model and competes in the same enterprise offensive security procurement cycles.
- HackerOne: HackerOne is the largest bug bounty and vulnerability disclosure platform, with a community of ethical hackers. It overlaps with Strike on crowdsourced offensive testing and enterprise security validation, particularly for continuous testing use cases.
- Bugcrowd: Bugcrowd provides crowdsourced security testing (bug bounty, pentest as a service, vulnerability disclosure) backed by a researcher community. It competes with Strike in PTaaS and adjacent continuous testing engagements for enterprise buyers.
Broad incumbents
- NCC Group: NCC Group is a large global cybersecurity consulting and testing firm offering pentesting, red teaming, threat intelligence and managed services. It is a broad incumbent that competes with Strike's Manual Pentesting and Red Teaming add-ons in enterprise and regulated accounts.
- Bishop Fox: Bishop Fox is a well-known offensive security services firm specializing in pentesting, red teaming and adversary simulation for large enterprises. It overlaps with Strike's professional-services layer and is often considered in the same vendor evaluations.
- Rapid7: Rapid7 offers broad security operations, vulnerability management and managed detection, and has expanded into continuous security validation. It competes with Strike indirectly through its Insight platform and adjacent pentesting partners.
- CrowdStrike: CrowdStrike is a leading endpoint and cloud security platform with growing offensive security and exposure management offerings. As a broad incumbent with deep enterprise distribution, it is a key competitive threat to Strike in larger enterprise accounts.
Emerging players
- Offensive Security (OffSec): OffSec is best known for OSCP/penetration testing training, but increasingly offers assessment services and platform tooling. It is comparable as a player in the offensive security talent and assessment ecosystem that Strike draws its Strikers and positioning from.
Market position
Strengths5 records
Weaknesses5 records
Competitive moat5 records
Key risks1 record
Key highlights7 records
Customer concentration
Strike social profiles
Digital presenceStrike compliance and trust
Trust signalCompliance3 records
Strike financial estimates
Financial estimateRevenue estimate
Valuation estimate
Strike leadership team
Management profileNumber of profiles
Profiles1 record
Strike subsidiaries and ownership
Company hierarchySubsidiaries3 records
Strike funding detail
Funding detailFunding overview
Funding rounds3 records
Investors12 records
Funding detail is available on the Subscription and Enterprise plan.Contact sales →
Strike M&A and investment
M&A and investmentM&A
Investments
M&A and investment is available on the Subscription and Enterprise plan.Contact sales →
Frequently asked questions about Strike
What does Strike do?
Strike provides an AI-powered continuous penetration testing platform that combines automated threat emulation with expert human validation by a network of ethical hackers called "Strikers." The platform performs 24/7 hybrid security validation across enterprise environments, including real-time asset discovery, autonomous vulnerability testing, and guided remediation workflows to reduce mean time to remediation.
Is Strike a public or private company?
Strike is a private company. It is classified as venture growth investor backed and is currently operating.
When was Strike founded?
Strike was founded in 2022. It employs 51 to 100 people.
Where is Strike based?
Strike is headquartered in Miami, United States, in the North America region.
How does Strike make money?
Four revenue lines are on record. Always-On Platform Subscription is the primary driver. The others are manual Pentesting Projects, red Teaming Projects and platform Add-ons.
Who are Strike's main competitors?
Direct peers on record are Pentera, Cobalt, Synack, HackerOne and Bugcrowd. Broad incumbents are NCC Group, Bishop Fox, Rapid7 and CrowdStrike. Offensive Security (OffSec) is listed as an emerging player.
Does Strike have an API?
Yes. Strike offers API access for programmatic integration with security workflows. Subject to Strike's API terms and usage policies, clients may access the Platform through the Strike API for programmatic integration with their security workflows. The Terms of Service reference "Testing Credentials" including API keys, tokens, and certificates, indicating API-based authentication is supported.
What industry is Strike in?
Strike's product category is Offensive Security / Continuous Penetration Testing. Its primary akta.pro industry code is HDADAHAG, Penetration Testing Platforms (PTaaS), with a secondary code of BPAKAHAF, Penetration Testing & Red Teaming. Its NAICS code is 541380 and its SIC code is 8734.