Rootshell Security
- Company typePrivate
- Founded2019
- HeadquartersBasingstoke, United Kingdom
- Headcount11–50
- GTM typeB2B
- OfferingSoftware
Rootshell Security firmographics
Firmographics- Name
- Rootshell Security
- Legal name
- Rootshell Security Ltd.
- Website
- https://rootshellsecurity.net
- Company type
- Private
- Founded year
- 2019
- Operating status
- Operating
- Headcount range
- 11–50 employees
- Ownership category
- akta.pro rank
Rootshell Security industry classification
Industry- Product category
- Penetration Testing as a Service (PTaaS)
- NAICS
- Testing Laboratories and Services (541380), Computer Systems Design and Related Services (5415)
- SIC
- Services-Testing Laboratories (8734)
- akta.pro primary industry
- Penetration Testing & Red Teaming (BPAKAHAF)
- akta.pro secondary industry
- Vulnerability Management & Penetration Testing Services (BPAEADAD)
Keywords
Where Rootshell Security is headquartered
LocationHeadquarters
- HQ city
- Basingstoke
- HQ country
- United Kingdom
- HQ region
- Europe
Offices2 records
Markets served
Rootshell Security business model
Business model- GTM type
- B2B
- Offering type
- Software
- Cost components
- Personnel, Technology or R&D, Marketing or Sales, Operations, Infrastructure
Revenue model
- Penetration Testing as a Service (PTaaS): Subscription-based continuous penetration testing service offered as 12-month contracts. Combines human-led testing with AI-assisted analysis, delivered through the Rootshell Platform. Pricing based on attack surface scope and testing requirements.
- Managed Vulnerability Scanning (MVS): Ongoing vulnerability scanning service with manual reviews and expert guidance. Includes regular scanning of internal and external infrastructure, networks, and applications.
- Attack Surface Management (ASM): Continuous external and internal attack surface monitoring and management services.
- Red Team as a Service: Adversary simulation and threat-led security assessments including TIBER-EU, CBEST, DORA, GBEST, and STAR-FS aligned engagements.
- MSP White-Label Platform License: White-label platform licensing for Managed Service Providers to deliver vulnerability management services to their end clients. MSPs can purchase license seats and upsell additional features to their customers.
- Specialized Testing Services: Individual penetration testing services including web application, infrastructure, cloud services, wireless, firewall, phishing assessment, ransomware assessment, AI penetration testing, and physical testing.
Pricing tiers
| Model | Billing | Price |
|---|---|---|
| Subscription | Annual | Tailored PTaaS security package - modular, from penetration testing, MVS, ASM and red team assessments |
Go-to-market motion2 records
Distribution channels3 records
Marketing channels8 records
Rootshell Security product offering
Product offeringCore offering
Rootshell Security delivers continuous Penetration Testing as a Service (PTaaS) combining human-led expert testing with AI-assisted analysis through its proprietary Rootshell Platform. The platform provides centralized vulnerability management, Active Exploit Detection, automated remediation workflows, and vendor-neutral consolidation of security testing data. Offerings are structured as modular 12-month subscriptions and complemented by specialized testing services (web, cloud, infrastructure, wireless, firewall, phishing, ransomware, AI) and Red Team as a Service aligned to MITRE ATT&CK, TIBER-EU, CBEST, DORA, and GBEST frameworks.
Product overview
Rootshell Security is a cybersecurity company offering a platform-plus-services model combining The Rootshell Platform (a centralized vulnerability management platform) with a portfolio of penetration testing and security assessment services. The platform serves as the core product, providing dynamic dashboards, automated prioritization, Active Exploit Detection powered by Velma AI, an Automation Center for workflow rules, and Remediation & Collaboration tools. This core platform integrates with PTaaS, Managed Vulnerability Scanning, Attack Surface Management, and Red Team services. The company offers specialized testing services including Firewall, Cloud, Wireless, Web Application, AI, and Phishing penetration testing, as well as Ransomware Assessment and Red Team as a Service. Additional resources include an Exploit Center with Velma's threat intelligence reports and a VMMM Calculator for vulnerability management maturity assessment. An MSP White-Label Platform enables managed service providers to deliver branded services.
Differentiator
Problem solved
Functional benefit
Brands
- The Rootshell Platform: A proprietary vulnerability management and remediation platform that consolidates penetration testing results, provides real-time threat visibility, and automates remediation workflows.
- PTaaS (Penetration Testing as a Service)
- Velma
- RedForce
Products and services
- Penetration Testing as a Service (PTaaS) Continuous penetration testing service combining expert-led human testing with AI-assisted analysis, delivered through The Rootshell Platform. Provides ongoing visibility into vulnerability findings rather than static point-in-time reports; offered as 12-month subscription contracts.
- The Rootshell Platform Vendor-neutral centralized vulnerability management platform providing dynamic dashboards, automated prioritization, remediation workflow management, and consolidation of assessment data from multiple security tools. Serves as the delivery layer for PTaaS and other security services.
- MSP White-Label Platform White-label version of The Rootshell Platform enabling managed service providers to deliver branded vulnerability management and penetration testing services to their end clients, with license-based upsell opportunities.
- Continuous Penetration Testing Ongoing penetration testing service that provides continuous validation of security posture as environments evolve, going beyond point-in-time assessments.
- Red Team as a Service Adversary simulation service that emulates real-world cyber attacks to test organizational defenses, including intelligence-led assessments aligned to frameworks such as TIBER-EU, CBEST, DORA, GBEST, and STAR-FS.
- Web Application Penetration Testing Security testing service focused on identifying vulnerabilities in web applications including OWASP Top 10 issues, injection flaws, authentication weaknesses, and business logic vulnerabilities.
- Infrastructure Penetration Testing Penetration testing service assessing network infrastructure, servers, and internal systems for vulnerabilities and security weaknesses.
- Cloud Services Penetration Testing Penetration testing service focused on cloud infrastructure including AWS, Azure, and hybrid enterprise environments, evaluating cloud-specific security configurations and vulnerabilities.
- Firewall Penetration Testing Specialized penetration testing service focused on evaluating firewall effectiveness and identifying configuration weaknesses or vulnerabilities in firewall implementations.
- Wireless Penetration Testing Security assessment service evaluating wireless network security to identify vulnerabilities and attack vectors in Wi-Fi networks and wireless infrastructure.
- Phishing Assessment Social engineering testing service that evaluates organizational resilience to phishing attacks through simulated phishing campaigns and awareness testing.
- Ransomware Assessment Security assessment service that evaluates organizational susceptibility to ransomware attacks and provides recommendations for reducing ransomware risk exposure.
- AI Penetration Testing Services Specialized penetration testing service that uses AI to detect and fix vulnerabilities in AI systems, including evaluation of AI models, pipelines, and integrations.
- Attack Surface Management Managed service providing ongoing discovery and monitoring of organizational attack surface including external-facing assets, infrastructure, and potential entry points.
- External Attack Surface Management (EASM) Continuous monitoring and discovery of externally facing digital assets, providing visibility into internet-facing infrastructure and potential attack vectors.
- Managed Vulnerability Scanning (Infrastructure Scanning) Managed vulnerability scanning service covering internal and external infrastructure, networks, and applications with regular scanning and expert guidance.
- Web Application Scanning Automated scanning service for web applications to identify vulnerabilities, security misconfigurations, and potential entry points in web-facing systems.
Quantifiable outcome
- 62% reduction in Mean Time to Remediate (MTTR)
- +3 more outcomes
Companies that use Rootshell Security
Customer profileNamed customers8 records
Segments8 records
Ideal customer profiles5 records
Rootshell Security technology and API
TechnologyTechnology focussed Yes
API detail
- Has API
- Yes
- API docs
- API detail
Core technology
AI maturity
App detail
Integration11 records
AI capability8 records
Feature8 records
Rootshell Security partnerships and signals
Strategic signalPartnerships
Two partnerships are on record, tiered core.
- MSPAlliancecorePartnership with MSPAlliance providing managed service providers access to Rootshell's vulnerability management platform for delivering security services to end clients. Enables MSPs to offer white-label penetration testing and vulnerability management.
- MSP Channel PartnerscoreManaged Service Providers resell or white-label Rootshell's platform to deliver cybersecurity services. Partners can upsell from one-off assessments to annual contracts with license feature expansion. API v1 enables programmatic integration.
Scale indicators3 records
Recent moves6 records
Expansion highlights6 records
Rootshell Security competitors and assessment
Company assessmentDirect peers
- NetSPI: NetSPI is a leading Penetration Testing as a Service (PTaaS) provider offering continuous, platform-driven security testing. Rootshell is explicitly named alongside NetSPI in PTaaS market reports, making it one of the most direct comparable competitors with the same subscription PTaaS model and enterprise targeting.
- Bishop Fox: Bishop Fox is an offensive security firm offering continuous penetration testing, red team, and vulnerability management services. Comparable to Rootshell in combining expert-led human testing with a proprietary platform and targeting enterprise and regulated industries.
- Synack: Synack pioneered the PTaaS category with a crowdsourced tester network combined with a SaaS platform for vulnerability management. Rootshell is explicitly named alongside Synack in PTaaS market analyses; both compete on continuous testing delivery and platform-centric remediation workflows for enterprise customers.
- Cobalt: Cobalt (now part of Fortra) provides a PTaaS platform connecting enterprises to a vetted tester community for on-demand penetration testing. Operates with the same subscription-based continuous testing model and platform-centric delivery approach that Rootshell targets.
Broad incumbents
- Trustwave: Trustwave (an Optiv/Singtel portfolio company) provides managed security services including penetration testing, MDR, and vulnerability management. Comparable in delivering continuous security testing alongside broader MSSP services, and competes with Rootshell in financial services and enterprise segments.
- NCC Group: NCC Group is a large UK-headquartered cybersecurity services firm offering CHECK-accredited penetration testing, red teaming, and managed security services. Comparable in UK regulatory accreditations (CHECK, CREST) and enterprise financial services customer base, though significantly larger and more diversified.
- Rapid7: Rapid7 is a broad security analytics and vulnerability management platform with a managed pen testing and services arm. Overlaps with Rootshell on vulnerability management workflows, integration with ITSM platforms, and enterprise vulnerability remediation positioning.
- Veracode: Veracode (Thoma Bravo-backed) is a broad application security testing platform offering SAST, DAST, and software composition analysis. Rootshell is named alongside Veracode in PTaaS market reports; Veracode represents the larger incumbent overlap where Rootshell's pen testing offering competes with an established application security suite.
Emerging players
- Pentera: Pentera provides automated security validation and continuous penetration testing as a SaaS platform, emphasizing automated adversary emulation. Comparable to Rootshell's continuous testing value proposition, particularly the Velma AI-driven automation and real-time exploit monitoring, though Pentera focuses on automated rather than human-led delivery.
- HackerOne: HackerOne operates a bug bounty and vulnerability disclosure platform that pairs with penetration testing services for continuous security validation. Comparable on the continuous/community-driven security testing model, though positioned around crowdsourced disclosures rather than Rootshell's human-led expert testing approach.
Market position
Weaknesses5 records
Competitive moat6 records
Key risks4 records
Key highlights2 records
Customer concentration
Rootshell Security social profiles
Digital presenceRootshell Security compliance and trust
Trust signalCompliance9 records
Rootshell Security financial estimates
Financial estimateRevenue estimate
Valuation estimate
Rootshell Security leadership team
Management profileNumber of profiles
Rootshell Security funding detail
Funding detailFunding overview
Funding rounds
Investors
Funding detail is available on the Subscription and Enterprise plan.Contact sales →
Rootshell Security M&A and investment
M&A and investmentM&A
Investments
M&A and investment is available on the Subscription and Enterprise plan.Contact sales →
Frequently asked questions about Rootshell Security
What does Rootshell Security do?
Rootshell Security delivers continuous Penetration Testing as a Service (PTaaS) combining human-led expert testing with AI-assisted analysis through its proprietary Rootshell Platform. The platform provides centralized vulnerability management, Active Exploit Detection, automated remediation workflows, and vendor-neutral consolidation of security testing data. Offerings are structured as modular 12-month subscriptions and complemented by specialized testing services (web, cloud, infrastructure, wireless, firewall, phishing, ransomware, AI) and Red Team as a Service aligned to MITRE ATT&CK, TIBER-EU, CBEST, DORA, and GBEST frameworks.
Is Rootshell Security a public or private company?
Rootshell Security is a private company. It is classified as founder individual operated bootstrapped and is currently operating.
When was Rootshell Security founded?
Rootshell Security was founded in 2019. It employs 11 to 50 people.
Where is Rootshell Security based?
Rootshell Security is headquartered in Basingstoke, United Kingdom, in the Europe region.
How does Rootshell Security make money?
Six revenue lines are on record. Penetration Testing as a Service (PTaaS) is the primary driver. The others are managed Vulnerability Scanning (MVS), attack Surface Management (ASM), red Team as a Service, MSP White-Label Platform License and specialized Testing Services.
Who are Rootshell Security's main competitors?
Direct peers on record are NetSPI, Bishop Fox, Synack and Cobalt. Broad incumbents are Trustwave, NCC Group, Rapid7 and Veracode. Emerging players are Pentera and HackerOne.
Does Rootshell Security have an API?
Yes. Public API v1 available for channel partners. Rootshell Security has released a Public API v1 enabling channel partners to integrate with the platform. The MCP Server Beta (Model Context Protocol) is available, allowing users to connect ChatGPT, Copilot, Claude, and Gemini to the Rootshell Platform for turning exposure management data into actionable insights.
What industry is Rootshell Security in?
Rootshell Security's product category is Penetration Testing as a Service (PTaaS). Its primary akta.pro industry code is BPAKAHAF, Penetration Testing & Red Teaming, with a secondary code of BPAEADAD, Vulnerability Management & Penetration Testing Services. Its NAICS code is 541380 and its SIC code is 8734.