Threat Intelligence
Threat Intelligence is a Sydney-based cybersecurity firm operating the Evolve security automation platform, which unifies nine automated security capabilities for enterprise, government, and mid-market customers across ANZ and globally.
- Company typePrivate
- Founded2015
- HeadquartersSydney, Australia
- Headcount11–50
- GTM typeB2B
- OfferingSoftware
What Threat Intelligence does
Threat Intelligence is a Sydney-based cybersecurity company operating under the Evolve brand, founded in 2015 and employing 11-50 people. The company provides a unified security automation platform (Evolve) that consolidates nine integrated security capabilities — automated penetration testing, extended detection and response, incident response, supply chain monitoring, application security testing, DNS sinkholing, cyber threat intelligence, leaked password monitoring, and dark web monitoring — into a single cloud-delivered system that automates reconnaissance, exploitation, evidence collection, and breach containment workflows. The platform is positioned as a next-generation SOAR architecture with measurable performance advantages including 13-minute automated SIEM/EDR orchestration, 10-minute automated IR evidence collection, and 90% response time reduction.
The company generates revenue through three streams: monthly platform subscriptions (tiered by host count, data volume, or monitored domains), managed security services combining automation with human SOC analysts, and professional services including CREST-accredited penetration testing, incident response retainers, and GRC consulting. Its go-to-market combines direct enterprise field sales with a global partner program spanning resellers such as Logicalis, and channel-led delivery into mid-market accounts. The company operates globally through partner channels but concentrates direct delivery and headquarters operations in Sydney.
Threat Intelligence serves enterprise and government customers across healthcare, financial services, government, education, retail, energy/utilities, and technology, with named accounts including Symbion, GT Law, Monash University, Rokt, Burger King, Boral, Queensland Government, NSW Government, Victoria State Government, AusNet, Transgrid, CMC Markets, Mecca Brands, and Lenovo. Leadership and technical staff hold positions on the CREST Australia/New Zealand Board of Directors, the Black Hat Asia Review Board, and contribute to OWASP standards, providing regulatory and reputational standing in the APAC cybersecurity market. The company is privately held with no disclosed external funding.
Threat Intelligence firmographics
Firmographics- Name
- Threat Intelligence
- Legal name
- Threat Intelligence Pty Ltd
- Website
- https://threatintelligence.com
- Company type
- Private
- Founded year
- 2015
- Operating status
- Operating
- Headcount range
- 11–50 employees
- Short description
- Threat Intelligence is a Sydney-based cybersecurity firm operating the Evolve security automation platform, which unifies nine automated security capabilities for enterprise, government, and mid-market customers across ANZ and globally.
- Ownership category
- akta.pro rank
Threat Intelligence industry classification
Industry- Product category
- Cybersecurity Security Automation Platform
- NAICS
- Software Publishers (5132), Computer Systems Design and Related Services (5415), Security Systems Services (56162), Other Computer Related Services (541519)
- SIC
- Services-Prepackaged Software (7372), Services-Computer Integrated Systems Design (7373), Services-Computer Programming, Data Processing, Etc. (7370)
- akta.pro primary industry
- SOAR & Security Automation (HDADAGAB)
- akta.pro secondary industries
- Endpoint Security Managed Services (EDR/XDR) (BPAEADAH), Vulnerability Management & Penetration Testing Services (BPAEADAD), Threat Intelligence Services (BPAEADAC), Vulnerability Assessment, Security Audits & Compliance Testing (BPAKAHAG)
Keywords
Where Threat Intelligence is headquartered
LocationHeadquarters
- HQ city
- Sydney
- HQ country
- Australia
- HQ region
- Oceania
Offices1 record
Markets served
Threat Intelligence business model
Business model- GTM type
- B2B
- Offering type
- Software
- Cost components
- Personnel, Technology or R&D, Marketing or Sales, Operations, Infrastructure
Revenue model
- Security Automation Platform Subscriptions: Evolve platform subscription-based model providing access to security automation tools including EvolvePT, EvolveXDR, EvolveIR, EvolveSC, EvolveAST, EvolveCTI, EvolveID, EvolveDNS, and EvolveDW. License tiers based on number of hosts or data volume (GB per day for XDR). Provides continuous IT protection with real people support and expert insights.
- Managed Security Services (MDR): Managed Detection and Response services combining experienced security specialists with Evolve Security Automation. Includes Security Team Augmentation, Managed SIEM with MDR, Managed Vulnerability Scanning, Managed Incident Response Retainer, Managed Automated Penetration Testing, Managed DevOps App Security Testing, Managed Supply Chain Monitoring, Managed Cyber Threat Intelligence, Managed DNS Sinkhole, and Managed SOAR.
- Professional Cybersecurity Services: On-demand professional services including penetration testing (web app, red team, external/internal, mobile app and API, PCI, IoT), incident response and digital forensic investigations, and GRC services (Essential 8, ISO Standards, NIST, GDPR, HIPAA, PCI-DSS, Cyber Security Health Checks, Virtual Security Office, Cyber Security Strategy Roadmap, Third Party Security Assessments).
Pricing tiers
| Model | Billing | Price |
|---|---|---|
| Subscription | Monthly | EvolvePT license tiers based on host count |
| Subscription | Monthly | EvolveXDR tiers based on data volume and retention |
| Subscription | Monthly | EvolveID domain monitoring subscriptions |
Go-to-market motion3 records
Distribution channels5 records
Marketing channels8 records
Threat Intelligence product offering
Product offeringCore offering
Threat Intelligence sells the Evolve Security Automation Cloud, a SOAR-based cybersecurity platform unifying automated penetration testing, XDR, incident response, supply chain monitoring, application security testing, DNS sinkhole, cyber threat intelligence, leaked password monitoring, and dark web monitoring. It complements the platform with managed security services (MDR, managed SIEM, managed SOAR) and professional services (penetration testing, incident response, GRC consulting) delivered by CREST-certified consultants.
Product overview
Threat Intelligence offers the Evolve Security Automation platform, a comprehensive cybersecurity platform that unifies multiple security capabilities. The platform consists of nine integrated products: EvolvePT (automated penetration testing), EvolveSC (supply chain monitoring), EvolveXDR (extended detection and response combining SIEM and EDR), EvolveAST (application security testing), EvolveIR (incident response automation), EvolveDNS (DNS sinkhole), EvolveCTI (cyber threat intelligence), EvolveID (leaked password monitoring), and EvolveDW (dark web monitoring). These products share a common automation engine and can be deployed individually or as an integrated suite, with optional managed security services and professional services including penetration testing, incident response, and GRC consulting.
Differentiator
Problem solved
Functional benefit
Brands
- Evolve Security Automation: The company's flagship security automation cloud platform providing integrated cybersecurity solutions including penetration testing, XDR, incident response, and threat intelligence.
- EvolvePT
- EvolveXDR
- EvolveIR
- EvolveSC
- EvolveAST
- EvolveDNS
- EvolveCTI
- EvolveID
- EvolveDW
Products and services
- EvolvePT Automated Penetration Testing
Quantifiable outcome
- 80% cost savings with 12x more coverage compared to traditional vulnerability management
- +4 more outcomes
Companies that use Threat Intelligence
Customer profileNamed customers16 records
Segments5 records
Ideal customer profiles5 records
Threat Intelligence technology and API
TechnologyTechnology focussed Yes
API detail
- Has API
- Yes
- API docs
- API detail
Core technology
AI maturity
App detail
Integration3 records
AI capability6 records
Feature9 records
Threat Intelligence partnerships and signals
Strategic signalPartnerships
Ten partnerships are on record, tiered minor and core.
- 2t securityminorListed as a partner in the Evolve Global Partner Program. Partners gain access to edge security automation capabilities and 24*7 support from Threat Intelligence's expert security team.
- athena dynamicsminorListed as a partner in the Evolve Global Partner Program. Enables athena dynamics to deliver cutting-edge security automation to their customers.
- logicaliscoreListed as a partner in the Evolve Global Partner Program. logicalis is a global technology services provider that can integrate Evolve security automation into their managed services offerings.
- matriumminorListed as a partner in the Evolve Global Partner Program. Partners gain access to security automation capabilities for delivering to end customers.
- OlympusminorListed as a partner in the Evolve Global Partner Program. Partners gain access to edge security automation capabilities and ongoing support.
- Silo City Information TechnologyminorListed as a partner in the Evolve Global Partner Program. Enables delivery of security automation capabilities to customers.
- viaminorListed as a partner in the Evolve Global Partner Program. Partners gain access to security automation capabilities.
- CREST Australia and New ZealandcoreTeam members hold positions on the Board of Directors of CREST Australia and New Zealand and lead the CREST Technical Team. Selected to conduct and manage penetration testing examinations for the Australian Government. CREST is the international not-for-profit accreditation body for technical security testers.
- Black HatcoreThreat Intelligence has extensive experience in longest running training course at Black Hat USA and position on Black Hat Asia Review Board. Trainers renowned for expertise in most recent threats and cutting-edge techniques to combat them. Company contributes to global security methodologies.
- OWASPcoreThreat Intelligence contributes to development of global security methodologies, standards, and libraries incorporated into industry-specific security regulations of the Open Web Application Security Project (OWASP).
Scale indicators8 records
Recent moves6 records
Expansion highlights6 records
Threat Intelligence competitors and assessment
Company assessmentBroad incumbents
- Splunk: Splunk is the category leader in SIEM with Splunk SOAR (formerly Phantom) for security orchestration and automation. Comparable to Threat Intelligence's SIEM/SOAR capability within EvolveXDR and EvolveIR.
- CrowdStrike: CrowdStrike Falcon is a broad endpoint, XDR, identity, and cloud security platform with Charlotte AI-driven automation. Competes with Threat Intelligence across XDR, IR, and CTI but at much larger scale and with a unified agent architecture.
- Palo Alto Networks: Palo Alto Networks offers Cortex XSIAM/XSOAR for SIEM, SOAR, and XDR alongside Prisma Cloud and Unit 42 IR services. Overlaps heavily with Threat Intelligence's SOAR, XDR, and IR positioning as a broad incumbent in the same enterprise security stack.
- Secureworks: Secureworks combines MDR, vulnerability management, IR, and CTI services for global enterprises. Directly comparable to Threat Intelligence's MDR (EvolveMDR), PT, IR, and CTI services portfolio.
Direct peers
- D3 Security: D3 Security is an independent SOAR platform focused on security automation for incident response and threat intelligence use cases. Closely comparable to Evolve's SOAR foundation and incident response automation (EvolveIR).
- Swimlane: Swimlane is a leading independent SOAR platform offering security automation for incident response, threat intelligence, and vulnerability management workflows. Directly comparable to Threat Intelligence's Evolve platform in unifying multiple security capabilities through automation.
- Tines: Tines is a no-code security automation platform used by enterprises to automate manual security workflows, including IR, phishing response, and SOAR use cases. Comparable to Threat Intelligence's automation-first approach across the Evolve product family.
- Rapid7: Rapid7 offers vulnerability management, penetration testing services (Metasploit), SIEM, and managed detection and response. Highly comparable to Threat Intelligence's combined PT (EvolvePT), vulnerability management, XDR, and MDR offerings.
- Tenable: Tenable is a leader in vulnerability management and exposure management (Nessus, Tenable One ASM). Comparable to Threat Intelligence's EvolvePT automated penetration testing and continuous vulnerability validation capabilities.
Emerging players
- HackerOne: HackerOne operates a bug bounty and continuous penetration testing platform focused on offensive security testing. Comparable to Threat Intelligence's EvolvePT automated penetration testing and human-led PT services, particularly for customers seeking continuous, real-world attack simulation.
Market position
Strengths5 records
Weaknesses4 records
Competitive moat6 records
Key risks5 records
Key highlights7 records
Customer concentration
Threat Intelligence social profiles
Digital presenceThreat Intelligence compliance and trust
Trust signalCompliance8 records
Threat Intelligence financial estimates
Financial estimateRevenue estimate
Valuation estimate
Threat Intelligence leadership team
Management profileNumber of profiles
Profiles6 records
Threat Intelligence funding detail
Funding detailFunding overview
Funding rounds
Investors
Funding detail is available on the Subscription and Enterprise plan.Contact sales →
Threat Intelligence M&A and investment
M&A and investmentM&A
Investments
M&A and investment is available on the Subscription and Enterprise plan.Contact sales →
Frequently asked questions about Threat Intelligence
What does Threat Intelligence do?
Threat Intelligence sells the Evolve Security Automation Cloud, a SOAR-based cybersecurity platform unifying automated penetration testing, XDR, incident response, supply chain monitoring, application security testing, DNS sinkhole, cyber threat intelligence, leaked password monitoring, and dark web monitoring. It complements the platform with managed security services (MDR, managed SIEM, managed SOAR) and professional services (penetration testing, incident response, GRC consulting) delivered by CREST-certified consultants.
Is Threat Intelligence a public or private company?
Threat Intelligence is a private company. It is classified as founder individual operated bootstrapped and is currently operating.
When was Threat Intelligence founded?
Threat Intelligence was founded in 2015. It employs 11 to 50 people.
Where is Threat Intelligence based?
Threat Intelligence is headquartered in Sydney, Australia, in the Oceania region.
How does Threat Intelligence make money?
Three revenue lines are on record. Security Automation Platform Subscriptions are the primary driver. The others are managed Security Services (MDR) and professional Cybersecurity Services.
Who are Threat Intelligence's main competitors?
Broad incumbents on record are Splunk, CrowdStrike, Palo Alto Networks and Secureworks. Direct peers are D3 Security, Swimlane, Tines, Rapid7 and Tenable. HackerOne is listed as an emerging player.
Does Threat Intelligence have an API?
Yes. EvolveXDR integrates with third-party data sources and technologies through pre-built out of the box APIs. EvolveID includes API integration as a feature for compromised account search. The platform offers API integration capabilities to build custom workflows.
What industry is Threat Intelligence in?
Threat Intelligence's product category is Cybersecurity Security Automation Platform. Its primary akta.pro industry code is HDADAGAB, SOAR & Security Automation, with a secondary code of BPAEADAH, Endpoint Security Managed Services (EDR/XDR). Its NAICS code is 5132 and its SIC code is 7372.