Xcitium
Xcitium is a privately held, Bloomfield, NJ-based cybersecurity vendor that provides a Zero Trust platform anchored by patented ZeroDwell Containment technology, serving enterprises, MSPs/MSSPs, and regulated verticals across 100+ countries with 10,000+ customers and 100+ million protected endpoints.
- Company typePrivate
- Founded2018
- HeadquartersBloomfield, United States
- Headcount501–1,000
- GTM typeB2B
- OfferingSoftware
What Xcitium does
Xcitium is a privately held cybersecurity vendor headquartered in Bloomfield, New Jersey, that builds a cloud-native Zero Trust platform for endpoint, network, and cloud workload protection. The company was formed through the July 2022 rebrand of Comodo Security Solutions and is led by CEO Kenneth Levine with founder Melih Abdulhayoglu serving as Chairman. Xcitium serves enterprise customers, managed service providers (MSPs) and managed security service providers (MSSPs), and public-sector and regulated-vertical buyers across more than 100 countries, claiming 10,000+ customer organizations and 100+ million protected endpoints.
The platform is anchored by Xcitium's patented ZeroDwell Containment technology, which virtualizes unknown or suspicious files at execution time to prevent damage before automated and human analysis delivers a verdict. Around this core, the company offers EDR and XDR for endpoint and cross-domain detection and response, Verdict Cloud for file classification, a CNAPP suite (CSPM, CWPP, KSPM) for cloud workload protection, SASE/ZTNA/SD-WAN for secure access, and a broad ITSM module set including RMM, patch management, and helpdesk ticketing. The company holds ISO 27001 certification, operates a 24x7 Global SOC staffed by expert analysts, and has earned independent test certifications from AV-TEST, AVLAB, and MRG Effitas.
Xcitium generates revenue primarily through annual and multi-year subscription licensing across Essential, Pro, and Enterprise EDR packages, supplemented by managed security services (Managed EDR, Managed SIEM, Managed Threat Hunting, SOCaaP), professional services including incident response and penetration testing, and channel economics from MSP/MSSP and value-added distributor partners. Distribution combines direct enterprise field sales, inside sales, a self-serve PLG funnel with a 30-day free trial and free tools (OpenEDR, Cyber Transparency Audit, Phishing Simulation), and an expanding global VAD network across EMEA, Asia Pacific, and Latin America.
Xcitium firmographics
Firmographics- Name
- Xcitium
- Legal name
- Xcitium
- Website
- https://xcitium.com
- Company type
- Private
- Founded year
- 2018
- Operating status
- Operating
- Headcount range
- 501–1,000 employees
- Short description
- Xcitium is a privately held, Bloomfield, NJ-based cybersecurity vendor that provides a Zero Trust platform anchored by patented ZeroDwell Containment technology, serving enterprises, MSPs/MSSPs, and regulated verticals across 100+ countries with 10,000+ customers and 100+ million protected endpoints.
- Ownership category
- akta.pro rank
Xcitium industry classification
Industry- Product category
- Endpoint Security Software / Zero Trust Cybersecurity Platform
- NAICS
- Computer Systems Design and Related Services (54151), Security Systems Services (56162)
- SIC
- Services-Prepackaged Software (7372), Services-Computer Programming, Data Processing, Etc. (7370)
- akta.pro primary industry
- Extended Detection & Response (XDR) (HDADAEAB)
Keywords
Where Xcitium is headquartered
LocationHeadquarters
- HQ city
- Bloomfield
- HQ country
- United States
- HQ region
- North America
Offices1 record
Markets served
Xcitium business model
Business model- GTM type
- B2B
- Offering type
- Software
- Cost components
- Technology or R&D, Personnel, Infrastructure, Operations, Marketing or Sales
Revenue model
- Subscription - Endpoint Security: Annual or multi-year subscription for endpoint protection platforms (Essential EDR, Pro EDR, Enterprise EDR packages). Recurring revenue model with tiered pricing based on features and endpoint count.
- Managed Security Services: 24/7 managed detection and response services including Managed EDR, Managed SOC, Managed SIEM, Managed Threat Hunting. Revenue from ongoing managed service contracts with MSSP partners and direct enterprise customers.
- Professional Services: Implementation, deployment, training, and incident response services. Includes pre-breach and post-breach response retainer contracts for cybersecurity incident recovery.
- Platform Licensing: Cloud-based platform access with 30-day free trial converting to paid subscriptions. Enterprise platform licensing with dedicated infrastructure.
- Partner Program Revenue: Revenue from MSP/MSSP partners through deal registration, SOCaaP platform fees, and channel reseller arrangements with VADs globally.
Pricing tiers
| Model | Billing | Price |
|---|---|---|
| Freemium | Pay-as-you-go | 30-Day Free Trial |
| Subscription | Annual | Essential EDR - ZeroTrust Protection |
| Subscription | Annual | Pro EDR - Advanced Endpoint Protection & ITSM |
| Subscription | Annual | Enterprise EDR with EXDR - Enterprise Grade Threat Detection & Response |
Go-to-market motion5 records
Distribution channels6 records
Marketing channels11 records
Xcitium product offering
Product offeringCore offering
Xcitium provides a cloud-native Zero Trust cybersecurity platform built around its patented ZeroDwell auto-containment technology, which virtualizes unknown files at runtime to prevent damage before verdicting. The platform unifies endpoint detection and response (EDR/XDR), cloud workload protection (CNAPP, CSPM, CWPP, KSPM), secure access (SASE, ZTNA, SD-WAN), and ITSM tooling, sold primarily as subscriptions to enterprises, governments, and managed service providers worldwide.
Product overview
Xcitium offers a unified Zero Trust cybersecurity platform with multiple integrated products spanning endpoint security, network security, cloud security, ITSM, and managed services. The core platform is powered by patented ZeroDwell auto-containment technology that isolates unknown files in virtualized environments. Key modules include EDR/XDR for detection and response, Verdict Cloud for automated file verdicting, CNAPP/CSPM/CWPP/KSPM for cloud workload protection, SASE/ZTNA for secure network access, and comprehensive ITSM tools. The company also provides extensive managed services including SOCaaP, Managed EDR, Managed SIEM, Managed Threat Hunting, and Managed AI capabilities. Professional services cover incident response, vulnerability assessment, penetration testing, and compliance management. Packages range from Essential EDR through Pro EDR to Enterprise EDR with EXDR to serve organizations of different sizes and requirements.
Differentiator
Problem solved
Functional benefit
Products and services
- ZeroDwell Containment Technology Patented zero trust auto-containment technology that isolates unknown or suspicious files at runtime in virtualized sandbox environments, preventing damage before files are analyzed and verdicted as good or bad.
- EDR (Endpoint Detection & Response) Endpoint Detection and Response solution that monitors threats and responds at advanced levels, providing visibility into endpoint activity and multi-layered defense for organizations.
- Verdict Cloud Cloud-based file verdicting platform that instantly classifies files as safe or malicious using automated analysis combined with 24x7 expert human cybersecurity researchers.
- XDR (Extended Detection & Response) Extended Detection and Response platform providing visibility and response capabilities spanning endpoints to networks and cloud environments from a single console.
- CNAPP (Cloud-Native Application Protection Platform) Comprehensive cloud-native application protection platform securing workloads across multi-cloud environments.
- Network Share Protection Patented Network Share Ransomware Protection preventing ransomware attacks on shared network drives and files.
- SASE (Secure Access Service Edge) Unified networking and zero-trust platform combining SD-WAN with advanced security services for secure remote access.
- ZTNA (Zero Trust Network Access) Zero-trust access solution providing secure connectivity anywhere users roam, implementing never-trust-always-verify principles.
- SD-WAN Cloud-managed SD-WAN with OmniVPN for unified networking across distributed enterprise locations.
- Managed EDR 24/7 Managed Detection and Response service providing continuous endpoint monitoring, threat detection, and incident response by expert security analysts.
- Managed EDR for Microsoft Defender Prevention-first Microsoft Defender protection enhanced with 24x7 SOC monitoring and management.
- Managed SIEM Centralized log analytics and correlation for complete visibility and faster threat detection across enterprise environments.
- Managed Threat Hunting Proactive threat identification by expert security analysts who search for suspicious activities that bypass automated detection.
- SOCaaP (SOC as a Platform) Centralized, real-time SOC visibility and control across MSP and MSSP environments with white-label capabilities, billing, reporting, and automation.
- Managed AI Build, train, and manage AI solutions under the partner's own brand for MSPs looking to offer AI marketplace services.
- Incident Response Services Digital forensic and incident response services including Pre-Breach Response preparation and Post-Breach Response containment and recovery.
- Penetration Testing Simulated cyber attacks to pinpoint exploitable security weaknesses using ethical hacking methodologies.
- Vulnerability Assessment Systematic targeting and assessment of critical security vulnerabilities to identify exploitable weaknesses.
- OpenEDR Free endpoint detection and response tool providing world-class endpoint telemetry for businesses of all sizes.
Quantifiable outcome
- 0% infection or breach rate from unknown threats across 100+ million protected endpoints
- +4 more outcomes
Companies that use Xcitium
Customer profileNamed customers15 records
Segments7 records
Ideal customer profiles4 records
Xcitium technology and API
TechnologyTechnology focussed Yes
API detail
- Has API
- Yes
- API docs
- API detail
Core technology
AI maturity
App detail
AI capability5 records
Feature8 records
Xcitium partnerships and signals
Strategic signalPartnerships
Six partnerships are on record, tiered flagship, core and minor.
- Value-Added Distributors (EMEA, APAC, LATAM)flagshipExpanded international partner network across EMEA, Asia Pacific and Latin America through multiple value-added distributors (VADs), enabling regional market coverage and local support.
- Sandler PartnerscoreDistribution partnership adding Sandler Partners to the growing channel program. Sandler Partners is a national technology services distributor connecting solution providers with innovative security technology.
- Liquid Cyber SecurityflagshipPartnership with Liquid Cyber Security, a business of Cassava Technologies, to launch the first Cyber Security Fusion Centre in Johannesburg, South Africa. Aims to bolster cybersecurity for governments and enterprises across Africa.
- AquaOrange SoftwarecorePartnership to deliver Zero Trust Endpoint Protection to Thailand market, expanding presence in Southeast Asia.
- Paradigm Technology GroupcorePartnership with IT Service Provider Paradigm Technology Group to offer endpoint protection to more than 650 global enterprises.
- Dr. Deutsch GmbHminorPartnership with German IT solutions provider Dr. Deutsch GmbH to deliver endpoint protection services.
Scale indicators6 records
Recent moves7 records
Expansion highlights5 records
Xcitium competitors and assessment
Company assessmentDirect peers
- CrowdStrike: CrowdStrike's Falcon platform is the leading cloud-native EDR/XDR solution for enterprise endpoints, directly competing with Xcitium's EDR/XDR/ZeroDwell offering for the same enterprise CISO buyer with a single-agent, single-console value proposition.
- SentinelOne: SentinelOne Singularity is an AI-driven EDR/XDR platform competing head-to-head with Xcitium on autonomous endpoint protection, behavioral detection, and extended response across endpoint, cloud, and identity domains.
- Sophos: Sophos Intercept X is a long-standing direct competitor to Xcitium's endpoint protection, with a strong channel-led GTM that overlaps with Xcitium's MSP and mid-market focus and comparable managed detection and response offerings.
- Trellix (FireEye/McAfee Enterprise): Trellix offers endpoint security (formerly McAfee), XDR, and managed services, competing directly with Xcitium's EDR/XDR and SOCaaP offerings, with a comparable focus on detection, response, and managed security operations.
- Trend Micro: Trend Micro Vision One is a unified endpoint, email, network, and cloud security platform directly comparable to Xcitium's CNAPP, XDR, and endpoint suites, with strong channel distribution and managed service offerings.
- Bitdefender: Bitdefender GravityZone competes with Xcitium in the endpoint EDR space, particularly in mid-market and MSP channels, with a comparable mix of prevention, EDR, and managed detection capabilities.
- ESET: ESET PROTECT is a long-established endpoint protection and EDR platform competing with Xcitium's Essential and Pro EDR packages, particularly in the SMB and mid-market channel segment.
Broad incumbents
- Microsoft (Defender for Endpoint): Microsoft Defender for Endpoint is a deeply bundled, platform-incumbent EDR/XDR that ships with Windows and competes with Xcitium at every tier, particularly through its Managed EDR for Microsoft Defender service that complements Defender rather than displacing it.
- Palo Alto Networks (Cortex XDR / Prisma Cloud): Palo Alto's Cortex XDR and Prisma Cloud compete with Xcitium's XDR and CNAPP/CSPM/CWPP modules respectively, offering a broader platform portfolio anchored on the Palo Alto NGFW installed base.
Emerging players
- Bromium (acquired by HP): Bromium pioneered hardware-virtualization-based isolation of unknown applications, the closest historical analog to Xcitium's ZeroDwell Containment approach, and represents the most direct technical precedent for prevention-by-virtualization in the endpoint space.
Market position
Strengths5 records
Weaknesses5 records
Competitive moat6 records
Key risks6 records
Key highlights7 records
Customer concentration
Xcitium social profiles
Digital presenceXcitium financial estimates
Financial estimateRevenue estimate
Valuation estimate
Xcitium leadership team
Management profileNumber of profiles
Profiles3 records
Xcitium funding detail
Funding detailFunding overview
Funding rounds
Investors
Funding detail is available on the Subscription and Enterprise plan.Contact sales →
Xcitium M&A and investment
M&A and investmentM&A
Investments
M&A and investment is available on the Subscription and Enterprise plan.Contact sales →
Frequently asked questions about Xcitium
What does Xcitium do?
Xcitium provides a cloud-native Zero Trust cybersecurity platform built around its patented ZeroDwell auto-containment technology, which virtualizes unknown files at runtime to prevent damage before verdicting. The platform unifies endpoint detection and response (EDR/XDR), cloud workload protection (CNAPP, CSPM, CWPP, KSPM), secure access (SASE, ZTNA, SD-WAN), and ITSM tooling, sold primarily as subscriptions to enterprises, governments, and managed service providers worldwide.
Is Xcitium a public or private company?
Xcitium is a private company. It is classified as unknown and is currently operating.
When was Xcitium founded?
Xcitium was founded in 2018. It employs 501 to 1,000 people.
Where is Xcitium based?
Xcitium is headquartered in Bloomfield, United States, in the North America region.
How does Xcitium make money?
Five revenue lines are on record. Subscription - Endpoint Security is the primary driver. The others are managed Security Services, professional Services, platform Licensing and partner Program Revenue.
Who are Xcitium's main competitors?
Direct peers on record are CrowdStrike, SentinelOne, Sophos, Trellix (FireEye/McAfee Enterprise), Trend Micro, Bitdefender and ESET. Broad incumbents are Microsoft (Defender for Endpoint) and Palo Alto Networks (Cortex XDR / Prisma Cloud). Bromium (acquired by HP) is listed as an emerging player.
Does Xcitium have an API?
Yes. Xcitium offers API access for developers through dedicated developer portals. The Verdict Cloud platform provides APIs and plugins for integration purposes. Developers can access file verdicting capabilities, behavioral virus analysis, static and dynamic file investigation through automated API endpoints. Developer documentation is at lookup.verdict.xcitium.com/developers/api.
What industry is Xcitium in?
Xcitium's product category is Endpoint Security Software / Zero Trust Cybersecurity Platform. Its primary akta.pro industry code is HDADAEAB, Extended Detection & Response (XDR). Its NAICS code is 54151 and its SIC code is 7372.