Volexity
Volexity is a Reston, VA-based cybersecurity firm that provides memory forensics products (Surge Collect, Volcano) alongside incident response, network security monitoring, and threat intelligence services to government, Fortune 500, military, and high-risk NGO clients worldwide.
- Company typePrivate
- Founded2013
- HeadquartersReston, United States
- Headcount11–50
- GTM typeB2B
- OfferingServices
What Volexity does
Volexity Inc. is a privately held cybersecurity firm headquartered in Reston, Virginia (Washington DC metro), founded around 2013–2014 by Steven Adair, with Andrew Case serving as Director of Research. The company is built around deep, niche expertise in memory forensics and advanced persistent threat (APT) tradecraft, extending the lineage of the open-source Volatility framework. Its offering is a dual-track combination of commercial memory forensics products and high-touch professional services. The product stack consists of Surge Collect, a commercially supported memory acquisition tool for Windows, Linux, and macOS distributed via an Early Adopters Program, and Volcano, a next-generation cross-platform memory analysis platform that extracts, indexes, and correlates runtime artifacts. Surge Collect integrates with enterprise security agents including Tanium and Carbon Black.
The services portfolio covers incident response, 24/7 network security monitoring, proactive threat assessments, cyber threat intelligence, and M&A cybersecurity assessments. Customers include US federal and local law enforcement agencies, military branches, Fortune 500 companies, leading Silicon Valley technology firms, telecommunication providers, universities, leading incident response firms, and international human rights NGOs — with stated operations across North America, the UK, Japan, and Germany. Volexity operates an enterprise field-sales motion with quote-based pricing, supported by a top-of-funnel threat intelligence blog and direct 'Request A Demo' and 'Breach Assistance' channels. The firm is GDPR-compliant and maintains an active research publication cadence through 2025–2026.
Volexity firmographics
Firmographics- Name
- Volexity
- Legal name
- Volexity Inc.
- Website
- https://volexity.com
- Company type
- Private
- Founded year
- 2013
- Operating status
- Operating
- Headcount range
- 11–50 employees
- Short description
- Volexity is a Reston, VA-based cybersecurity firm that provides memory forensics products (Surge Collect, Volcano) alongside incident response, network security monitoring, and threat intelligence services to government, Fortune 500, military, and high-risk NGO clients worldwide.
- Ownership category
- akta.pro rank
Volexity industry classification
Industry- Product category
- Cybersecurity Services
- NAICS
- Security Systems Services (56162)
- SIC
- Services-Computer Programming, Data Processing, Etc. (7370)
- akta.pro primary industry
- Security Incident Response (IR) & Digital Forensics Services (BPAEADAI)
- akta.pro secondary industries
- Threat Intelligence Services (BPAEADAC), Vulnerability Management & Penetration Testing Services (BPAEADAD)
Keywords
Where Volexity is headquartered
LocationHeadquarters
- HQ city
- Reston
- HQ country
- United States
- HQ region
- North America
Offices2 records
Markets served
Volexity business model
Business model- GTM type
- B2B
- Offering type
- Services
- Cost components
- Personnel, Technology or R&D, Operations, Marketing or Sales
Revenue model
- Cybersecurity Services: Volexity provides incident response, network security monitoring, proactive threat assessments, cyber threat intelligence, and M&A cybersecurity assessments services to organizations.
- Memory Forensics Products: Commercial products including Surge Collect for memory acquisition and Volcano for memory analysis, sold as supported solutions to enterprises and government organizations.
Go-to-market motion1 record
Distribution channels1 record
Marketing channels3 records
Volexity product offering
Product offeringCore offering
Volexity is a Washington DC-based cybersecurity firm that delivers proprietary memory forensics products (Surge Collect for reliable memory acquisition and Volcano for cross-platform memory analysis) alongside professional services including incident response, network security monitoring, proactive threat assessments, cyber threat intelligence, and M&A cybersecurity assessments for organizations worldwide.
Product overview
Volexity offers a unified cybersecurity product portfolio centered on memory forensics. The core offerings consist of two integrated products: Surge Collect for memory acquisition and Volcano for memory analysis. These tools work together to provide comprehensive visibility into system runtime state—Surge Collect collects reliable memory samples across Windows, Linux, and macOS, while Volcano processes and analyzes that memory to detect compromise and extract artifacts. The company also provides complementary cybersecurity services including incident response, network security monitoring, proactive threat assessments, cyber threat intelligence, and M&A cybersecurity assessments.
Differentiator
Problem solved
Functional benefit
Brands
- Surge: Surge Collect provides reliable and commercially supported memory acquisition capability across Windows, Linux, and macOS.
- Volcano
Products and services
- Surge (Surge Collect) Surge Collect is a reliable, commercially supported memory acquisition tool with a flexible command-line interface that supports Windows, Linux, and macOS. It includes cryptographic integrity checks, error and audit logging, SSL/TLS network collection, compression, API and file system collection capabilities, page file support, and cloud storage support. It is used by federal and local law enforcement, Fortune companies, military branches, and incident response firms.
- Volcano Volcano is a comprehensive, cross-platform, next-generation memory analysis solution that extracts, indexes, and correlates artifacts to provide visibility into systems' runtime state and trustworthiness. It is designed to work with Surge Collect to provide end-to-end memory forensics.
- Incident Response Agile incident response services that help organizations investigate, contain, and remediate cybersecurity incidents and breaches. Includes a dedicated 'Breach Assistance' contact channel for rapid engagement.
- Network Security Monitoring Around-the-clock monitoring of customer networks to detect advanced threats, including FPC egress monitoring and analysis. Capable of handling large and complex enterprise networks, acquisitions, divestitures, and sensitive systems.
- Proactive Threat Assessments Proactive threat assessment services that evaluate organizational defenses and identify vulnerabilities before they can be exploited by adversaries.
- Cyber Threat Intelligence Customized cyber threat intelligence services providing organizations with actionable information on adversary tactics, techniques, and procedures relevant to their environment.
- M&A Cybersecurity Assessments Cybersecurity assessments tailored for mergers and acquisitions due diligence, evaluating the security posture of acquisition targets.
Quantifiable outcome
- Reliable memory acquisition where most open source or commercial Windows memory acquisition tools either failed to collect or crashed systems with modern security features enabled
- +1 more outcomes
Companies that use Volexity
Customer profileNamed customers8 records
Segments4 records
Ideal customer profiles4 records
Volexity technology and API
TechnologyTechnology focussed Yes
API detail
- Has API
- No
- API docs
- API detail
Core technology
AI maturity
App detail
Integration2 records
Feature3 records
Volexity partnerships and signals
Strategic signalScale indicators3 records
Recent moves5 records
Expansion highlights6 records
Volexity competitors and assessment
Company assessmentDirect peers
- Mandiant (Google Cloud): Mandiant is the best-known incident response, digital forensics, and threat-intelligence firm, directly comparable to Volexity's IR and threat-intelligence services. Now part of Google Cloud, Mandiant operates at much larger scale but competes for the same enterprise and government breach-response engagements.
- Palo Alto Networks Unit 42: Unit 42 is Palo Alto Networks' threat intelligence and incident response arm, offering IR, digital forensics, and threat intel services to enterprises and governments. It is a direct competitor to Volexity's services portfolio, with the added backing of Palo Alto's endpoint and network security platform.
- Secureworks: Secureworks provides managed security services, incident response, and threat intelligence to mid-market and enterprise customers, with strong overlap to Volexity's network security monitoring and IR offerings.
- Kroll Cyber Risk: Kroll's Cyber Risk practice offers incident response, digital forensics, and threat intelligence globally, and is a frequent co-respondent or competitor to boutique DFIR firms like Volexity in major breach engagements.
- Binary Defense: Binary Defense specializes in managed detection and response, threat hunting, and incident response, with a service portfolio that closely mirrors Volexity's network security monitoring and IR offerings for enterprise customers.
- Magnet Forensics: Magnet Forensics builds commercial digital forensics tools used by law enforcement, government, and enterprise, comparable to Volexity's Surge Collect and Volcano memory-forensics product line. Both sell into federal agencies, military, and IR firms.
- Stroz Friedberg (Aon): Stroz Friedberg, part of Aon, is a digital forensics, incident response, and cyber risk investigations firm, directly comparable to Volexity in DFIR and cyber threat intelligence for enterprise and law firm clients.
Broad incumbents
- CrowdStrike Services: CrowdStrike combines an industry-leading endpoint security platform (Falcon) with an incident response and proactive services practice. It competes with Volexity in IR and threat intelligence while also integrating memory and behavioral analysis into its EDR product, creating platform-level competitive pressure.
Emerging players
- Rapid7: Rapid7 offers managed detection and response, incident response, and threat intelligence services alongside its security analytics platform. It is adjacent rather than a direct DFIR boutique competitor, but increasingly overlaps with Volexity in IR and proactive threat assessment.
Others
- Cylance / BlackBerry: BlackBerry's Cylance endpoint security product line incorporates memory and behavioral analysis capabilities, making it a thematically adjacent player whose bundled memory-inspection features compete indirectly with Volexity's Surge Collect acquisition tool.
Market position
Strengths4 records
Weaknesses4 records
Competitive moat5 records
Key risks6 records
Key highlights7 records
Customer concentration
Volexity social profiles
Digital presenceVolexity compliance and trust
Trust signalCompliance1 record
Volexity financial estimates
Financial estimateRevenue estimate
Valuation estimate
Volexity leadership team
Management profileNumber of profiles
Profiles2 records
Volexity funding detail
Funding detailFunding overview
Funding rounds
Investors
Funding detail is available on the Subscription and Enterprise plan.Contact sales →
Volexity M&A and investment
M&A and investmentM&A
Investments
M&A and investment is available on the Subscription and Enterprise plan.Contact sales →
Frequently asked questions about Volexity
What does Volexity do?
Volexity is a Washington DC-based cybersecurity firm that delivers proprietary memory forensics products (Surge Collect for reliable memory acquisition and Volcano for cross-platform memory analysis) alongside professional services including incident response, network security monitoring, proactive threat assessments, cyber threat intelligence, and M&A cybersecurity assessments for organizations worldwide.
Is Volexity a public or private company?
Volexity is a private company. It is classified as founder individual operated bootstrapped and is currently operating.
When was Volexity founded?
Volexity was founded in 2013. It employs 11 to 50 people.
Where is Volexity based?
Volexity is headquartered in Reston, United States, in the North America region.
How does Volexity make money?
Two revenue lines are on record. Cybersecurity Services are the primary driver. The others are memory Forensics Products.
Who are Volexity's main competitors?
Direct peers on record are Mandiant (Google Cloud), Palo Alto Networks Unit 42, Secureworks, Kroll Cyber Risk, Binary Defense, Magnet Forensics and Stroz Friedberg (Aon). CrowdStrike Services is listed as a broad incumbent. Rapid7 is listed as an emerging player. Cylance / BlackBerry is listed as an others.
Does Volexity have an API?
No public API is recorded for Volexity.
What industry is Volexity in?
Volexity's product category is Cybersecurity Services. Its primary akta.pro industry code is BPAEADAI, Security Incident Response (IR) & Digital Forensics Services, with a secondary code of BPAEADAC, Threat Intelligence Services. Its NAICS code is 56162 and its SIC code is 7370.