StealthPath
StealthPath LLC sells StealthCommand, an air-gapped, fully passive OT cybersecurity platform for critical infrastructure operators — water, power, dams, manufacturing, healthcare, aviation and federal sites — that enterprise platforms structurally exclude, priced from under $15,000 annually.
- Company typePrivate
- Founded2016
- HeadquartersReston, United States
- Headcount11–50
- GTM typeB2B
- OfferingSoftware
What StealthPath does
StealthPath LLC is a privately held, Reston, Virginia-based OT cybersecurity company founded in 2016 that develops and sells StealthCommand, an air-gapped, fully passive platform for critical infrastructure operators. The platform is engineered for facilities operating below the 'security poverty line' — small and medium operators of water treatment plants, electric utilities, dams, manufacturing supply chains, healthcare/pharma environments, aviation infrastructure, and federal assets — where enterprise platforms are economically and operationally inaccessible. The technical architecture is air-gapped by native design (not merely compatible with air-gapped operation), introduces zero packets and zero agents into operational networks, and ships as cryptographically attested, DISA STIG-hardened COTS hardware opened in the client's presence; outputs are tamper-evident and data remains under the operator's custody at all times.
The platform is delivered as eight integrated products organized into three tiers: Command (StealthConsole fleet management, StealthControl compliance enforcement, StealthForge deterministic build pipeline), Field (StealthRecon passive discovery, StealthAlert continuous monitoring, StealthVault full-packet capture), and Operations (StealthOps incident response kit, StealthTrace autonomous leave-behind monitoring). Revenue is generated primarily through annual subscription licensing bundled with hardware, priced from under $15,000 per facility per year, and through direct enterprise and federal sales via a 'Request a Demo' model anchored by a sole-source U.S. Army Corps of Engineers contract covering OT visibility and incident response across 1,500+ federal sites (year one completed February 2026, options exercised, 100% license renewal over four years). Go-to-market blends field sales into critical infrastructure operators with event-driven adoption via multi-agency OT exercises and a research partnership channel through Imperial College London.
The company is founder-led (R. Andrew Kingston, CEO; Alexander Kingston, CTO) and has reportedly raised only $220,000 in disclosed funding (April 2020) despite building a 27-patent-asset portfolio (12 granted, 15 pending) and expanding into a UK representative office, advisory additions led by former Bank of England Head of Operational Risk Paul Williams, and aviation/transportation verticals.
StealthPath firmographics
Firmographics- Name
- StealthPath
- Legal name
- StealthPath LLC
- Website
- https://stealthpath.com
- Company type
- Private
- Founded year
- 2016
- Operating status
- Operating
- Headcount range
- 11–50 employees
- Short description
- StealthPath LLC sells StealthCommand, an air-gapped, fully passive OT cybersecurity platform for critical infrastructure operators — water, power, dams, manufacturing, healthcare, aviation and federal sites — that enterprise platforms structurally exclude, priced from under $15,000 annually.
- Ownership category
- akta.pro rank
Where StealthPath is headquartered
LocationHeadquarters
- HQ city
- Reston
- HQ country
- United States
- HQ region
- North America
Offices3 records
Markets served
StealthPath business model
Business model- GTM type
- B2B
- Offering type
- Software
- Cost components
- Technology or R&D, Supply Chain, Personnel, Infrastructure, Marketing or Sales
Revenue model
- Platform/Subscription Licensing: Annual subscription licensing for the StealthCommand platform. Pricing designed for distributed facility budgets — 'from under $15,000 annually.' Multi-year contracts available (USACE contract has options exercised). The platform is sold as a complete solution with hardware and software bundled.
- Hardware Sales: Commercial off-the-shelf hardware with proprietary software. Units are configured, hardened, and sealed at client headquarters before deployment. Field unit replacement workflow supported through StealthForge release pipeline.
Pricing tiers
| Model | Billing | Price |
|---|---|---|
| Subscription | Annual | Annual subscription from under $15,000 |
Go-to-market motion2 records
Distribution channels3 records
Marketing channels5 records
StealthPath product offering
Product offeringCore offering
StealthPath provides StealthCommand, an air-gapped, passive-only OT cybersecurity platform for critical infrastructure facilities. The platform combines commercial off-the-shelf hardware with proprietary software to deliver asset inventory, network discovery, continuous monitoring, full-packet capture, compliance reporting, and incident response without requiring cloud connectivity, specialist staff, or network modifications, and is sold as an annual subscription bundled with sealed, configured hardware from under $15,000 per facility.
Product overview
StealthPath offers StealthCommand, a unified OT cybersecurity platform designed for air-gapped, resource-constrained critical infrastructure environments. The platform comprises eight integrated products across three functional tiers: Command (StealthConsole, StealthControl, StealthForge), Field (StealthRecon, StealthAlert, StealthVault), and Operations (StealthOps, StealthTrace). StealthForge provides the deterministic build pipeline hardening units to DISA STIG standards before deployment. StealthRecon delivers passive network discovery and asset identification. StealthAlert enables continuous monitoring with baseline deviation detection. StealthVault provides full-packet capture with cryptographic attestation. StealthConsole offers centralized fleet management without requiring connectivity to field units. StealthControl enforces security posture and compliance. StealthOps serves as a portable incident response kit. StealthTrace enables autonomous leave-behind monitoring. All products share the same zero-risk architecture: passive operation (zero packets injected, zero agents), air-gapped native design, cryptographically attested outputs, and data sovereignty (no cloud, no exfiltration path).
Differentiator
Problem solved
Functional benefit
Brands
- StealthConsole: Manage the fleet - Centralized management for all deployed units.
- StealthControl
- StealthForge
- StealthRecon
- StealthAlert
- StealthVault
- StealthOps
- StealthTrace
Products and services
- StealthCommand Platform Overarching air-gapped OT cybersecurity platform providing asset inventory, network discovery, network topology, Zero Trust maturity assessment, persistent recording, and continuous anomaly detection for critical infrastructure operators, delivered through bundled hardware and software with no cloud dependency.
- StealthConsole Centralized fleet management console providing single-pane-of-glass visibility across all deployed units without requiring connectivity to field units, with fleet-wide deployment status, license lifecycle management, operator access control, and aggregated reporting.
- StealthControl Policy enforcement and compliance management module for defining security baselines, monitoring adherence, and generating compliance evidence across the fleet against ISA/IEC 62443, NIST SP 800-82, NIST SP 800-207, and DISA STIG.
- StealthForge Deterministic build pipeline that produces DISA STIG-hardened field deployment units with SCAP verification, cryptographic artifact signing, SBOM generation, and tamper-evident build verification, with each release delivered as a complete build rather than a patch.
- StealthRecon Passive network discovery and asset identification tool that connects to a TAP or SPAN port and becomes operational in six clicks with no packets injected and no agents installed, identifying OT/ICS protocols including Modbus TCP/RTU, DNP3, EtherNet/IP, PROFINET, IEC 60870-5-104, IEC 61850, and S7Comm.
- StealthAlert Continuous monitoring solution that detects new devices, unexpected protocols, and communication anomalies against established baselines, using operator-configurable thresholds, pre-configured whitelists built at HQ before deployment, and historical trend analysis.
- StealthVault Full-packet capture system with cryptographic attestation that records every packet and session with tamper-evident storage, time-stamped reconstruction, and exportable evidence packages, including Wireshark-compatible PCAP export.
- StealthOps Portable, fully integrated incident response kit that bundles discovery and monitoring into a single deployable unit for teams that arrive at a site, document it, and move to the next, including rapid-deployment data capture and attested data collection.
- StealthTrace Autonomous leave-behind monitoring solution that enables continuous passive monitoring after incident response teams depart, with unattended operation, baseline generation and deviation alerting, and retrievable evidence packages with local attestation.
Quantifiable outcome
- Deploy operational in under 1 hour without external consultants or network modifications
- +4 more outcomes
Companies that use StealthPath
Customer profileNamed customers3 records
Segments7 records
Ideal customer profiles2 records
StealthPath technology and API
TechnologyTechnology focussed Yes
API detail
- Has API
- No
- API docs
- API detail
Core technology
AI maturity
App detail
AI capability1 record
Feature9 records
StealthPath partnerships and signals
Strategic signalPartnerships
Five partnerships are on record, tiered core, flagship and minor.
- Technology Advancement Center (TAC)coreParticipation in Defend The Airport 2.0 collaborative at TheLink facility in Columbia, Maryland. StealthPath participated in an industry-led breakout session on airport OT visibility, deploying passive discovery across the ADEGA airport cyber range environment. TAC operates ADEGA, a purpose-built airport cyber range reproducing real-world aviation OT systems. The collaboration involves government, aviation, and cybersecurity leaders including FBI, FAA, Lockheed Martin, and other critical infrastructure stakeholders.
- Paul WilliamsflagshipFormer Bank of England Head of Operational Risk & Resilience, former co-Chair of the G7 Finance Ministers & Central Bank Governors Cyber Expert Group, and Commissioner on the National Preparedness Commission. Williams brings more than 35 years of leadership across banking technology infrastructure, regulatory policy development, and international cybersecurity coordination. His appointment strengthens StealthPath's policy and regulatory dimension and supports UK market strategy and international expansion. He also serves as Managing Director and Founder of Phoenix Resilience Limited.
- Imperial College LondoncoreCollaborative research partnership with the Centre for Active Resilience and Security (CARS) within the Department of Civil and Environmental Engineering at Imperial College London. The programme investigates whether a dual dataset approach — combining knowledge graph and time-series analysis — can provide more reliable anomaly detection and source attribution for trusted data in critical infrastructure. StealthPath funds the programme and contributes its operational monitoring platform and research leadership through Alexander Kingston as Research Lead. Initial phase designed as foundation for longer-term research partnership with intent for externally funded Phase 2 research programmes, peer-reviewed publications, and joint funding applications.
- DynicsminorPartnered in the Defend The Airport 2.0 'Airport Infrastructures: Challenges, Preparedness, and Awareness' breakout session. Dynics provided network segmentation expertise, paired with StealthPath's passive discovery and Phosphorus' device management to address OT visibility across the airport environment.
- Phosphorus CybersecurityminorPartnered in the Defend The Airport 2.0 session on airport OT visibility. Phosphorus contributed device management capabilities alongside StealthPath's passive discovery and Dynics' network segmentation.
Scale indicators7 records
Recent moves6 records
Expansion highlights6 records
StealthPath competitors and assessment
Company assessmentBroad incumbents
- ForeScout (now_ixia-customer-engagement): Broad incumbent providing agentless device visibility and network segmentation across IT/OT/IoT. ForeScout overlaps with StealthRecon's passive discovery but is positioned as an enterprise platform with managed connectivity models rather than air-gapped sub-$15K deployments.
- Darktrace: Broad incumbent with OT/ICS detection and response capabilities powered by self-learning AI. Comparable on anomaly detection and asset visibility for industrial environments, but cloud-/AI-model dependent rather than fully air-gapped, and priced at enterprise tiers.
- Cybereason (OT/ICS): Broad endpoint and operational security incumbent extending into OT environments. Overlaps with StealthCommand on monitoring and incident response but competes from an enterprise EDR base rather than a purpose-built air-gapped architecture.
- Tenable OT Security: Broad incumbent offering OT/ICS asset discovery and vulnerability management as part of Tenable's broader exposure management platform. Overlaps with StealthRecon/StealthAlert capabilities but is part of a much larger cybersecurity portfolio aimed at enterprise buyers rather than air-gapped, sub-$15K deployments.
Emerging players
- Phosphorus Cybersecurity: Emerging player focused on extended IoT/OT device management and security. Already partnered with StealthPath at the Defend The Airport 2.0 collaborative, indicating partial overlap in airport and industrial OT deployments but a different primary capability (active device management vs. passive monitoring).
- Dynics: Emerging industrial cybersecurity and network segmentation peer. Partnered with StealthPath in the Defend The Airport 2.0 session, with complementary network segmentation capabilities that pair with StealthPath's passive discovery — a partial-overlap peer in the airport/OT segment.
Direct peers
- Armis: Direct peer in asset visibility and security for IT/OT/IoT environments. Armis provides agentless device discovery and threat detection for critical infrastructure and industrial operators, competing for the same buyer persona but with cloud-centric architecture and enterprise pricing.
- Nozomi Networks: Direct OT/ICS security and visibility peer serving critical infrastructure operators. Both companies provide passive network monitoring, asset discovery, and anomaly detection across industrial protocols — Nozomi at the enterprise tier, StealthPath at the sub-enterprise air-gapped tier.
- Claroty: Direct peer offering OT security and asset visibility for critical infrastructure and industrial enterprises. Claroty's platform addresses the same customer pain (asset discovery, network segmentation, vulnerability management) but targets higher-end enterprise budgets rather than the sub-enterprise security-poverty-line facilities StealthPath focuses on.
- Dragos: Direct peer in OT/ICS cybersecurity for critical infrastructure and industrial environments. Dragos provides asset discovery, threat detection, and incident response across similar verticals (electric, water, manufacturing, oil & gas), making it the closest commercial analog to StealthCommand, although Dragos is cloud-connected and enterprise-priced where StealthPath is air-gapped and sub-$15K.
Market position
Strengths5 records
Weaknesses5 records
Competitive moat6 records
Key risks6 records
Key highlights7 records
Customer concentration
StealthPath social profiles
Digital presenceStealthPath financial estimates
Financial estimateRevenue estimate
Valuation estimate
StealthPath leadership team
Management profileNumber of profiles
Profiles5 records
StealthPath funding detail
Funding detailFunding overview
Funding rounds1 record
Investors
Funding detail is available on the Subscription and Enterprise plan.Contact sales →
StealthPath M&A and investment
M&A and investmentM&A
Investments
M&A and investment is available on the Subscription and Enterprise plan.Contact sales →
Frequently asked questions about StealthPath
What does StealthPath do?
StealthPath provides StealthCommand, an air-gapped, passive-only OT cybersecurity platform for critical infrastructure facilities. The platform combines commercial off-the-shelf hardware with proprietary software to deliver asset inventory, network discovery, continuous monitoring, full-packet capture, compliance reporting, and incident response without requiring cloud connectivity, specialist staff, or network modifications, and is sold as an annual subscription bundled with sealed, configured hardware from under $15,000 per facility.
Is StealthPath a public or private company?
StealthPath is a private company. It is classified as founder individual operated bootstrapped and is currently operating.
When was StealthPath founded?
StealthPath was founded in 2016. It employs 11 to 50 people.
Where is StealthPath based?
StealthPath is headquartered in Reston, United States, in the North America region.
How does StealthPath make money?
Two revenue lines are on record. Platform/Subscription Licensing is the primary driver. The others are hardware Sales.
Who are StealthPath's main competitors?
Broad incumbents on record are ForeScout (now_ixia-customer-engagement), Darktrace, Cybereason (OT/ICS) and Tenable OT Security. Emerging players are Phosphorus Cybersecurity and Dynics. Direct peers are Armis, Nozomi Networks, Claroty and Dragos.
Does StealthPath have an API?
No public API is recorded for StealthPath.