SpearTip
SpearTip is a U.S.-based B2B cybersecurity services firm and wholly-owned Zurich Insurance subsidiary, providing 24/7 SOC-managed security, incident response, and advisory services to healthcare, manufacturing, financial services, and SMB clients.
- Company typePrivate
- Founded2006
- HeadquartersSt Louis, United States
- Headcount51–100
- GTM typeB2B
- OfferingServices
What SpearTip does
SpearTip is a U.S.-based B2B cybersecurity services firm operating a 24/7 Security Operations Center (SOC) staffed by certified cybersecurity professionals. The company delivers its offering through three integrated service lines: Advisory Services (risk assessments, penetration testing, cybersecurity strategy, and threat prevention), Managed Security (continuous endpoint, user, and infrastructure monitoring with active threat detection and neutralization), and Incident Response (emergency breach containment and recovery). SpearTip commits to a 15-minute response time on active threats and reports that most incident response cases are resolved within 30 days.
The company serves a diversified customer base spanning healthcare, manufacturing, financial services, managed service providers, critical infrastructure, and small-to-mid-sized organizations, with an explicit emphasis on extending enterprise-grade protection to smaller firms lacking in-house security resources. Distribution and customer reach are materially amplified by SpearTip's status as a wholly-owned subsidiary of Zurich Insurance Group, operating under the Zurich Resilience Solutions brand and leveraging Zurich's global commercial risk-management platform for cross-sell into Zurich's existing customer base.
Revenue mechanics blend recurring subscription-based managed security retainers with project-based advisory engagements and event-driven incident response work. Pricing is quote-based and tailored per client. SpearTip was founded by Jarrett Kolthoff, who serves as Founder and CEO; the firm is headquartered in St. Louis with 51–100 employees and nearly two decades of operating history. Marketing and demand generation are conducted through content assets, the SpearTip Intelligence Briefing newsletter, a dedicated breach response hotline, and the Zurich Resilience Solutions website, reflecting a sales-led go-to-motion underpinned by parent-company distribution.
SpearTip firmographics
Firmographics- Name
- SpearTip
- Legal name
- SpearTip
- Website
- https://speartip.com
- Company type
- Private
- Founded year
- 2006
- Operating status
- Operating
- Headcount range
- 51–100 employees
- Short description
- SpearTip is a U.S.-based B2B cybersecurity services firm and wholly-owned Zurich Insurance subsidiary, providing 24/7 SOC-managed security, incident response, and advisory services to healthcare, manufacturing, financial services, and SMB clients.
- Ownership category
- akta.pro rank
SpearTip industry classification
Industry- Product category
- Cybersecurity Services
- akta.pro primary industry
- Endpoint Security Managed Services (EDR/XDR) (BPAEADAH)
- akta.pro secondary industries
- Vulnerability Management & Penetration Testing Services (BPAEADAD), Threat Intelligence, Hunting & Adversary Emulation (BPAKAHAE)
Keywords
Where SpearTip is headquartered
LocationHeadquarters
- HQ city
- St Louis
- HQ country
- United States
- HQ region
- North America
Offices1 record
Markets served
SpearTip business model
Business model- GTM type
- B2B
- Offering type
- Services
- Cost components
- Personnel, Technology or R&D, Operations, Marketing or Sales
Revenue model
- Managed Security Services: Recurring subscription-based 24/7 SOC monitoring services providing continuous threat detection, endpoint protection, and user protection. Revenue is generated through ongoing retainer contracts with monthly or annual billing cycles.
- Advisory Services: Professional consulting services including risk assessments, penetration testing, cybersecurity strategy, and threat prevention. Typically delivered as one-time engagements or project-based work.
- Incident Response: Emergency breach response services to help organizations handle and recover from cyber incidents, mitigate damage, restore operations, and identify root cause. Most cases resolved within 30 days.
Go-to-market motion1 record
Distribution channels4 records
Marketing channels5 records
SpearTip product offering
Product offeringCore offering
SpearTip is a B2B cybersecurity firm that delivers three core services: Advisory Services covering risk assessments, penetration testing, and cybersecurity strategy; Managed Security providing 24/7 Security Operations Center monitoring with real-time threat detection and neutralization; and Incident Response offering rapid breach containment, recovery, and root-cause analysis with a 15-minute response commitment.
Product overview
SpearTip is a cybersecurity firm offering a three-pronged service portfolio: Advisory Services (risk assessments, penetration testing, and strategic cybersecurity guidance), Managed Security (24/7 Security Operations Center monitoring and endpoint/user protection), and Incident Response (rapid breach containment and recovery with a 15-minute response commitment). These three core services work together as an integrated cybersecurity framework, providing end-to-end protection from proactive threat prevention through continuous monitoring to rapid breach response and recovery.
Differentiator
Problem solved
Functional benefit
Products and services
- Advisory Services
Quantifiable outcome
- 15-minute response time guarantee for active threats
- +1 more outcomes
Companies that use SpearTip
Customer profileSegments6 records
Ideal customer profiles5 records
SpearTip technology and API
TechnologyTechnology focussed Yes
API detail
- Has API
- No
- API docs
- API detail
Core technology
AI maturity
App detail
Feature4 records
SpearTip partnerships and signals
Strategic signalScale indicators3 records
Recent moves5 records
Expansion highlights5 records
SpearTip competitors and assessment
Company assessmentDirect peers
- Pondurance: Pondurance delivers MDR, incident response, and risk advisory services to mid-market and regulated organizations, mirroring SpearTip's service mix and customer focus.
- Arctic Wolf: Arctic Wolf is a direct competitor operating a 24/7 SOC-as-a-service model delivering managed detection and response, similar to SpearTip's Managed Security and Incident Response offerings for SMB and mid-market customers.
- Expel: Expel offers transparent, MDR-focused managed security services with strong incident response capabilities, directly comparable to SpearTip's managed SOC and breach response positioning.
- eSentire: eSentire provides MDR and 24/7 SOC services to mid-market organizations, closely overlapping with SpearTip's managed security and incident response capabilities across similar customer profiles.
- Binary Defense: Binary Defense provides 24/7 managed detection and response alongside advisory services, paralleling SpearTip's three-pillar advisory + managed security + incident response framework.
- ReliaQuest: ReliaQuest delivers managed detection and response with an integrated GreyMatter platform, competing directly with SpearTip's combined SOC, advisory, and incident response stack for enterprise security buyers.
- Cybereason: Cybereason provides endpoint detection and response with managed defense services, directly competing with SpearTip in the managed SOC and threat neutralization category.
Broad incumbents
- Secureworks: Secureworks is a larger, established MSSP and MDR provider with broader global reach and a wider portfolio, competing with SpearTip across managed detection, incident response, and advisory services.
- Trustwave: Trustwave is a long-standing MSSP offering managed security, incident response, and advisory services at scale, representing a broader incumbent competitor to SpearTip's focused mid-market stack.
- CrowdStrike (Services): While primarily an endpoint platform vendor, CrowdStrike's Falcon Complete and MDR services compete with SpearTip's managed security offering, especially as endpoint vendors increasingly bundle managed detection.
Market position
Strengths4 records
Weaknesses4 records
Competitive moat4 records
Key risks5 records
Key highlights6 records
Customer concentration
SpearTip social profiles
Digital presenceSpearTip financial estimates
Financial estimateRevenue estimate
Valuation estimate
SpearTip leadership team
Management profileNumber of profiles
Profiles1 record
SpearTip funding detail
Funding detailFunding overview
Funding rounds
Investors
Funding detail is available on the Subscription and Enterprise plan.Contact sales →
SpearTip M&A and investment
M&A and investmentM&A
Investments
M&A and investment is available on the Subscription and Enterprise plan.Contact sales →
Frequently asked questions about SpearTip
What does SpearTip do?
SpearTip is a B2B cybersecurity firm that delivers three core services: Advisory Services covering risk assessments, penetration testing, and cybersecurity strategy; Managed Security providing 24/7 Security Operations Center monitoring with real-time threat detection and neutralization; and Incident Response offering rapid breach containment, recovery, and root-cause analysis with a 15-minute response commitment.
Is SpearTip a public or private company?
SpearTip is a private company. It is classified as corporate owned and is currently operating.
When was SpearTip founded?
SpearTip was founded in 2006. It employs 51 to 100 people.
Where is SpearTip based?
SpearTip is headquartered in St Louis, United States, in the North America region.
How does SpearTip make money?
Three revenue lines are on record. Managed Security Services are the primary driver. The others are advisory Services and incident Response.
Who are SpearTip's main competitors?
Direct peers on record are Pondurance, Arctic Wolf, Expel, eSentire, Binary Defense, ReliaQuest and Cybereason. Broad incumbents are Secureworks, Trustwave and CrowdStrike (Services).
Does SpearTip have an API?
No public API is recorded for SpearTip.
What industry is SpearTip in?
SpearTip's product category is Cybersecurity Services. Its primary akta.pro industry code is BPAEADAH, Endpoint Security Managed Services (EDR/XDR), with a secondary code of BPAEADAD, Vulnerability Management & Penetration Testing Services.