Tesorion.nl
Tesorion is a private Dutch cybersecurity services firm employing 140+ specialists across Security Monitoring, Offensive Security, Security Advisory, and Incident Response, delivering 24/7 MDR, T-SOC, T-CERT incident response, and OT Resilience to Dutch enterprises, government, healthcare, and critical infrastructure customers.
- Company typePrivate
- Founded2011
- HeadquartersLeusden, Netherlands
- Headcount11–50
- GTM typeB2B
- OfferingServices
What Tesorion.nl does
Tesorion is a private Dutch cybersecurity services provider headquartered in Leusden, Netherlands, founded in 2011 and operating with 140+ cybersecurity specialists organized across four in-house disciplines: Security Monitoring, Offensive Security, Security Advisory, and Incident Response. The company's core delivery vehicle is its 24/7 T-SOC (Tesorion Security Operations Center) backed by Managed Detection & Response (MDR) services, with T-CERT providing emergency incident response and a modular portfolio spanning EDR, NDR, SOAR, SIEM, Threat Intelligence, and the proprietary Immunity Network Access Control (NAC) product. The technology stack is built on best-of-breed partner platforms — notably Microsoft XDR and Sentinel (Flagship partnership), Palo Alto Networks, BeyondTrust, Vectra AI, Recorded Future, and SentinelOne — integrated through Tesorion's own SOAR layer and mapped to the MITRE ATT&CK framework, with specialized OT Resilience capabilities for manufacturing, food, energy, and critical infrastructure customers.
The business operates a sales-led, direct-consultation go-to-market focused exclusively on the Dutch market, generating revenue through a mix of recurring managed services (MDR, managed firewall, SASE, NAC) and project-based professional services (pentesting, red team, advisory, IR retainers, CISO-as-a-Service). Customer base is diversified across at least eight verticals including healthcare (OLVG, Maasziekenhuis Pantein), government (municipalities and provincial authorities), social housing, food and dairy (FrieslandCampina, Hero Group, Royal Smilde), retail (Zeeman, G-Star), construction (VolkerWessels), telecom (Delta Fiber), and cultural/nonprofit (Van Gogh Museum), with regulatory compliance advisory spanning ISO 27001, NIS2/Cyberbeveiligingswet, DORA, BIO, and NEN 7510. Distribution is augmented by channel partnerships (Verkada physical security, Passguard) and a content-marketing engine (T-Talks podcast, WakeUp Wednesday newsletter, social papers) that builds inbound demand. Pricing is not publicly disclosed and is structured quote-by-quote through consultation engagements, with a 24/7 incident response hotline (088 27 47 800). The company is DEKRA ISO-NEN certified, privately held with no disclosed funding rounds, and led by COO Daniël Jansen following a 2025 leadership appointment.
Tesorion.nl firmographics
Firmographics- Name
- Tesorion.nl
- Legal name
- Tesorion
- Website
- https://tesorion.nl
- Company type
- Private
- Founded year
- 2011
- Operating status
- Operating
- Headcount range
- 11–50 employees
- Short description
- Tesorion is a private Dutch cybersecurity services firm employing 140+ specialists across Security Monitoring, Offensive Security, Security Advisory, and Incident Response, delivering 24/7 MDR, T-SOC, T-CERT incident response, and OT Resilience to Dutch enterprises, government, healthcare, and critical infrastructure customers.
- Ownership category
- akta.pro rank
Tesorion.nl industry classification
Industry- Product category
- Managed Cybersecurity Services
- NAICS
- Security Systems Services (56162), Computer Facilities Management Services (541513), Computer Systems Design and Related Services (54151)
- SIC
- Services-Computer Programming, Data Processing, Etc. (7370), Services-Testing Laboratories (8734)
- akta.pro primary industry
- OT/ICS & Critical Infrastructure Cybersecurity Services (BPAKAHAN)
- akta.pro secondary industries
- Managed OT Security Services (MSSP/MDR for ICS/OT) (HDADAJAN), Business Continuity, Crisis Management & Resilience Planning (BPAKADAI), Critical Infrastructure Protection Platforms & Security Orchestration (Asset Inventory/CMDB, Policy Enforcement) (EUADANAL), Email & Collaboration Threat Detection/Response (ICR/CTDR) (HDADAKAI)
Keywords
Where Tesorion.nl is headquartered
LocationHeadquarters
- HQ city
- Leusden
- HQ country
- Netherlands
- HQ region
- Europe
Offices1 record
Markets served
Tesorion.nl business model
Business model- GTM type
- B2B
- Offering type
- Services
- Cost components
- Personnel, Technology or R&D, Operations, Marketing or Sales, Infrastructure
Revenue model
- Managed Detection & Response (MDR): 24/7 complete protection against cybercrime through continuous monitoring and detection services. Includes T-SOC, EDR, NDR, and threat intelligence integration.
- Incident Response Services: Emergency response services through T-CERT for organizations affected by cybersecurity incidents. Available 24/7 via hotline.
- Offensive Security Services: Penetration testing, red teaming, and social engineering services to test organizational cybersecurity defenses.
- Pentest Services: Black-box, grey-box, and white-box penetration testing services to identify vulnerabilities in IT environments.
- Red Team Operations: Realistic attack simulations testing effectiveness of security measures including detection and response capabilities.
- Network Detection and Response: NDR monitoring services for on-premise, hybrid and cloud traffic with AI-powered behavioral analysis.
- Security Consulting: Advisory services including CISO-as-a-Service, assessments, governance implementation, and compliance consulting (ISO 27001, NIS2, DORA, BIO).
- Immunity NAC Services: Network Access Control with asset discovery, network segmentation, and automated threat response for IT and OT environments.
- Managed Security Services: Managed firewall, SASE, secure remote access, and enterprise browser security services.
Go-to-market motion1 record
Distribution channels3 records
Marketing channels7 records
Tesorion.nl product offering
Product offeringCore offering
Tesorion delivers multidisciplinary cybersecurity services to Dutch organizations through four pillars: Security Monitoring (24/7 T-SOC and Managed Detection & Response), Offensive Security (penetration testing and red team operations), Security Advisory (CISO-as-a-Service, assessments, governance), and Incident Response (24/7 T-CERT). Its modular MDR platform integrates Microsoft XDR/Sentinel, SOAR, EDR, NDR, and the proprietary Immunity Network Access Control, covering endpoints, networks, cloud, identity, and applications. Specialized OT Resilience services target manufacturing, food, energy, and critical infrastructure sectors.
Product overview
Tesorion is a Dutch multidisciplinary cybersecurity company offering a comprehensive, modular portfolio of services organized around four core disciplines: Security Monitoring, Offensive Security, Security Advisory, and Incident Response. At the center of the offering are the T-SOC (Security Operations Center) and Managed Detection & Response (MDR), which integrate technologies including Microsoft XDR & Sentinel, SOAR, EDR, NDR, SIEM, and Security Log Monitoring to provide continuous 24/7 protection. The portfolio spans offensive security services (Pentest, Red Team, Social Engineering), advisory services (CISO-as-a-Service, Assessments, Governance, Crisissimulatie), and incident response (T-CERT). The Managed Security Services layer covers Immunity (NAC), Managed Firewall, Secure Remote Access, SASE, and Enterprise Browsers. Specialized verticals include OT Resilience for industrial environments and Identity Management services. All services can be combined and scaled through the modular MDR model to address specific risk profiles.
Differentiator
Problem solved
Functional benefit
Brands
- T-SOC: Tesorion Security Operations Center - 24/7 monitoring service for networks, applications, and endpoints
- T-CERT
- Immunity
- T-Talks
- WakeUp Wednesday
Products and services
- T-SOC (Tesorion Security Operations Center) 24/7 managed Security Operations Center service that monitors networks, cloud applications, identities, and endpoints for malicious behavior, forming the operational core of Tesorion's complete security portfolio for Dutch organizations.
- T-CERT (Tesorion Computer Emergency Response Team) 24/7 incident response service providing triage, digital forensic investigation, and hands-on incident handling to limit organizational damage from cyber incidents; reachable via dedicated hotline 088 27 47 800.
- Managed Detection & Response (MDR) 24/7 managed detection and response service combining XDR, SOAR, and threat intelligence to detect threats across endpoints, identities, networks, cloud, and data, with automated and human-led response.
- MDR Sentinel (Microsoft XDR & Sentinel) MDR service built natively on Microsoft XDR and Microsoft Sentinel, delivering 24/7 detection and response, continuous optimization, and threat intelligence across endpoints, identity, network, cloud, and data & apps.
- Endpoint Detection & Response (EDR) Continuous analysis of events on all endpoints with automated response to suspicious behavior, using machine learning and behavioral analysis to detect zero-day exploits and fileless attacks.
- Network Detection & Response (NDR) Monitoring and detection of malicious behavior and suspicious events at the network level, covering on-premise, hybrid, and cloud environments, using AI, machine learning, and behavioral analysis.
- Incident Response Rapid and efficient response to cyber incidents by T-CERT specialists to maintain business continuity, including digital forensics, threat intelligence, and forensic readiness.
- Pentest (Penetration Testing) Penetration testing service where ethical hackers manually and automatedly search for vulnerabilities in an organization's IT environment, available in black-box, grey-box, and white-box approaches.
- Red Team Realistic attack simulation using the same techniques and tactics as malicious actors to test the effectiveness of an organization's detection and response capabilities.
- Immunity (Network Access Control) Network Access Control combined with real-time asset discovery and automated detection and response, providing control over network access, insight into connected devices, and direct threat protection without agents; integrates with T-SOC.
- Managed Firewall Management, monitoring, and optimization of firewalls from all leading vendors, including configuration management, updates, monitoring, and incident handling.
- Secure Remote Access (SRA) Secure remote access solutions for IT and OT environments with strict access control, encryption, and role/context-based access.
- SASE (Secure Access Service Edge) Cloud-delivered solution combining network and security functionality, providing secure and controlled access to applications and data regardless of user location.
- Enterprise Browsers Security solution treating the browser as a secure workspace, using policies, isolation, and monitoring to reduce risks such as data leaks and malware, delivered in partnership with Google Security.
- SOAR (Security Orchestration, Automation & Response) Security Orchestration, Automation & Response platform serving as the central hub of the MDR service, normalizing, automating, and correlating detections from XDR domains.
- SIEM Security Information and Event Management platform that aggregates information from different systems to detect, analyze, and respond to threats before they cause damage.
- Security Log Monitoring (SLM) Continuous monitoring of identities, cloud, and business-critical applications for abnormal behavior and vulnerabilities.
- Threat Intelligence Threat and malware information service with researchers searching the deep and dark web daily for potential threats or information about customers.
- Intelligence Driven Protection (IDP) Service providing visibility into possible external threats to an organization by monitoring what data is shared on the clear, deep, and dark web.
- Vulnerability Management Ongoing service to help organizations address vulnerabilities and configuration errors to reduce cybersecurity risk.
- Security Behavior Security awareness training and phishing simulation services to help employees recognize and respond appropriately to potential threats.
- E-mail Security Service providing insight into threats targeting email and identifying which users within the organization are being targeted by email-related threats.
- CISO-as-a-Service Virtual CISO service providing organizations with an experienced information security leader, developed for organizations without a dedicated CISO.
- Assessments Security assessments providing insight into how existing measures meet organizational cybersecurity objectives, including risk analysis and NIS2 gap analysis.
- Crisis Simulation (Crisissimulatie) Crisis simulation tailored to an organization to provide insight into how it responds when a serious cybersecurity incident occurs.
- OT Resilience Specialized OT security service helping organizations in production environments (manufacturing, food, energy, critical infrastructure) achieve demonstrable resilience against cyber threats, covering insight, advice, design, implementation, monitoring, detection, response, and recovery.
Quantifiable outcome
- Minimal time between detection and response through integrated MDR platform
- +1 more outcomes
Companies that use Tesorion.nl
Customer profileNamed customers21 records
Segments5 records
Ideal customer profiles3 records
Tesorion.nl technology and API
TechnologyTechnology focussed Yes
API detail
- Has API
- No
- API docs
- API detail
Core technology
AI maturity
App detail
Integration13 records
AI capability10 records
Feature9 records
Tesorion.nl partnerships and signals
Strategic signalPartnerships
18 partnerships are on record, tiered core, flagship and minor.
- Horizon3.aicoreStrategic partnership where Tesorion offers Horizon3.ai's autonomous penetration testing solutions. Enables continuous, AI-powered red teaming assessments for Dutch organizations.
- Palo Alto NetworkscoreTechnology partnership for next-generation firewall, SASE, and OT security solutions. Provides network security infrastructure and segmentation services.
- BeyondTrustcorePartnership for Privileged Access Management (PAM) solutions. Powers Immunity NAC with secure remote access capabilities.
- BeyondTrustcoreTechnology partner for Immunity (NAC) solution providing controlled network access for IT and OT environments.
- MicrosoftflagshipT-Talks sponsor and technology partner for Microsoft XDR and Sentinel MDR solutions. Delivers MDR based on Microsoft security platform.
- GooglecoreT-Talks sponsor and partner for Google Security enterprise browser solutions and cloud security integrations.
- Vectra AIcorePartner for Vectra NDT (Network Detection) used in T-SOC and OT security monitoring. AI-powered network threat detection.
- Recorded FuturecoreDutch partner for Recorded Future threat intelligence platform. Integrates threat intelligence into MDR services.
- SentinelOnecoreT-Talks sponsor and endpoint security technology partner for EDR solutions.
- ProofpointcoreT-Talks sponsor and email security technology partner.
- QualyscorePartner for vulnerability management and asset discovery solutions in OT environments.
- KnowBe4coreT-Talks sponsor and security awareness training partner for security behavior programs.
- VerkadacoreDutch reseller of Verkada cloud-based security platform for camera security and access control in the Netherlands.
- VerkadacoreNederlandse reseller van Verkada en levert het volledige cloud-based securityplatform voor organisaties die op zoek zijn naar moderne camerabeveiliging, toegangscontrole en geïntegreerde fysieke beveiliging in Nederland.
- PassguardminorPartnership for secure password management and access control solutions in the Netherlands.
- CompumaticacorePartnership for MagiCtwin Data Diode enabling one-way data flow from OT to IT environments without feedback loop for critical infrastructure protection.
- Nassau420coreTask Force Hybrid Shield partnership for OT/IT crisis preparedness. Addresses hybrid threats combining OT, IT, human, and physical processes. Focus on crisis management, decision-making, and recovery capabilities.
- Google Cloud SecuritycorePartnership for enterprise browser security solutions through Google Security.
Scale indicators6 records
Recent moves6 records
Expansion highlights6 records
Tesorion.nl competitors and assessment
Company assessmentBroad incumbents
- Secureworks: Global MSSP offering managed detection and response, vulnerability management, and incident response to enterprise customers. Comparable services portfolio though operating at materially larger scale.
- NCC Group: Global cybersecurity services and software firm, parent of Fox-IT, with broad managed services, pen testing, and incident response capabilities. Comparable as a larger incumbent in the same services categories.
- Trellix (FireEye + McAfee Enterprise): Large cybersecurity vendor with managed services, EDR, and XDR offerings used by European enterprises and governments. Comparable adjacent positioning as a broader security platform with managed service capabilities.
Direct peers
- ON2IT: Dutch managed security services provider (MSSP/MDR) with a Zero Trust-oriented SOC. Comparable in MDR service model, Dutch origin, and enterprise customer focus.
- Fox-IT (NCC Group): Dutch-origin cybersecurity services firm (now part of NCC Group) offering managed SOC, incident response, and threat intelligence. Directly comparable in heritage, geography, and services mix to Tesorion.
- Hudson Cybertec: Dutch specialist in OT/ICS cybersecurity services, including assessments, monitoring, and incident response for industrial customers. Directly comparable in OT Resilience focus and Dutch critical-infrastructure footprint.
- Northwave: Dutch managed security services and incident response provider covering SOC, pen testing, and security advisory across the Benelux. Closest direct competitor in scale, geography, and portfolio breadth.
- Applied Risk: Netherlands-based OT/ICS security services firm focused on industrial cybersecurity assessments and managed services for critical infrastructure. Comparable in OT domain specialization and European customer base.
Emerging players
- eSentire: Global pure-play MDR provider offering 24/7 SOC, threat hunting, and incident response. Comparable in managed detection & response positioning and mid-market enterprise focus.
- Arctic Wolf: Global MDR/MSSP operating across North America and Europe with a subscription security operations model. Comparable managed services approach though operating at much larger scale and broader geographic scope.
Market position
Strengths5 records
Weaknesses4 records
Competitive moat5 records
Key risks6 records
Key highlights7 records
Customer concentration
Tesorion.nl social profiles
Digital presenceTesorion.nl compliance and trust
Trust signalCompliance6 records
Tesorion.nl financial estimates
Financial estimateRevenue estimate
Valuation estimate
Tesorion.nl leadership team
Management profileNumber of profiles
Profiles1 record
Tesorion.nl funding detail
Funding detailFunding overview
Funding rounds
Investors
Funding detail is available on the Subscription and Enterprise plan.Contact sales →
Tesorion.nl M&A and investment
M&A and investmentM&A
Investments
M&A and investment is available on the Subscription and Enterprise plan.Contact sales →
Frequently asked questions about Tesorion.nl
What does Tesorion.nl do?
Tesorion delivers multidisciplinary cybersecurity services to Dutch organizations through four pillars: Security Monitoring (24/7 T-SOC and Managed Detection & Response), Offensive Security (penetration testing and red team operations), Security Advisory (CISO-as-a-Service, assessments, governance), and Incident Response (24/7 T-CERT). Its modular MDR platform integrates Microsoft XDR/Sentinel, SOAR, EDR, NDR, and the proprietary Immunity Network Access Control, covering endpoints, networks, cloud, identity, and applications. Specialized OT Resilience services target manufacturing, food, energy, and critical infrastructure sectors.
Is Tesorion.nl a public or private company?
Tesorion.nl is a private company. It is classified as unknown and is currently operating.
When was Tesorion.nl founded?
Tesorion.nl was founded in 2011. It employs 11 to 50 people.
Where is Tesorion.nl based?
Tesorion.nl is headquartered in Leusden, Netherlands, in the Europe region.
How does Tesorion.nl make money?
Nine revenue lines are on record. Managed Detection & Response (MDR) is the primary driver. The others are incident Response Services, offensive Security Services, pentest Services, red Team Operations, network Detection and Response, security Consulting, immunity NAC Services and managed Security Services.
Who are Tesorion.nl's main competitors?
Broad incumbents on record are Secureworks, NCC Group and Trellix (FireEye + McAfee Enterprise). Direct peers are ON2IT, Fox-IT (NCC Group), Hudson Cybertec, Northwave and Applied Risk. Emerging players are eSentire and Arctic Wolf.
Does Tesorion.nl have an API?
No public API is recorded for Tesorion.nl.
What industry is Tesorion.nl in?
Tesorion.nl's product category is Managed Cybersecurity Services. Its primary akta.pro industry code is BPAKAHAN, OT/ICS & Critical Infrastructure Cybersecurity Services, with a secondary code of HDADAJAN, Managed OT Security Services (MSSP/MDR for ICS/OT). Its NAICS code is 56162 and its SIC code is 7370.