Evolve Security
Evolve Security is a Chicago-based cybersecurity firm that delivers subscription-based Continuous Penetration Testing through its Darwin Attack 3.0 platform, combining autonomous AI agents with human offensive security expertise to serve mid-market and enterprise customers in financial services, healthcare, utilities, and retail.
- Company typePrivate
- Founded2015
- HeadquartersChicago, United States
- Headcount51–100
- GTM typeB2B
- OfferingServices
What Evolve Security does
Evolve Security is a Chicago-based cybersecurity services firm founded around 2015-2016 that delivers Continuous Penetration Testing (CPT) through an AI-and-human hybrid model. The company operates an Offensive Security Operations Center (OSOC) and has built the Darwin Attack 3.0 platform, which combines autonomous AI agents with human offensive security expertise to identify, validate, and prioritize vulnerabilities on an ongoing basis rather than as point-in-time assessments. The firm serves mid-market and enterprise customers across regulated industries, with named logos including PayPal in financial services, Ameren in utilities, WVU Medicine in healthcare, and Bass Pro Shops and Camping World in retail, plus additional aviation and pharmaceutical references. Go-to-market is enterprise field sales, supported by SOC 2 Type II and CREST certifications that gate access to regulated buyers.
The company monetizes primarily through subscription-based CPT engagements priced as ongoing offensive-testing programs rather than discrete pen-test projects. A second revenue stream comes from Evolve Academy, an in-house cybersecurity bootcamp that trains career changers and veterans, with the most recent reported cohort enrolling 212 students, graduating 96, and achieving an 80% placement rate at an average starting salary of approximately $74,000 within an average of 55 days. The Academy functions as both a training-revenue line and an internal talent pipeline.
Operationally, Evolve carries 51-100 employees and is led by Paul Petefish (CEO), Andrew Hamilton (COO), Sam Harris (CTO), and Jason Rowland (Chief Delivery Officer). External recognition includes Leader and Outperformer status in the GigaOm Radar for Continuous Penetration Testing (2025), inclusion in the 2026 Momentum Cyber market report, and multiple Course Report awards for the bootcamp. The firm has not publicly disclosed external funding rounds, which together with the wide headcount band leaves the financial trajectory inferable but not precisely quantifiable.
Evolve Security firmographics
Firmographics- Name
- Evolve Security
- Legal name
- Evolve Security
- Website
- https://evolvesecurity.com
- Company type
- Private
- Founded year
- 2015
- Operating status
- Operating
- Headcount range
- 51–100 employees
- Short description
- Evolve Security is a Chicago-based cybersecurity firm that delivers subscription-based Continuous Penetration Testing through its Darwin Attack 3.0 platform, combining autonomous AI agents with human offensive security expertise to serve mid-market and enterprise customers in financial services, healthcare, utilities, and retail.
- Ownership category
- akta.pro rank
Evolve Security industry classification
Industry- Product category
- Cybersecurity Services
- NAICS
- Computer Systems Design and Related Services (5415), Computer Training (61142), Professional and Management Development Training (611430)
- SIC
- Services-Computer Integrated Systems Design (7373), Services-Computer Programming Services (7371)
- akta.pro primary industry
- Cybersecurity Architecture & Security Integration (BPAEAAAL)
- akta.pro secondary industries
- Vulnerability Intelligence & Exploit Prediction (HDADAHAI), Cybersecurity (EDAAAPAC), Cybersecurity Training & Awareness Programs (BPAEANAF), Penetration Testing, Red Team & Ethical Hacking (EDAOAIAH)
Keywords
Where Evolve Security is headquartered
LocationHeadquarters
- HQ city
- Chicago
- HQ country
- United States
- HQ region
- North America
Offices3 records
Markets served
Evolve Security business model
Business model- GTM type
- B2B
- Offering type
- Services
- Cost components
- Personnel, Technology or R&D, Operations, Marketing or Sales
Revenue model
- Continuous Penetration Testing (CPT) Services: Ongoing subscription-based penetration testing services combining AI automation with expert human validation. Services include continuous testing across attack surface, with findings flowing directly into remediation workflows.
- Attack Surface Management (ASM): Active monitoring and continuous mapping of external attack surface using automated recon techniques and expert validation.
- Specialized Penetration Testing Services: AI Penetration Testing, Application Penetration Testing, Cloud Penetration Testing, Network Penetration Testing, Embedded Systems testing, and Red Team engagements offered as ongoing or discrete professional services.
- Advisory Services: Strategic cyber risk management including strategy, risk assessments, compliance reviews, incident response exercises, and M&A due diligence.
- Cybersecurity Training - Bootcamp Programs: ESCP Cybersecurity Bootcamp (20-week program), OSCP Bootcamp, and other professional certification training programs with tuition-based revenue model.
- Corporate Training: AWS Cloud Penetration Testing training, Cybersecurity Upskilling, OSCP Training, OSWE Training for enterprise clients.
Pricing tiers
| Model | Billing | Price |
|---|---|---|
| Subscription | Annual | Continuous Penetration Testing - Enterprise subscription |
| One time/ perpetual license | Multi-year contract | ESCP Cybersecurity Bootcamp - 20-week program |
| One time/ perpetual license | Multi-year contract | OSCP Bootcamp |
Go-to-market motion1 record
Distribution channels4 records
Marketing channels8 records
Evolve Security product offering
Product offeringCore offering
Evolve Security provides continuous offensive cybersecurity services, primarily Continuous Penetration Testing (CPT) and Attack Surface Management (ASM), delivered through its proprietary Darwin Attack® platform and supported by human security consultants. The company also offers adjacent services such as Purple Teaming, Phishing Simulation, and Incident Response, and operates Evolve Academy, a cybersecurity workforce-training program.
Product overview
Evolve Security offers a unified offensive security platform centered on the Darwin Attack platform (now at version 3.0), which delivers Continuous Threat Exposure Management (CTEM) through three integrated service pillars: Attack Surface Management (ASM) for continuous discovery and monitoring, Continuous Penetration Testing (CPT) for ongoing adversarial validation, and Exposure Remediation (ER) for prioritized risk reduction. The CPT platform is further supported by specialized testing services including AI Penetration Testing, Application Penetration Testing, Network Penetration Testing, Cloud Penetration Testing, Embedded Systems testing, and Red Team engagements, all powered by an Offensive Security Operations Center (OSOC) combining human expertise with AI automation. The company also operates Evolve Security Academy as a separate division offering cybersecurity training programs including Cybersecurity Bootcamp (ESCP), OSCP Bootcamp, and corporate training, along with the proprietary CyberLAB™ simulation platform.
Differentiator
Problem solved
Functional benefit
Brands
- Darwin Attack: Continuous penetration testing platform that combines AI and human expertise for offensive security operations.
- Offensive Security Operations Center (OSOC)
- CyberLAB
Products and services
- Continuous Penetration Testing (CPT)
Quantifiable outcome
- Organizations inside Project Glasswing can find and fix vulnerabilities before same offensive capabilities reach threat actors at scale
- +1 more outcomes
Companies that use Evolve Security
Customer profileNamed customers14 records
Segments5 records
Ideal customer profiles2 records
Evolve Security technology and API
TechnologyTechnology focussed Yes
API detail
- Has API
- No
- API docs
- API detail
Core technology
AI maturity
App detail
AI capability3 records
Feature6 records
Evolve Security partnerships and signals
Strategic signalPartnerships
Ten partnerships are on record, tiered core and minor.
- SVH CybercoreSVH Cyber, a cybersecurity and AI advisory firm, brings unique industry insight and partners with Evolve Security to advance offensive security. CEO Scott Howitt features in executive spotlight highlighting why Continuous Penetration Testing is essential amid AI-driven threats, emphasizing measurable risk reduction, resilience, and stronger business-aligned security outcomes.
- Veryon (formerly ATP)coreVeryon (formerly ATP), the industry leader in aviation software and information services, partnered with Evolve Security to address cybersecurity concerns after multiple acquisitions. COO Mike Shults demonstrates major ROI on cybersecurity investments including improvements in offensive security program, penetration testing, and internal staff augmentation.
- ZafranminorZafran partnership for roundtable panel event in Dallas, Texas area (2026). Collaborative event focused on security discussions.
- VET TECcoreEvolve Academy is VET TEC's newest partner, making the #1 ranked cybersecurity bootcamp accessible to veterans ready to launch cybersecurity careers through VET TEC program.
- VetSeccoreEvolve Academy is a certified partner of VetSec, a U.S.-based 501(c)(3) non-profit accepting active-duty, reservists, and veterans from the United States and friendly nations. Partnership includes OSCP bootcamp scholarships awarded by VetSec's Board of Directors.
- Amazon Career Choice ProgramcoreEvolve Academy selected by Amazon as cybersecurity training partner for Career Choice Program, providing Amazon hourly employees with cybersecurity training that prepares them for rewarding careers in information security.
- 1871 (Chicago Tech Hub)minor1871, Chicago's premier technology hub, partnered with Evolve Security Academy for cybersecurity training initiatives. COO Tom Alexander stated working with Evolve was very helpful and informative with clear, concise, and current suggestions.
- Girl Scouts GenCyberminorEvolve Security hosts Girl Scouts GenCyber cybersecurity camp, training the next generation of women professionals to address the talent shortage affecting privacy, economy, and critical infrastructure.
- UCANminorUCAN partnered with Evolve Security Academy for cybersecurity assessments. CIO Nick Liakopulos noted the level of professionalism and work completed by students was outstanding.
- Women in Cybersecurity (WiCyS)minorEvolve Security is a sponsor of the Women in Cybersecurity conference, established 2012, committed to bringing together women in the cybersecurity field.
Scale indicators11 records
Recent moves6 records
Expansion highlights6 records
Evolve Security competitors and assessment
Company assessmentDirect peers
- NetSPI: NetSPI is a direct competitor in Penetration Testing as a Service and offensive security, offering continuous and point-in-time pen testing, ASM, and attack surface reduction to enterprise customers with a similar AI-plus-human delivery model.
- Cobalt: Cobalt is one of the original PTaaS platforms, delivering on-demand and continuous penetration testing through a talent network. It competes head-to-head with Evolve in the subscription-based PTaaS category GigaOm evaluated.
- Bishop Fox: Bishop Fox is a long-standing offensive security firm offering continuous penetration testing, red teaming, and attack surface management, with a similarly enterprise-focused service portfolio.
- Pentera: Pentera is a leader in automated security validation, offering continuous, agentless penetration testing against enterprise infrastructure. It is one of the 16 PTaaS vendors analyzed alongside Evolve in the GigaOm Radar.
- SafeBreach: SafeBreach provides breach and attack simulation (BAS) and continuous security validation, directly overlapping with Evolve's continuous testing and exposure validation proposition.
- HackerOne: HackerOne is a leading offensive security platform combining human-powered penetration testing, bug bounty, and continuous asset discovery, competing for the same enterprise offensive security budget.
- OffSec: OffSec (provider of OSCP/OSWE certifications) is a direct peer on the training side of Evolve's business, with overlapping cybersecurity certification bootcamps and a complementary role in the offensive security talent pipeline.
Broad incumbents
- Rapid7: Rapid7 is a broad cybersecurity incumbent offering ASM, vulnerability management, pen testing services, and the Metasploit framework. It bundles competing capabilities into a wider platform at enterprise scale.
- CrowdStrike: CrowdStrike is the largest endpoint and exposure management incumbent, with Falcon Surface (ASM), Adversary Emulation, and red team services that increasingly overlap with Evolve's continuous testing category.
- SANS Institute: SANS Institute is a broad incumbent in cybersecurity training and certifications (GIAC, penetration testing curriculum) and competes with Evolve Academy in the enterprise cybersecurity upskilling market.
Market position
Strengths5 records
Weaknesses5 records
Competitive moat5 records
Key risks7 records
Key highlights7 records
Customer concentration
Evolve Security social profiles
Digital presenceEvolve Security compliance and trust
Trust signalCompliance2 records
Evolve Security financial estimates
Financial estimateRevenue estimate
Valuation estimate
Evolve Security leadership team
Management profileNumber of profiles
Profiles3 records
Evolve Security subsidiaries and ownership
Company hierarchySubsidiaries1 record
Evolve Security funding detail
Funding detailFunding overview
Funding rounds1 record
Investors
Funding detail is available on the Subscription and Enterprise plan.Contact sales →
Evolve Security M&A and investment
M&A and investmentM&A
Investments
M&A and investment is available on the Subscription and Enterprise plan.Contact sales →
Frequently asked questions about Evolve Security
What does Evolve Security do?
Evolve Security provides continuous offensive cybersecurity services, primarily Continuous Penetration Testing (CPT) and Attack Surface Management (ASM), delivered through its proprietary Darwin Attack® platform and supported by human security consultants. The company also offers adjacent services such as Purple Teaming, Phishing Simulation, and Incident Response, and operates Evolve Academy, a cybersecurity workforce-training program.
Is Evolve Security a public or private company?
Evolve Security is a private company. It is classified as founder individual operated bootstrapped and is currently operating.
When was Evolve Security founded?
Evolve Security was founded in 2015. It employs 51 to 100 people.
Where is Evolve Security based?
Evolve Security is headquartered in Chicago, United States, in the North America region.
How does Evolve Security make money?
Six revenue lines are on record. Continuous Penetration Testing (CPT) Services are the primary driver. The others are attack Surface Management (ASM), specialized Penetration Testing Services, advisory Services, cybersecurity Training - Bootcamp Programs and corporate Training.
Who are Evolve Security's main competitors?
Direct peers on record are NetSPI, Cobalt, Bishop Fox, Pentera, SafeBreach, HackerOne and OffSec. Broad incumbents are Rapid7, CrowdStrike and SANS Institute.
Does Evolve Security have an API?
No public API is recorded for Evolve Security.
What industry is Evolve Security in?
Evolve Security's product category is Cybersecurity Services. Its primary akta.pro industry code is BPAEAAAL, Cybersecurity Architecture & Security Integration, with a secondary code of HDADAHAI, Vulnerability Intelligence & Exploit Prediction. Its NAICS code is 5415 and its SIC code is 7373.