Developer docs
API playgroundTry for free, no card

Search company profiles

GMO Cybersecurity by Ierae

Full company profile

uuid000bl5r

Namestring
GMO Cybersecurity by Ierae
Legal namestring
GMOサイバーセキュリティ byイエラエ株式会社
Company typeenum
Private
Founded yearint
2013
Descriptiontext

GMO Cybersecurity by Ierae is a Japan-based offensive cybersecurity firm operating as a subsidiary of GMO Internet Group (TSE: 9449). Formed in 2023 from the combination of GMO Internet Group's infrastructure with Ierae Security's elite white-hat talent, the company delivers vulnerability assessment, penetration testing, managed SOC, incident response, and security consulting alongside a recurring-revenue SaaS product line. It serves large enterprises, financial institutions, manufacturers, telecommunications carriers, government agencies, and SMB customers, and holds the No. 1 domestic market share in web application vulnerability diagnosis, smartphone application vulnerability diagnosis, and penetration testing per ITR Market View 2025, plus three consecutive DEF CON Cloud Village CTF world championships (2023–2025).

The core technology portfolio combines two subscription SaaS tools — Netde Shindan ASM (Attack Surface Management) for external asset discovery and continuous vulnerability monitoring, and Netde Shindan for Web Apps (reimplemented OWASP ZAP with custom signatures and reproduction-code reporting) — with the proprietary SOLOBAN SIEM, which uses a Security Event Metadata (SEM) architecture on AWS Athena to convert analyst knowledge into automated detection rules delivered across WAF platforms. WAF Aid operationalizes this for AWS WAF and Cloudflare. The company also maintains a CVE research pipeline (269+ filings across Windows, macOS, and other platforms) that feeds back into detection signatures.

Commercially, revenue is generated through a hybrid model: subscription SaaS (¥40,000/month Self-Service and ¥120,000/month Accompaniment plans), professional services (manual pentesting across web, mobile, cloud, network, IoT, red team, and physical categories, plus AI security testing), managed SOC services with 24/7 monitoring, and Ierae Academy training (OSCP and incident response courses). GTM is sales-led with a direct enterprise motion, a no-quota channel partner program covering network equipment resellers, cloud SIs, and financial-sector service providers, and bundling into the GMO Internet Group hosting/domain ecosystem for SMB reach.

Short descriptiontext

GMO Cybersecurity by Ierae is a Japan-based offensive cybersecurity subsidiary of GMO Internet Group offering vulnerability assessment, penetration testing, ASM SaaS tools (Netde Shindan), managed SOC, and incident response to enterprises, financial institutions, and SMBs primarily in Japan.

Operating statusenum
Operating
Ownership categoryenum
Headcount rangeband
51–100
akta.pro rankint
HeadquartersTokyo, Japan
HQ citystring
Tokyo
HQ countrystring
Japan
HQ regionstring
Asia
Markets served

Serves global market

Offices2 records

Each record includes

City, Country, Type, Description, Source

Keyword5 values
vulnerability assessment, penetration testing, attack surface management, managed SOC services, incident response
Industry4 codes
1Cybersecurity Operations Outsourcing (SOC / SecOps)
CodeBPAEAMAGPrimaryYes
2Security Operations Center (SOC) as a Service
CodeBPAEADABPrimaryNo
3Cybersecurity Architecture & Security Integration
CodeBPAEAAALPrimaryNo
4Cybersecurity Support Operations (SOC Triage, Incident Intake)
CodeBPAAACAFPrimaryNo
NAICS code3 codes
  • Computer Facilities Management Services541513
  • Computer Systems Design and Related Services54151
  • Security Systems Services56162
SIC code2 codes
  • Services-Computer Integrated Systems Design7373
  • Services-Computer Programming Services7371
Product category
Cybersecurity Services and Vulnerability Management
GTM motion2 records

Each record includes

Type, Description, Source

Revenue model5 records
1Vulnerability Assessment and Penetration Testing Services
TypeProfessional Services
Description

Manual security assessment services performed by world-class white hat hackers. Covers web application, mobile app, cloud, network, IoT, red team, and physical penetration testing.

gmo-cybersecurity.com
2ネットde診断 ASM (Self-serve SaaS tool)
TypeSubscription Recurring
Description

Subscription-based ASM tool with two tiers: Self-Service Plan (¥40,000/month) and Accompaniment Plan (¥120,000/month). Revenue from monthly/annual subscriptions with pricing per domain/site.

product.gmo-cybersecurity.com
3SOC (Security Operations Center) Services
TypeManaged Services
Description

Managed SOC services including 24/7 monitoring, alert analysis, threat response, and second opinion services for logs from any vendor or product.

product.gmo-cybersecurity.com
4AI Security Services
TypeProfessional Services
Description

AI-specific threat assessment including prompt injection and privilege escalation testing for AI applications and agents.

gmo-cybersecurity.com
5Ierae Academy (Security Training)
TypeProfessional Services
Description

Offensive security certification courses (OSCP) and incident response training programs.

gmo-cybersecurity.com
Marketing channels8 records

Each record includes

Title, Type, Stage, Description, Source

Distribution channels4 records

Each record includes

Title, Type, Scope, Target buyer, Description, Source

Cost components5 values
Personnel, Technology or R&D, Marketing or Sales, Infrastructure, Operations
Pricing details2 tiers
1Self-Service Plan (自走プラン): Tool-only usage for basic vulnerability scanning
ModelSubscriptionBilling cadenceMonthly
Notes

月額4万円~ (¥40,000+/month). For users wanting to start affordably, quickly understand their status, and receive diagnostic reports immediately. 1 site = ¥3,000.

product.gmo-cybersecurity.com
2Accompaniment Plan (伴走プラン): Expert advisory support with regular meetings
ModelSubscriptionBilling cadenceMonthly
Notes

月額12万円~ (¥120,000+/month). Includes expert operational support, prioritized remediation advice based on company circumstances, and end-to-end support through remediation tracking.

product.gmo-cybersecurity.com
GTM typeB2B
B2B
Offering typeSoftware
Software
Brand1 of 5 records shown
1ネットde診断 ASM
Description

Attack Surface Management (ASM) tool for discovering and managing external-facing IT assets and vulnerabilities. Features passive and active scanning, dark web monitoring, and regular vulnerability reporting.

gmo-cybersecurity.com
+4 more records
Core offering1 text field

GMO Cybersecurity by Ierae provides offensive-led cybersecurity services and SaaS tools, including manual vulnerability assessment and penetration testing, Attack Surface Management (netde Shindan ASM) and web application scanning (netde Shindan for Web Apps) SaaS products, 24/7 managed SOC operations built on its proprietary SOLOBAN SIEM, automated WAF operations (WAF Aid) for AWS WAF and Cloudflare, incident response and digital forensics, AI security testing, and security training through Ierae Academy. Offerings are delivered primarily to enterprise and government clients in Japan.

Differentiator
Functional benefit
Problem solved
Quantifiable outcome1 of 6 values shown
  • 90%+ intrusion success rate for penetration testing engagements
+5 more records
Product overview1 text field

GMO Cybersecurity by Ierae offers a unified platform combining automated SaaS vulnerability scanning tools with expert-led managed security services. The product portfolio is organized as two core SaaS tools — ネットde診断 ASM (ASM tool for external asset discovery and vulnerability monitoring) and ネットde診断 for Web Apps (deep web application vulnerability scanner built on OWASP ZAP) — alongside a suite of professional services including manual penetration testing across multiple categories (web, mobile, cloud, network, IoT, internal, red team), AI security testing, managed SOC services with proprietary SIEM (SOLOBAN), WAF Aid automated operations, digital forensics and incident response, security consulting, and Ierae Academy training programs. The two SaaS tools serve different segments: ASM targets enterprise-wide external asset management and broad scanning, while the Web Apps scanner targets developers seeking detailed, authenticated application-level testing with reproduction codes.

Product and service6 records
1Netde Shindan ASM (GMO Cyber Attack Netde Shindan)
CategoryASM / Vulnerability Management Software
Description

Attack Surface Management (ASM) SaaS tool that automatically discovers externally exposed IT assets (domains, IPs, servers) and performs passive and active vulnerability scanning to support enterprise-wide risk management. Offered in Self-Service Plan and Accompaniment Plan tiers.

2Netde Shindan for Web Apps
CategoryApplication Security Testing Software
Description

Web application vulnerability scanner built on reimplemented OWASP ZAP with proprietary signatures, enabling in-house recurring security testing with up to 35 scans per month per subscription and automated crawling plus reproduction codes in reports.

3Vulnerability Assessment and Penetration Testing Services
CategoryProfessional Security Services
Description

Manual expert-led security testing covering web application, mobile app, cloud, network, IoT, internal network, red team, NFT/blockchain, game cheat, desktop app, and physical penetration testing performed by 200+ white hat hackers.

4SOC (Security Operations Center) Services
CategoryManaged Security Services
Description

24/7 security monitoring, alert analysis, threat response, and a Second Opinion advisory service for logs from any vendor or product, powered by the proprietary SOLOBAN SIEM platform using SEM architecture on AWS Athena.

5WAF Aid
CategoryManaged Security Services
Description

Automated WAF operations management service that connects to AWS WAF and Cloudflare to deliver managed rules, signature updates, and misdetection resolution based on GMO Ierae's threat intelligence.

6AI Security Services
Scale indicator8 records

Each record includes

Type, Value, Description, Source

Partnership3 partners
Strategic tierStandardTypeChannel Partner/ Reseller/ Distributor
Description

Sales partners that bundle netde Shindan diagnostic services as part of maintenance contracts for network equipment such as VPN and UTM devices. Partners resell vulnerability scanning services alongside their core networking product offerings.

Strategic tierStandardTypeChannel Partner/ Reseller/ Distributor
Description

Cloud platform system integrators (e.g., AWS-focused SIs) that offer WAF Aido automated WAF operations management service as an option in their cloud deployment engagements. Partners expand the addressable market for managed WAF services.

Strategic tierStandardTypeChannel Partner/ Reseller/ Distributor
Description

Service providers operating in the financial sector who resell penetration testing services to their banking and financial institution clients. These partners leverage existing relationships in the regulated financial sector to deliver expert security assessments.

Recent move6 records

Each record includes

Date, Type, Title, Description, Source

Expansion highlight5 records

Each record includes

Type, Description

Peers10 records
TypeDirect peer
Description

LAC is a major Japanese cybersecurity services firm offering vulnerability assessment, penetration testing, SOC, and incident response with deep enterprise reach. Directly comparable as a Japan-focused offensive security and managed security services provider competing for the same enterprise and financial-sector customers as Ierae.

TypeDirect peer
Description

NRI Secure is a leading Japanese security consulting and managed services firm under Nomura Research Institute, offering vulnerability diagnostics, SOC, and consulting. Comparable in offering breadth and target enterprise/financial client base within the Japanese market.

TypeBroad incumbent
Description

IIJ is a major Japanese network and cloud provider with a sizable security services division covering managed SOC, vulnerability assessment, and consulting. Comparable as a broad incumbent with overlapping managed security and assessment services targeting the same Japanese enterprise base.

TypeBroad incumbent
Description

Trend Micro is a global cybersecurity vendor with strong Japanese enterprise penetration, offering endpoint, network, and managed detection services. Comparable as a broad incumbent that competes with Ierae on managed SOC and security services within Japanese enterprise accounts.

TypeBroad incumbent
Description

NTT Data is a dominant Japanese IT services conglomerate with broad cybersecurity consulting, managed security, and system integration capabilities. Comparable as a broad incumbent with deeper enterprise integration reach and overlapping managed security and vulnerability assessment services.

TypeDirect peer
Description

SecureWorks is a global MSSP offering managed detection, vulnerability management, and offensive security testing. Comparable as a managed security and assessment services provider; demonstrates the international scaling benchmark Ierae could pursue beyond Japan.

TypeBroad incumbent
Description

Rapid7 offers vulnerability management, managed detection, and offensive security services globally, including Japan. Comparable as a broad incumbent with a SaaS vulnerability management platform and managed services that compete for the same enterprise buyers as Ierae's ASM and SOC offerings.

TypeDirect peer
Description

Trustwave is a global MSSP providing managed security, vulnerability assessment, penetration testing, and incident response. Comparable as a direct peer offering the same suite of managed security services and offensive testing as Ierae.

TypeDirect peer
Description

Bishop Fox is a US-based offensive security firm specializing in penetration testing, red teaming, and vulnerability research with a strong reputation for elite consultants. Comparable as a direct peer in expert-led offensive security services and adversary simulation.

TypeRegional player
Description

Macnica is a Japanese network/security distributor and integrator offering managed security services and vulnerability assessment as part of its portfolio. Comparable as a regional channel and services player competing for enterprise security budget in Japan.

Market position
Strengths5 records

Each record includes

Headline, Details, Source

Weaknesses5 records

Each record includes

Headline, Details, Source

Competitive moat6 records

Each record includes

Type, Details

Key risks6 records

Each record includes

Headline, Details, Source

Key highlights7 records

Each record includes

Headline, Details, Source

Customer concentration

Classification, Details

Named customers34 records

Each record includes

Name, Industry, Type, Use case, Source, UUID

Segment6 records

Each record includes

Title, Type, Primary, Description, Pain point addressed, Use case, Source

Ideal customer profile3 records

Each record includes

Profile, Firmographic size, Sales motion, Sales cycle length, Buying structure, Purchase trigger, Buyer persona, Geography, Industry vertical, Primary use case, Description, Pain points, Evidence proof points, Target buyer

Technology focused
Yes
API detail
Has APIbool
No

Docs URL, Description

Integration2 records

Each record includes

Title, Type, Description, Source

AI capability2 records

Each record includes

Type, Description, Source

AI maturity
App detail

Has app

Feature5 records

Each record includes

Title, Differentiator, Description, Source

Core technology
Revenue estimate
Valuation estimate
Number of profiles
Profiles9 records

Each record includes

Name, Designation, Designation category, Overview, Profile commentary, Source

No data
No data
Funding overview

Funding stage, Last funding date, Total funding USD

Funding rounds

Each record includes

Round, Amount USD, Date, Pre money valuation, Total investors, Investors, News

Investors

Each record includes

Name, Type, Date of entry, Rounds participated, Website

Funding detail is available on the Subscription and Enterprise plan.Contact sales →

M&A

Each record includes

Name, Acquisition type, Announced date, Completed date, Status, Website, News

Investment

Each record includes

Name, Round, Announced date, Lead investor, Website, News

M&A and investment is available on the Subscription and Enterprise plan.Contact sales →

GMO Cybersecurity by Ierae

Cybersecurity Services and Vulnerability Managementgmo-cybersecurity.com

GMO Cybersecurity by Ierae is a Japan-based offensive cybersecurity subsidiary of GMO Internet Group offering vulnerability assessment, penetration testing, ASM SaaS tools (Netde Shindan), managed SOC, and incident response to enterprises, financial institutions, and SMBs primarily in Japan.

What GMO Cybersecurity by Ierae does

GMO Cybersecurity by Ierae is a Japan-based offensive cybersecurity firm operating as a subsidiary of GMO Internet Group (TSE: 9449). Formed in 2023 from the combination of GMO Internet Group's infrastructure with Ierae Security's elite white-hat talent, the company delivers vulnerability assessment, penetration testing, managed SOC, incident response, and security consulting alongside a recurring-revenue SaaS product line. It serves large enterprises, financial institutions, manufacturers, telecommunications carriers, government agencies, and SMB customers, and holds the No. 1 domestic market share in web application vulnerability diagnosis, smartphone application vulnerability diagnosis, and penetration testing per ITR Market View 2025, plus three consecutive DEF CON Cloud Village CTF world championships (2023–2025).

The core technology portfolio combines two subscription SaaS tools — Netde Shindan ASM (Attack Surface Management) for external asset discovery and continuous vulnerability monitoring, and Netde Shindan for Web Apps (reimplemented OWASP ZAP with custom signatures and reproduction-code reporting) — with the proprietary SOLOBAN SIEM, which uses a Security Event Metadata (SEM) architecture on AWS Athena to convert analyst knowledge into automated detection rules delivered across WAF platforms. WAF Aid operationalizes this for AWS WAF and Cloudflare. The company also maintains a CVE research pipeline (269+ filings across Windows, macOS, and other platforms) that feeds back into detection signatures.

Commercially, revenue is generated through a hybrid model: subscription SaaS (¥40,000/month Self-Service and ¥120,000/month Accompaniment plans), professional services (manual pentesting across web, mobile, cloud, network, IoT, red team, and physical categories, plus AI security testing), managed SOC services with 24/7 monitoring, and Ierae Academy training (OSCP and incident response courses). GTM is sales-led with a direct enterprise motion, a no-quota channel partner program covering network equipment resellers, cloud SIs, and financial-sector service providers, and bundling into the GMO Internet Group hosting/domain ecosystem for SMB reach.

GMO Cybersecurity by Ierae firmographics

Firmographics
Name
GMO Cybersecurity by Ierae
Legal name
GMOサイバーセキュリティ byイエラエ株式会社
Website
https://gmo-cybersecurity.com
Company type
Private
Founded year
2013
Operating status
Operating
Headcount range
51–100 employees
Short description
GMO Cybersecurity by Ierae is a Japan-based offensive cybersecurity subsidiary of GMO Internet Group offering vulnerability assessment, penetration testing, ASM SaaS tools (Netde Shindan), managed SOC, and incident response to enterprises, financial institutions, and SMBs primarily in Japan.
Ownership category
akta.pro rank

GMO Cybersecurity by Ierae industry classification

Industry
Product category
Cybersecurity Services and Vulnerability Management
NAICS
Computer Facilities Management Services (541513), Computer Systems Design and Related Services (54151), Security Systems Services (56162)
SIC
Services-Computer Integrated Systems Design (7373), Services-Computer Programming Services (7371)
akta.pro primary industry
Cybersecurity Operations Outsourcing (SOC / SecOps) (BPAEAMAG)
akta.pro secondary industries
Security Operations Center (SOC) as a Service (BPAEADAB), Cybersecurity Architecture & Security Integration (BPAEAAAL), Cybersecurity Support Operations (SOC Triage, Incident Intake) (BPAAACAF)

Keywords

  • Vulnerability assessment
  • Penetration testing
  • Attack surface management
  • Managed SOC services
  • Incident response

Where GMO Cybersecurity by Ierae is headquartered

Location

Headquarters

HQ city
Tokyo
HQ country
Japan
HQ region
Asia

Offices2 records

Markets served

GMO Cybersecurity by Ierae business model

Business model
GTM type
B2B
Offering type
Software
Cost components
Personnel, Technology or R&D, Marketing or Sales, Infrastructure, Operations

Revenue model

  1. Vulnerability Assessment and Penetration Testing Services: Manual security assessment services performed by world-class white hat hackers. Covers web application, mobile app, cloud, network, IoT, red team, and physical penetration testing.
  2. ネットde診断 ASM (Self-serve SaaS tool): Subscription-based ASM tool with two tiers: Self-Service Plan (¥40,000/month) and Accompaniment Plan (¥120,000/month). Revenue from monthly/annual subscriptions with pricing per domain/site.
  3. SOC (Security Operations Center) Services: Managed SOC services including 24/7 monitoring, alert analysis, threat response, and second opinion services for logs from any vendor or product.
  4. AI Security Services: AI-specific threat assessment including prompt injection and privilege escalation testing for AI applications and agents.
  5. Ierae Academy (Security Training): Offensive security certification courses (OSCP) and incident response training programs.

Pricing tiers

ModelBillingPrice
SubscriptionMonthlySelf-Service Plan (自走プラン): Tool-only usage for basic vulnerability scanning
SubscriptionMonthlyAccompaniment Plan (伴走プラン): Expert advisory support with regular meetings

Go-to-market motion2 records

Distribution channels4 records

Marketing channels8 records

GMO Cybersecurity by Ierae product offering

Product offering

Core offering

GMO Cybersecurity by Ierae provides offensive-led cybersecurity services and SaaS tools, including manual vulnerability assessment and penetration testing, Attack Surface Management (netde Shindan ASM) and web application scanning (netde Shindan for Web Apps) SaaS products, 24/7 managed SOC operations built on its proprietary SOLOBAN SIEM, automated WAF operations (WAF Aid) for AWS WAF and Cloudflare, incident response and digital forensics, AI security testing, and security training through Ierae Academy. Offerings are delivered primarily to enterprise and government clients in Japan.

Product overview

GMO Cybersecurity by Ierae offers a unified platform combining automated SaaS vulnerability scanning tools with expert-led managed security services. The product portfolio is organized as two core SaaS tools — ネットde診断 ASM (ASM tool for external asset discovery and vulnerability monitoring) and ネットde診断 for Web Apps (deep web application vulnerability scanner built on OWASP ZAP) — alongside a suite of professional services including manual penetration testing across multiple categories (web, mobile, cloud, network, IoT, internal, red team), AI security testing, managed SOC services with proprietary SIEM (SOLOBAN), WAF Aid automated operations, digital forensics and incident response, security consulting, and Ierae Academy training programs. The two SaaS tools serve different segments: ASM targets enterprise-wide external asset management and broad scanning, while the Web Apps scanner targets developers seeking detailed, authenticated application-level testing with reproduction codes.

Differentiator

Problem solved

Functional benefit

Brands

  • ネットde診断 ASM: Attack Surface Management (ASM) tool for discovering and managing external-facing IT assets and vulnerabilities. Features passive and active scanning, dark web monitoring, and regular vulnerability reporting.
  • ネットde診断 for Webアプリ
  • WAFエイド
  • SOCサービス
  • イエラエアカデミー

Products and services

  • Netde Shindan ASM (GMO Cyber Attack Netde Shindan) Attack Surface Management (ASM) SaaS tool that automatically discovers externally exposed IT assets (domains, IPs, servers) and performs passive and active vulnerability scanning to support enterprise-wide risk management. Offered in Self-Service Plan and Accompaniment Plan tiers.
  • Netde Shindan for Web Apps Web application vulnerability scanner built on reimplemented OWASP ZAP with proprietary signatures, enabling in-house recurring security testing with up to 35 scans per month per subscription and automated crawling plus reproduction codes in reports.
  • Vulnerability Assessment and Penetration Testing Services Manual expert-led security testing covering web application, mobile app, cloud, network, IoT, internal network, red team, NFT/blockchain, game cheat, desktop app, and physical penetration testing performed by 200+ white hat hackers.
  • SOC (Security Operations Center) Services 24/7 security monitoring, alert analysis, threat response, and a Second Opinion advisory service for logs from any vendor or product, powered by the proprietary SOLOBAN SIEM platform using SEM architecture on AWS Athena.
  • WAF Aid Automated WAF operations management service that connects to AWS WAF and Cloudflare to deliver managed rules, signature updates, and misdetection resolution based on GMO Ierae's threat intelligence.
  • AI Security Services

Quantifiable outcome

  • 90%+ intrusion success rate for penetration testing engagements
  • +5 more outcomes

Companies that use GMO Cybersecurity by Ierae

Customer profile

Named customers34 records

Segments6 records

Ideal customer profiles3 records

GMO Cybersecurity by Ierae technology and API

Technology

Technology focussed Yes

API detail

Has API
No
API docs
API detail

Core technology

AI maturity

App detail

Integration2 records

AI capability2 records

Feature5 records

GMO Cybersecurity by Ierae partnerships and signals

Strategic signal

Partnerships

Three partnerships are on record, tiered standard.

  • Network Equipment Sales Agency PartnersstandardChannel Partner/ Reseller/ DistributorSales partners that bundle netde Shindan diagnostic services as part of maintenance contracts for network equipment such as VPN and UTM devices. Partners resell vulnerability scanning services alongside their core networking product offerings.
  • Cloud Platform SI PartnersstandardChannel Partner/ Reseller/ DistributorCloud platform system integrators (e.g., AWS-focused SIs) that offer WAF Aido automated WAF operations management service as an option in their cloud deployment engagements. Partners expand the addressable market for managed WAF services.
  • Financial Sector Service Provider PartnersstandardChannel Partner/ Reseller/ DistributorService providers operating in the financial sector who resell penetration testing services to their banking and financial institution clients. These partners leverage existing relationships in the regulated financial sector to deliver expert security assessments.

Scale indicators8 records

Recent moves6 records

Expansion highlights5 records

GMO Cybersecurity by Ierae competitors and assessment

Company assessment

Direct peers

  • LAC Co., Ltd. LAC is a major Japanese cybersecurity services firm offering vulnerability assessment, penetration testing, SOC, and incident response with deep enterprise reach. Directly comparable as a Japan-focused offensive security and managed security services provider competing for the same enterprise and financial-sector customers as Ierae.
  • NRI Secure Technologies: NRI Secure is a leading Japanese security consulting and managed services firm under Nomura Research Institute, offering vulnerability diagnostics, SOC, and consulting. Comparable in offering breadth and target enterprise/financial client base within the Japanese market.
  • SecureWorks: SecureWorks is a global MSSP offering managed detection, vulnerability management, and offensive security testing. Comparable as a managed security and assessment services provider; demonstrates the international scaling benchmark Ierae could pursue beyond Japan.
  • Trustwave: Trustwave is a global MSSP providing managed security, vulnerability assessment, penetration testing, and incident response. Comparable as a direct peer offering the same suite of managed security services and offensive testing as Ierae.
  • Bishop Fox: Bishop Fox is a US-based offensive security firm specializing in penetration testing, red teaming, and vulnerability research with a strong reputation for elite consultants. Comparable as a direct peer in expert-led offensive security services and adversary simulation.

Broad incumbents

  • Internet Initiative Japan (IIJ): IIJ is a major Japanese network and cloud provider with a sizable security services division covering managed SOC, vulnerability assessment, and consulting. Comparable as a broad incumbent with overlapping managed security and assessment services targeting the same Japanese enterprise base.
  • Trend Micro Japan: Trend Micro is a global cybersecurity vendor with strong Japanese enterprise penetration, offering endpoint, network, and managed detection services. Comparable as a broad incumbent that competes with Ierae on managed SOC and security services within Japanese enterprise accounts.
  • NTT Data Group / NTT Security: NTT Data is a dominant Japanese IT services conglomerate with broad cybersecurity consulting, managed security, and system integration capabilities. Comparable as a broad incumbent with deeper enterprise integration reach and overlapping managed security and vulnerability assessment services.
  • Rapid7: Rapid7 offers vulnerability management, managed detection, and offensive security services globally, including Japan. Comparable as a broad incumbent with a SaaS vulnerability management platform and managed services that compete for the same enterprise buyers as Ierae's ASM and SOC offerings.

Regional players

  • Macnica Networks: Macnica is a Japanese network/security distributor and integrator offering managed security services and vulnerability assessment as part of its portfolio. Comparable as a regional channel and services player competing for enterprise security budget in Japan.

Market position

Strengths5 records

Weaknesses5 records

Competitive moat6 records

Key risks6 records

Key highlights7 records

Customer concentration

GMO Cybersecurity by Ierae social profiles

Digital presence

GMO Cybersecurity by Ierae financial estimates

Financial estimate

Revenue estimate

Valuation estimate

GMO Cybersecurity by Ierae leadership team

Management profile

Number of profiles

Profiles9 records

GMO Cybersecurity by Ierae funding detail

Funding detail

Funding overview

Funding rounds

Investors

Funding detail is available on the Subscription and Enterprise plan.Contact sales →

GMO Cybersecurity by Ierae M&A and investment

M&A and investment

M&A

Investments

M&A and investment is available on the Subscription and Enterprise plan.Contact sales →

Frequently asked questions about GMO Cybersecurity by Ierae

What does GMO Cybersecurity by Ierae do?

GMO Cybersecurity by Ierae provides offensive-led cybersecurity services and SaaS tools, including manual vulnerability assessment and penetration testing, Attack Surface Management (netde Shindan ASM) and web application scanning (netde Shindan for Web Apps) SaaS products, 24/7 managed SOC operations built on its proprietary SOLOBAN SIEM, automated WAF operations (WAF Aid) for AWS WAF and Cloudflare, incident response and digital forensics, AI security testing, and security training through Ierae Academy. Offerings are delivered primarily to enterprise and government clients in Japan.

Is GMO Cybersecurity by Ierae a public or private company?

GMO Cybersecurity by Ierae is a private company. It is classified as corporate owned and is currently operating.

When was GMO Cybersecurity by Ierae founded?

GMO Cybersecurity by Ierae was founded in 2013. It employs 51 to 100 people.

Where is GMO Cybersecurity by Ierae based?

GMO Cybersecurity by Ierae is headquartered in Tokyo, Japan, in the Asia region.

How does GMO Cybersecurity by Ierae make money?

Five revenue lines are on record. Vulnerability Assessment and Penetration Testing Services are the primary driver. The others are ネットde診断 ASM (Self-serve SaaS tool), SOC (Security Operations Center) Services, AI Security Services and ierae Academy (Security Training).

Who are GMO Cybersecurity by Ierae's main competitors?

Direct peers on record are LAC Co., Ltd., NRI Secure Technologies, SecureWorks, Trustwave and Bishop Fox. Broad incumbents are Internet Initiative Japan (IIJ), Trend Micro Japan, NTT Data Group / NTT Security and Rapid7. Macnica Networks is listed as a regional player.

Does GMO Cybersecurity by Ierae have an API?

No public API is recorded for GMO Cybersecurity by Ierae.

What industry is GMO Cybersecurity by Ierae in?

GMO Cybersecurity by Ierae's product category is Cybersecurity Services and Vulnerability Management. Its primary akta.pro industry code is BPAEAMAG, Cybersecurity Operations Outsourcing (SOC / SecOps), with a secondary code of BPAEADAB, Security Operations Center (SOC) as a Service. Its NAICS code is 541513 and its SIC code is 7373.

Unlock the full company data

50 free credits on sign-up, no credit card required.

Contact sales
Live signals
MorningstarGMO Internet Group’s White-Hat Hackers Help “Blue Water” Take 1st Place in the World at the World’s Premier “DEF CON 34 CTF Finals”GMO Internet Group's Blue Water team, a joint squad from GMO Cybersecurity and GMO Flatt Security, took first place at the DEF CON 34 CTF Finals in Las Vegas. The team had finished second for three consecutive years, and GMO will apply the knowledge to vulnerability assessments and product development.PrtimesGMO Cybersecurity by Yelae, starts offering cyber intrusion tests for local governments.GMO Cybersecurity by Ierae will offer a penetration test package for local governments, simulating attacks on their networks. The service targets the three-layer separation model and includes checks on authentication infrastructure and external services. It aims to support compliance with government guidelines and future attack surface management.BusinesskoreaLIG D&A Partners With IERAELIG D&A signed an MOU with Japan-based IERAE (GMO CYBER SECURITY by IERAE) on July 22 at GMO Internet Group headquarters in Tokyo for cybersecurity cooperation covering unmanned systems, low Earth orbit satellites, and artificial satellite communications. The partnership aims to address vulnerabilities in existing weapon systems through attacker-perspective security evaluations and integrate security from the design stage of next-generation defense systems. LIG D&A plans to leverage this collaboration to strengthen its position in the global defense and space security markets by jointly developing cybersecurity standards for future battlefields.PrtimesGMO Cybersecurity by Yerae, conducted a lecture on 'IT Literacy and Cybersecurity' at the Japan Ground Self-Defense Force Technical School.GMO Cybersecurity by Ierae held an IT literacy and cybersecurity lecture for about 1,000 students at the Japan Ground Self-Defense Force High Technical School in Yokosuka on May 12, 2026. The lecture covered smartphone dependence, digital responsibility, and latest cyber threats, with the company planning to expand similar activities to other educational institutions.MacnicaCountering the looming threat to Japan's manufacturing industry! Macnica and GMO Cyber Security by Ierae enter into partnership to support efforts in the product security fieldMacnica and GMO Cyber Security by Ierae have entered into a partnership to provide consulting and service solutions for product security, targeting small and medium-sized enterprises in Japan's manufacturing supply chain. The collaboration aims to help these companies comply with the European Cyber Resilience Act (CRA), which becomes fully mandatory in 2027, by leveraging Macnica's industry network and GMO's technical expertise.