INTRINsec
INTRINsec is a French pure-play cybersecurity firm founded in 1995, offering managed SOC, MDR, CTI, offensive security, and incident response services alongside proprietary platforms (X-TIP, Cyboard, Phish Trackr, Vuln Trackr) to banking, healthcare, public-sector, and industrial clients across France.
- Company typePrivate
- Founded1995
- HeadquartersNanterre, France
- Headcount101–250
- GTM typeB2B
- OfferingServices
What INTRINsec does
INTRINsec is a France-based, pure-play cybersecurity services and product company founded in 1995 and headquartered in Nanterre. The firm operates four points of presence across France with roughly 250 employees and reports approximately €40 million in annual revenue. It delivers a full-stack cybersecurity portfolio spanning strategy and governance (CISO-as-a-Service, risk analysis using EBIOS RM/ISO 27005, regulatory compliance for NIS2, DORA, ISO 27001), offensive security (penetration testing, Red Team, Purple Team, TIBER-EU/DORA TLPT), managed detection and response (24/7 SOC, MDR for endpoints, MDR for cloud across AWS/Azure/GCP), threat intelligence (CTI, EASM, DRPS, vulnerability management), and incident response (CERT, crisis management). Its customers include banking and financial institutions, healthcare organizations, public-sector entities and OIV/ministries, technology firms, retailers, and industrial operators, served across size tiers from startups to multinationals.
The company's product layer is built on a "Best of Breed" architecture: X-TIP is a managed threat intelligence platform constructed on OpenCTI and enriched with INTRINsec's proprietary CTI feeds; Cyboard is a proprietary SOC orchestration and incident management platform integrating with client SIEM, SOAR, and ticketing systems; Phish Trackr provides brand-protection and phishing infrastructure monitoring; and Vuln Trackr correlates CVE data with CTI feeds and exposed assets. CTI Feeds deliver over 2,000 manually and automatically scored IOCs per day into client SIEM/SOAR/EDR environments. INTRINsec holds three ANSSI qualifications — PASSI LPM/RGS, PRIS, and PACS — plus the ANSSI Security Visa, and is a member of InterCERT France and Campus Cyber, providing regulatory access to French government and critical-infrastructure buyers. The GTM motion is enterprise field sales with consultative selling to regulated verticals; revenue is generated through a mix of recurring managed service subscriptions, platform subscriptions (X-TIP, Cyboard), project-based professional services, and CTI subscriptions such as the Daily Cyber Digest.
INTRINsec firmographics
Firmographics- Name
- INTRINsec
- Legal name
- Intrinsec
- Website
- https://intrinsec.com
- Company type
- Private
- Founded year
- 1995
- Operating status
- Operating
- Headcount range
- 101–250 employees
- Short description
- INTRINsec is a French pure-play cybersecurity firm founded in 1995, offering managed SOC, MDR, CTI, offensive security, and incident response services alongside proprietary platforms (X-TIP, Cyboard, Phish Trackr, Vuln Trackr) to banking, healthcare, public-sector, and industrial clients across France.
- Ownership category
- akta.pro rank
INTRINsec industry classification
Industry- Product category
- Cybersecurity Services
- NAICS
- Other Computer Related Services (541519), Computer Systems Design and Related Services (54151)
- SIC
- Services-Computer Programming Services (7371)
- akta.pro primary industry
- Network Security Managed Services (Firewall/IDS/IPS/SASE) (BPAEADAG)
- akta.pro secondary industries
- Endpoint Security Managed Services (EDR/XDR) (BPAEADAH), Secure Software & DevOps Awareness (Secure Coding Basics) (EDABAGAN), Network Security Services (Firewall/VPN/ZTNA/SASE Integration) (BPAEAEAG)
Keywords
Where INTRINsec is headquartered
LocationHeadquarters
- HQ city
- Nanterre
- HQ country
- France
- HQ region
- Europe
Offices2 records
Markets served
INTRINsec business model
Business model- GTM type
- B2B
- Offering type
- Services
- Cost components
- Personnel, Technology or R&D, Operations, Marketing or Sales, Infrastructure
Revenue model
- Managed Security Services (SOC, MDR): Recurring managed detection and response services including 24/7 SOC monitoring, MDR for endpoints, and MDR for cloud. Revenue generated through subscription contracts with monthly/annual billing.
- Professional Services (Consulting, Audits, Pentests): One-time and project-based engagements including security audits, penetration testing, Red Team/Purple Team exercises, TIBER-EU/TLPT simulations, CISO as a Service, and CTI reports. Revenue recognized per engagement or retainer.
- CTI Feeds and Intelligence Products: Daily Cyber Digest subscription, CTI feeds providing 2000+ IOCs per day, threat intelligence reports, and X-TIP platform access. Recurring subscription model with various tier options.
- Training and Certification Services: Incident Response Academy and cybersecurity awareness/sensitization programs. One-time training engagements and ongoing awareness campaigns.
Go-to-market motion1 record
Distribution channels1 record
Marketing channels5 records
INTRINsec product offering
Product offeringCore offering
INTRINsec is a French pure-player cybersecurity company that delivers end-to-end information systems security services and proprietary platforms. Offerings span offensive security (pentests, Red/Purple Team, TIBER-EU), managed detection and response (SOC, MDR for endpoints and cloud), cyber threat intelligence (CTI feeds, X-TIP platform built on OpenCTI), incident response (CERT), security architecture and integration, governance, risk and compliance (ISO 27001, NIS2, DORA), CISO-as-a-Service, and cybersecurity awareness training. Proprietary platforms include Cyboard (SOC), X-TIP (Threat Intelligence), Phish Trackr, and Vuln Trackr.
Product overview
Intrinsec is a pure-player cybersecurity company with 30 years of expertise, offering a comprehensive portfolio of managed security services and proprietary products. The product portfolio centers on the X-TIP (Extended Threat Intelligence Platform) built on OpenCTI, supplemented by the proprietary Cyboard SOC platform, Phish Trackr for phishing protection, and Vuln Trackr for vulnerability management. Core services include 24/7 SOC operations, Cyber Threat Intelligence, MDR for endpoints and cloud, incident response (CERT), offensive security (Pentest, Red Team, Purple Team, TIBER-EU), security architecture, governance and compliance, risk analysis, maturity assessments, CISO as a Service, and cybersecurity awareness training. The portfolio is delivered through a Best of Breed partnership approach with technology leaders including Splunk, CrowdStrike, SentinelOne, AWS, Azure, GCP, and others.
Differentiator
Problem solved
Functional benefit
Brands
- X-TIP: Managed Cyber Threat Intelligence platform based on OpenCTI enriched with Intrinsec CTI
- Cyboard
- Phish Trackr
- Vuln Trackr
- Daily Cyber Digest
- X-TIP on OpenCTI
Products and services
- Cyboard Proprietary SOC platform providing unified security monitoring, alerting, and incident management with CTI-enriched detection capabilities and integration into client SIEM, SOAR, and ticketing systems.
- Phish Trackr Brand protection product that monitors, detects and neutralizes phishing infrastructure targeting organizations' brands and users, as part of the DRPS suite.
- Vuln Trackr Vulnerability tracking product that correlates CVE vulnerabilities with CTI feeds and exposed assets, enabling prioritization of remediation efforts.
- X-TIP (Extended Threat Intelligence Platform) Managed threat intelligence platform built on OpenCTI and enriched with Intrinsec's proprietary CTI, enabling structuring, sharing and orchestrating of threat intelligence across the cyber ecosystem for SOC, RSSI, GRC and COMEX teams.
- CTI Feeds Real-time threat intelligence feeds providing over 2000 IOCs per day, manually and automatically scored, integrating with SIEM, SOAR, EDR and NDR tools for automated security operations.
- MDR for Endpoint Managed Detection and Response service for endpoints providing real-time protection of workstations and servers through centralized EPP/EDR deployment and management.
- MDR for Cloud Managed Detection and Response service for cloud environments providing visibility on configurations, anomaly detection and native integration with AWS, Azure, and GCP platforms.
- SOC - Security Operations Center 24/7 security monitoring and incident response service supervising environments continuously to detect threats, respond to incidents and ensure organizational resilience.
- CTI - Cyber Threat Intelligence Comprehensive threat intelligence service providing strategic and operational intelligence, sector-focused surveillance, and integration with the MITRE ATT&CK framework.
- TIS - Threat Intelligence Services Threat intelligence services including X-TIP on OpenCTI, CTI Feeds, Threat Intelligence Reports, Daily Cyber Digest, Vuln'Trackr, and sector-focused adversary mapping.
- DRPS - Digital Risk Protection Services Digital risk protection including brand and executive surveillance, data leak detection, customer and partner threat monitoring, marketplace/forum/dark web surveillance, phishing infrastructure monitoring, and social media monitoring.
- EASM - External Attack Surface Management External attack surface management providing continuous discovery and monitoring of exposed digital assets, shadow IT detection, cloud misconfiguration monitoring, and SOC-integrated alerting.
- VOC - Vulnerability Operations Center
Quantifiable outcome
- Daily processing of over 2000 IOCs for threat intelligence feeds
- +1 more outcomes
Companies that use INTRINsec
Customer profileSegments9 records
Ideal customer profiles5 records
INTRINsec technology and API
TechnologyTechnology focussed Yes
API detail
- Has API
- Yes
- API docs
- API detail
Core technology
AI maturity
App detail
Integration31 records
AI capability4 records
Feature4 records
INTRINsec partnerships and signals
Strategic signalPartnerships
17 partnerships are on record, tiered core and supporting.
- SplunkcoreTechnology partnership for security information and event management (SIEM) integration. Splunk platform integrated with Intrinsec's managed SOC services for security monitoring and analytics.
- CrowdStrikecoreEndpoint detection and response (EDR) technology partner. CrowdStrike Falcon platform utilized within Intrinsec's MDR for endpoints service offering.
- SekoiacoreFrench-based threat intelligence and SOC automation platform partner. Sekoia.io integrated into Intrinsec's CTI and detection services.
- SentinelOnecoreEndpoint protection platform partner providing autonomous AI-based endpoint security integrated into Intrinsec's managed services.
- HarfangLabsupportingFrench endpoint detection and response (EDR) solution partner, offering sovereign endpoint security technology.
- Palo Alto NetworkscoreNetwork security platform partner including next-generation firewall and cloud security solutions integrated into client environments.
- Orca SecuritysupportingCloud security platform partner providing agentless cloud security posture management (CSPM) for multi-cloud environments.
- Google CloudcoreCloud infrastructure partner for Google Cloud Platform security deployments and native integration with GCP security services.
- WizcoreCloud security platform partner providing comprehensive cloud-native application protection platform (CNAPP) capabilities.
- Amazon Web ServicescoreCloud infrastructure partner for AWS security deployments with native integration into AWS security services and marketplace offerings.
- TenablesupportingVulnerability management platform partner providing exposure management and vulnerability assessment capabilities.
- FlashpointsupportingThreat intelligence data partner providing dark web and underground intelligence feeds integrated into Intrinsec's CTI services.
- FiligransupportingCybersecurity planning and simulation platform partner for threat modeling and security architecture validation.
- VisibrainsupportingDigital risk protection platform partner for brand monitoring and social media threat detection.
- MicrosoftcoreEnterprise technology partner including Azure cloud security, Microsoft 365 security, and Entra ID integration capabilities.
- InterCERT FrancecoreMembership in France's premier national cybersecurity information sharing network, enabling real-time threat intelligence sharing and coordinated incident response.
- Campus CybercoreMember of the national cybersecurity excellence hub established by the French Presidency, connecting to France's cybersecurity innovation ecosystem.
Scale indicators7 records
Recent moves6 records
Expansion highlights6 records
INTRINsec competitors and assessment
Company assessmentDirect peers
- Wavestone: French-headquartered consultancy with a large cybersecurity practice covering cyber strategy, risk, compliance, and incident response — competing with Intrinsec's CISO-as-a-Service and governance/RMS engagements.
- Orange Cyberdefense: French MSSP and managed SOC operator owned by Orange, offering SOC, MDR, threat intelligence, pentesting and incident response across Europe — the most directly comparable pure-play French cybersecurity services peer in scope and offerings.
- Devoteam Cybersecurity: IT consultancy with a dedicated cybersecurity practice across Europe delivering cloud security, MDR, GRC and offensive testing — comparable mid-to-large European MSSP footprint to Intrinsec.
Emerging players
- HarfangLab: French sovereign EDR vendor whose technology underpins Intrinsec's MDR-for-endpoint service — partial overlap as both an endpoint technology partner and a competing French EDR-led MSSP proposition.
- Sekoia.io: French cybersecurity SaaS specializing in CTI and SOC automation (Sekoia Platform), integrated into Intrinsec's stack — adjacent product competitor and partner in threat intelligence.
- Filigran: French cybersecurity vendor behind the OpenCTI threat-intelligence platform that Intrinsec uses to power X-TIP — an emerging product competitor in the CTI tooling space that Intrinsec resells and integrates.
Broad incumbents
- Atos Cybersecurity (Eviden): Global digital services provider operating large-scale managed SOC, MDR, and identity services from French and European delivery centers — overlapping with Intrinsec on enterprise SOC and incident response.
- Capgemini Cybersecurity: Global systems integrator's cybersecurity practice delivering managed SOC, MDR, GRC, and offensive security services to large French and European enterprises — overlapping with Intrinsec's full-lifecycle MSSP offering as part of a broader portfolio.
- Thales Cybersecurity (CortAxs / Cyber Solutions): Defense-grade cybersecurity unit of Thales providing SOC, cyber consulting, and incident response to governments, OIV, and critical infrastructure — overlapping with Intrinsec's regulated-vertical focus at significantly larger scale.
- Sopra Steria Cybersecurity: European IT services group operating managed SOC, security consulting and incident response with strong French public-sector presence — competing with Intrinsec for OIV and ministry engagements.
Market position
Strengths5 records
Weaknesses5 records
Competitive moat6 records
Key risks6 records
Key highlights7 records
Customer concentration
INTRINsec social profiles
Digital presenceINTRINsec compliance and trust
Trust signalCompliance6 records
INTRINsec financial estimates
Financial estimateRevenue estimate
Valuation estimate
INTRINsec leadership team
Management profileNumber of profiles
INTRINsec funding detail
Funding detailFunding overview
Funding rounds1 record
Investors
Funding detail is available on the Subscription and Enterprise plan.Contact sales →
INTRINsec M&A and investment
M&A and investmentM&A
Investments
M&A and investment is available on the Subscription and Enterprise plan.Contact sales →
Frequently asked questions about INTRINsec
What does INTRINsec do?
INTRINsec is a French pure-player cybersecurity company that delivers end-to-end information systems security services and proprietary platforms. Offerings span offensive security (pentests, Red/Purple Team, TIBER-EU), managed detection and response (SOC, MDR for endpoints and cloud), cyber threat intelligence (CTI feeds, X-TIP platform built on OpenCTI), incident response (CERT), security architecture and integration, governance, risk and compliance (ISO 27001, NIS2, DORA), CISO-as-a-Service, and cybersecurity awareness training. Proprietary platforms include Cyboard (SOC), X-TIP (Threat Intelligence), Phish Trackr, and Vuln Trackr.
Is INTRINsec a public or private company?
INTRINsec is a private company. It is classified as founder individual operated bootstrapped and is currently operating.
When was INTRINsec founded?
INTRINsec was founded in 1995. It employs 101 to 250 people.
Where is INTRINsec based?
INTRINsec is headquartered in Nanterre, France, in the Europe region.
How does INTRINsec make money?
Four revenue lines are on record. Managed Security Services (SOC, MDR) is the primary driver. The others are professional Services (Consulting, Audits, Pentests), CTI Feeds and Intelligence Products and training and Certification Services.
Who are INTRINsec's main competitors?
Direct peers on record are Wavestone, Orange Cyberdefense and Devoteam Cybersecurity. Emerging players are HarfangLab, Sekoia.io and Filigran. Broad incumbents are Atos Cybersecurity (Eviden), Capgemini Cybersecurity, Thales Cybersecurity (CortAxs / Cyber Solutions) and Sopra Steria Cybersecurity.
Does INTRINsec have an API?
Yes. X-TIP is built on OpenCTI platform for structuring, sharing and orchestrating threat intelligence across the cyber ecosystem. CTI Feeds provide real-time integration of reliable indicators into customer tools (SIEM, SOAR, EDR). Integration is also available via API or standard connectors including SOC Cyboard, SIEM, OpenCTI, and compatible SOAR tools. The platform also mentions Vuln'Trackr functionality correlating CVE with IoC and exposed assets via API access.
What industry is INTRINsec in?
INTRINsec's product category is Cybersecurity Services. Its primary akta.pro industry code is BPAEADAG, Network Security Managed Services (Firewall/IDS/IPS/SASE), with a secondary code of BPAEADAH, Endpoint Security Managed Services (EDR/XDR). Its NAICS code is 541519 and its SIC code is 7371.