VicOne
VicOne is a Tokyo-based automotive cybersecurity software subsidiary of Trend Micro that provides on-board IDS/IPS, VSOC, vulnerability management, and AI-cockpit security products to OEMs, Tier 1 suppliers, and EV charging infrastructure operators globally.
- Company typePrivate
- Founded2022
- HeadquartersTokyo, Japan
- Headcount51–100
- GTM typeB2B
- OfferingSoftware
What VicOne does
VicOne Corporation, founded in May 2022 as a wholly-owned subsidiary of Trend Micro, is a Tokyo-headquartered automotive cybersecurity software vendor serving OEMs, Tier 1 suppliers, EVSE manufacturers, and charge point operators. The company provides a multilayered platform of purpose-built products — xCarbon (on-board IDS/IPS), xNexus (LLM-augmented VSOC), xAurient (threat intelligence), xZETA (vulnerability and SBOM management), xPhinx (AI-cockpit security), xSumo (secure OTA), xScope (penetration testing), and CRA Studio (EU CRA compliance) — covering the full vehicle lifecycle from concept through production to operation, with deep integrations across silicon (NXP, ARM), SDV platforms (Sonatus, BlackBerry), cloud (AWS), and engineering services (Sasken, Block Harbor).
The company derives revenue primarily from software subscriptions and licenses sold through direct enterprise sales, supplemented by professional services (penetration testing and consulting). Pricing is quote-based and not publicly disclosed, consistent with an enterprise field-sales motion targeting regulated automotive buyers. Distribution is layered across direct OEM/Tier 1 engagement, channel partners (Sasken, Block Harbor), AWS Marketplace, and event-driven demand generation via Pwn2Own Automotive, CES, and Auto-ISAC Summit.
VicOne's strategic positioning is reinforced by Trend Micro's 30+ years of cybersecurity research, three hard-won automotive certifications (ASPICE CL2, ISO/SAE 21434, TISAX AL3), and proprietary threat intelligence generated through running Pwn2Own Automotive and publishing annual industry reports. The business is global in footprint, with disclosed operations in Japan, North America, and Europe, and 51–100 employees as of the latest data.
VicOne firmographics
Firmographics- Name
- VicOne
- Legal name
- VicOne Corporation
- Website
- https://vicone.com
- Company type
- Private
- Founded year
- 2022
- Operating status
- Operating
- Headcount range
- 51–100 employees
- Short description
- VicOne is a Tokyo-based automotive cybersecurity software subsidiary of Trend Micro that provides on-board IDS/IPS, VSOC, vulnerability management, and AI-cockpit security products to OEMs, Tier 1 suppliers, and EV charging infrastructure operators globally.
- Ownership category
- akta.pro rank
VicOne industry classification
Industry- Product category
- Automotive Cybersecurity
- NAICS
- Security Systems Services (except Locksmiths) (561621)
- akta.pro primary industry
- Endpoint Security Managed Services (EDR/XDR) (BPAEADAH)
- akta.pro secondary industry
- Vulnerability & Patch Management for OT Assets (EUADANAF)
Keywords
Where VicOne is headquartered
LocationHeadquarters
- HQ city
- Tokyo
- HQ country
- Japan
- HQ region
- Asia
Offices2 records
Markets served
VicOne business model
Business model- GTM type
- B2B
- Offering type
- Software
- Cost components
- Personnel, Technology or R&D, Marketing or Sales, Operations, Infrastructure
Revenue model
- Cybersecurity Software Licenses and Subscriptions: Software products (xAurient, xNexus, xCarbon, xZETA, xPhinx, xScope) sold as subscriptions or licenses to automotive manufacturers and suppliers for threat detection, vulnerability management, and security operations.
- Professional Services: Penetration testing services (xScope), consulting, and integration services for automotive cybersecurity implementations.
Go-to-market motion3 records
Distribution channels4 records
Marketing channels11 records
VicOne product offering
Product offeringCore offering
VicOne provides a portfolio of automotive cybersecurity software products and services that protect connected vehicles, software-defined vehicles (SDVs), and EV charging infrastructure from cyber threats. Its offering includes on-board intrusion detection/prevention (xCarbon), a next-gen vehicle security operations center with LLM-based detection (xNexus), automotive threat intelligence (xAurient), vulnerability and SBOM management (xZETA), AI-driven smart cockpit security (xPhinx), secure OTA updates (xSumo), penetration testing (xScope), and a Cyber Resilience Act compliance platform (CRA Studio).
Product overview
VicOne offers a portfolio-based cybersecurity platform for the automotive industry comprising six core products: xCarbon (frictionless on-board IDS/IPS), xNexus (next-gen VSOC platform with LLM-based threat detection), xAurient (automotive threat intelligence), xZETA (vulnerability and SBOM management), xPhinx (AI-powered smart cockpit security), and xSumo (secure OTA updates). These are complemented by xScope penetration-testing services and CRA Studio for compliance management. The platform provides multilayered vehicle protection through real-time monitoring, anomaly detection, and automated response mechanisms across critical on-board systems, in-vehicle networks, and cloud-connected operations.
Differentiator
Problem solved
Functional benefit
Products and services
- xAurient Action-Ready Automotive Threat Intelligence Platform that delivers curated automotive threat intelligence to vehicle security operations teams, enabling contextualized attack path analysis and proactive defense for OEMs and Tier 1 suppliers.
- xNexus Precise Next-Gen Vehicle Security Operations Center (VSOC) Platform that combines large language model-based detection with contextualized automotive threat intelligence to identify clearly malicious attacks rather than mere anomalies, providing attack path analysis for VSOC analysts.
- xCarbon Frictionless On-Board Intrusion Detection or Prevention System (IDS/IPS) that monitors in-vehicle networks and detects threats in real time with minimal performance overhead, deployed on automotive ECUs and software-defined vehicles.
- xZETA Superior Automotive Vulnerability and Software Bill of Materials (SBOM) Management System for identifying and managing software vulnerabilities across the automotive supply chain, supporting Tier 1 suppliers and OEMs in meeting regulatory and OEM-mandated security requirements.
- xPhinx On-Board AI Security solution purpose-built for AI-Driven Smart Cockpits, protecting AI-powered in-vehicle infotainment systems and addressing sensitive data leaks and driver privacy risks.
- xScope Comprehensive yet flexible penetration-testing service that helps automotive manufacturers identify vulnerabilities in their vehicles, components, and connected systems through expert-led security assessments.
- xSumo Vehicle remote update solution (FOTA/OTA) that enables secure over-the-air software updates for vehicles, supporting lifecycle management of automotive software.
- CRA Studio CRA compliance one-stop platform that helps electronic and industrial equipment manufacturers meet the European Cyber Resilience Act requirements, extending VicOne's automotive cybersecurity expertise into adjacent regulated product categories.
Quantifiable outcome
- Detected 76 unique zero-day vulnerabilities at Pwn2Own Automotive 2026
- +2 more outcomes
Companies that use VicOne
Customer profileNamed customers4 records
Segments5 records
Ideal customer profiles4 records
VicOne technology and API
TechnologyTechnology focussed Yes
API detail
- Has API
- No
- API docs
- API detail
Core technology
AI maturity
App detail
AI capability7 records
Feature8 records
VicOne partnerships and signals
Strategic signalPartnerships
Nine partnerships are on record, tiered core and minor.
- Sasken TechnologiescoreStrategic partnership combining VicOne's cybersecurity solutions with Sasken's engineering expertise to address cyber threats in connected and electric vehicles. The collaboration delivers scalable security across ECUs, operating systems, and cloud systems for global OEMs and Tier-1 suppliers, including knowledge exchange between the two companies.
- SonatuscorePartnership to develop Sonatus AI Director platform enabling OEMs to deploy AI at vehicle edge. VicOne's xCarbon Edge AI enhances vehicle cybersecurity by analyzing telemetry data and detecting threats with GenAI-based models. The collaboration integrates VicOne's security capabilities into Sonatus's software-defined vehicle platform.
- Block HarborcoreVicOne made a significant strategic financial investment in Block Harbor to create a partnership delivering comprehensive cybersecurity solutions for OEMs and Tier 1 suppliers. The partnership facilitates joint platform integration addressing ISO/SAE 21434 requirements through concept, development, production, and operation phases. Block Harbor brings expertise in concept, development, and validation while VicOne is strong in production and operation phases.
- NXP SemiconductorscoreExpanded collaboration with NXP Semiconductors to enable automakers to securely differentiate vehicles with AI cockpits and other innovative AI-powered services. Partnership yields integrated real-time cybersecurity solution for software-defined vehicles combining NXP's processors with VicOne's in-vehicle security.
- Trend MicrocoreParent company relationship. VicOne is a Trend Micro subsidiary powered by Trend Micro's 30+ years of cybersecurity expertise. VicOne leverages Trend Micro's Zero Day Initiative (ZDI) for Pwn2Own Automotive vulnerability discovery contests.
- AWScoreAWS Partner Network member providing cloud technology for automotive cybersecurity solutions deployment.
- DEKRAminorRegulations and certifications partner. DEKRA awarded VicOne ASPICE CL2 certificate for outstanding automotive embedded software development and quality control.
- Tokio Marine NichidominorInsurance services partnership for automotive cybersecurity in Japan market.
- Auto-ISACminorSupporter of Automotive CTF competition and annual Cybersecurity Summit. Auto-ISAC brings together manufacturers, suppliers and key stakeholders in automotive ecosystem to build relationships that improve cybersecurity resilience.
Scale indicators8 records
Recent moves6 records
Expansion highlights6 records
VicOne competitors and assessment
Company assessmentDirect peers
- Argus Cyber Security: Argus is a leading automotive cybersecurity specialist focused on in-vehicle network protection, ECU security, and SOC, now backed by Continental. It is a direct competitor to VicOne's xCarbon (IDS/IPS), xNexus (VSOC), and overall OEM/Tier 1 portfolio.
- Upstream Security: Upstream provides a cloud-based vehicle security operations center and threat intelligence platform for connected vehicles and EV fleets. It competes most directly with VicOne's xNexus VSOC and xAurient threat intelligence offerings.
- Karamba Security: Karamba Security offers ECU-level intrusion detection, vulnerability management, and compliance tooling for automotive OEMs and Tier 1s. It overlaps with VicOne's xCarbon (on-board IDS/IPS) and xZETA (vulnerability/SBOM management).
- Cybellum: Cybellum (acquired by LG Electronics) provides automotive software bill of materials (SBOM), vulnerability management, and product security tooling — a near-direct overlap with VicOne's xZETA product and supply-chain security positioning.
- Block Harbor: Block Harbor is a Detroit-based automotive cybersecurity engineering firm specializing in ISO/SAE 21434 compliance, penetration testing, and concept/development phase security — the partner VicOne has invested in to extend its coverage of the vehicle lifecycle.
- GuardKnox: GuardKnox provides automotive cybersecurity hardware and software, including in-vehicle network protection and ECU security. It targets similar OEM and Tier 1 customers with comparable on-board intrusion detection and secure architecture offerings.
Broad incumbents
- Harman International (Samsung): Harman (owned by Samsung) offers connected car cybersecurity services, intrusion detection, and OTA security as part of its broader automotive electronics portfolio. As a tier-one supplier, it competes with VicOne via embedded OEM relationships.
- ETAS (Bosch): ETAS, a Bosch subsidiary, provides automotive cybersecurity solutions, intrusion detection, and secure engineering tools as part of its broader embedded software and middleware portfolio. It competes across the same OEM engineering workflows.
- BlackBerry QNX: BlackBerry QNX provides automotive operating systems and security services for connected and software-defined vehicles. As a VicOne partner for connected vehicle data, it represents both a collaboration channel and a broader incumbent in vehicle security architecture.
- Vector Informatik: Vector Informatik provides embedded automotive software tools and security engineering solutions (including TARA and security testing) for OEMs and Tier 1s, overlapping with VicOne's xScope pen-testing and security lifecycle offerings.
Market position
Strengths5 records
Weaknesses4 records
Competitive moat6 records
Key risks5 records
Key highlights7 records
Customer concentration
VicOne social profiles
Digital presenceVicOne compliance and trust
Trust signalCompliance4 records
VicOne financial estimates
Financial estimateRevenue estimate
Valuation estimate
VicOne leadership team
Management profileNumber of profiles
Profiles5 records
VicOne funding detail
Funding detailFunding overview
Funding rounds
Investors
Funding detail is available on the Subscription and Enterprise plan.Contact sales →
VicOne M&A and investment
M&A and investmentM&A
Investments
M&A and investment is available on the Subscription and Enterprise plan.Contact sales →
Frequently asked questions about VicOne
What does VicOne do?
VicOne provides a portfolio of automotive cybersecurity software products and services that protect connected vehicles, software-defined vehicles (SDVs), and EV charging infrastructure from cyber threats. Its offering includes on-board intrusion detection/prevention (xCarbon), a next-gen vehicle security operations center with LLM-based detection (xNexus), automotive threat intelligence (xAurient), vulnerability and SBOM management (xZETA), AI-driven smart cockpit security (xPhinx), secure OTA updates (xSumo), penetration testing (xScope), and a Cyber Resilience Act compliance platform (CRA Studio).
Is VicOne a public or private company?
VicOne is a private company. It is classified as corporate owned and is currently operating.
When was VicOne founded?
VicOne was founded in 2022. It employs 51 to 100 people.
Where is VicOne based?
VicOne is headquartered in Tokyo, Japan, in the Asia region.
How does VicOne make money?
Two revenue lines are on record. Cybersecurity Software Licenses and Subscriptions are the primary driver. The others are professional Services.
Who are VicOne's main competitors?
Direct peers on record are Argus Cyber Security, Upstream Security, Karamba Security, Cybellum, Block Harbor and GuardKnox. Broad incumbents are Harman International (Samsung), ETAS (Bosch), BlackBerry QNX and Vector Informatik.
Does VicOne have an API?
No public API is recorded for VicOne.
What industry is VicOne in?
VicOne's product category is Automotive Cybersecurity. Its primary akta.pro industry code is BPAEADAH, Endpoint Security Managed Services (EDR/XDR), with a secondary code of EUADANAF, Vulnerability & Patch Management for OT Assets. Its NAICS code is 561621.