Critical Path Security
Critical Path Security is a US-based MSSP offering 24/7 Managed Detection and Response, penetration testing, DFARS/CMMC compliance, and incident response to enterprise, defense, critical infrastructure, maritime, and telecom clients, anchored by its proprietary Léargas multi-directional IDS and Zeek-based OT/ICS analytics.
- Company typePrivate
- Founded2017
- HeadquartersCanton, United States
- Headcount11–50
- GTM typeB2B
- OfferingServices
What Critical Path Security does
Critical Path Security is a US-headquartered cybersecurity firm founded in 2017, operating as a Managed Security Service Provider (MSSP) that delivers 24/7 Managed Detection and Response through a Managed Security Operation Center, alongside a broad professional services portfolio spanning penetration testing, vulnerability assessments, DFARS and compliance audits, incident response, forensic analysis, virtual CISO, maritime cyber security, and M&A cyber due diligence. The company serves mid-market and enterprise customers across government, defense, critical infrastructure (including electric membership cooperatives and rural telecom/broadband), maritime, and financial services, with offices in Atlanta, New York, New Jersey, Los Angeles, San Diego, Salt Lake City, and Toronto.
The firm's technical differentiator is the proprietary Léargas Security platform, a multi-directional IDS that correlates North-to-South and East-to-West network traffic through a common identifier and enriches Zeek-based network analysis with purpose-built OT/ICS protocol analyzers (Modbus, DNP3, ENIP/CIP, S7Comm, BACnet, Profinet). Its Zeek Intelligence Network integrates Abuse.ch data (MalwareBazaar, Feodo Tracker, SSL Blacklist, URLhaus) to deliver near-real-time malware indicators, and a Multi-modal Command Processor applies AI-driven summarization and scoring to Zeek output for SOAR ticketing and executive reporting. The firm holds CISSP, CEH, CompTIA Security+, and C3PAO credentials and maintains an active open-source presence in the Zeek community.
Critical Path Security monetizes through managed services subscriptions (MDR, Managed Zeek IDS), quote-based enterprise consulting engagements, and recurring threat intelligence products such as the Monthly Threat Brief. Go-to-market combines direct enterprise sales, a Global Partner Program, and brand-building via motorsports sponsorship of NASCAR driver Ryan Vargas. Léargas Security operates as a wholly-owned technology subsidiary, and the firm is founder-led by Patrick Kelley (CEO) with Rick Hudson as CTO, appearing privately held with no disclosed institutional capital.
Critical Path Security firmographics
Firmographics- Name
- Critical Path Security
- Legal name
- Critical Path Security, LLC
- Website
- https://criticalpathsecurity.com
- Company type
- Private
- Founded year
- 2017
- Operating status
- Operating
- Headcount range
- 11–50 employees
- Short description
- Critical Path Security is a US-based MSSP offering 24/7 Managed Detection and Response, penetration testing, DFARS/CMMC compliance, and incident response to enterprise, defense, critical infrastructure, maritime, and telecom clients, anchored by its proprietary Léargas multi-directional IDS and Zeek-based OT/ICS analytics.
- Ownership category
- akta.pro rank
Critical Path Security industry classification
Industry- Product category
- Cybersecurity Services
- NAICS
- Computer Systems Design and Related Services (5415), Security Systems Services (except Locksmiths) (561621), Computer Facilities Management Services (541513)
- SIC
- Services-Computer Integrated Systems Design (7373)
- akta.pro primary industry
- Managed Security Services (MSSP) & 24/7 SOC Operations (BPAKAHAA)
- akta.pro secondary industry
- Critical Infrastructure Protection (CIP) & NERC-CIP Compliance (HDADAJAC)
Keywords
Where Critical Path Security is headquartered
LocationHeadquarters
- HQ city
- Canton
- HQ country
- United States
- HQ region
- North America
Offices7 records
Markets served
Critical Path Security business model
Business model- GTM type
- B2B
- Offering type
- Services
- Cost components
- Personnel, Technology or R&D, Marketing or Sales, Operations
Revenue model
- Managed Detection and Response (MDR): 24/7 security monitoring through Managed Security Operation Center (MSOC) providing continuous network surveillance, threat detection, and incident response capabilities.
- Professional Services: Consulting engagements including penetration testing, vulnerability assessments, DFARS compliance audits, forensic analysis, incident response, security awareness training, and Virtual CISO services.
- Compliance Audits: Regulatory compliance assessment services including DFARS and other security compliance frameworks.
Go-to-market motion3 records
Distribution channels3 records
Marketing channels6 records
Critical Path Security product offering
Product offeringCore offering
Critical Path Security is a Managed Security Service Provider (MSSP) delivering managed detection and response, penetration testing, vulnerability assessments, incident response, DFARS/compliance audits, and virtual CISO services. Its core differentiator is the proprietary Léargas multi-directional IDS platform, built on Zeek and enriched with OT/ICS protocol analyzers and integrated Abuse.ch threat intelligence feeds, to provide 24/7 network monitoring and complete traffic visibility for enterprise and critical infrastructure clients.
Product overview
Critical Path Security operates as a cybersecurity services firm offering a portfolio of managed security services and professional consulting. Its core managed services include Managed Detection and Response (MDR) backed by a Managed SOC, and the proprietary Léargas Security platform — a multi-directional IDS that correlates North-to-South and East-to-West traffic using Zeek and purpose-built OT/ICS detections. The portfolio also includes the Managed Zeek-IDS family (Zeek Intelligence Network, Zeek-IDS Professional Services) for organizations requiring deep protocol visibility. Professional services span penetration testing, vulnerability assessment, incident response, forensic analysis, compliance audits, vCISO, and sector-specific offerings (Maritime Cyber Security, DFARS Regulatory Security, M&A Support). The company publishes a Monthly Threat Brief for clients and the broader community.
Differentiator
Problem solved
Functional benefit
Brands
- Léargas: A new breed of multi-directional IDS with the ability to see traffic moving North-to-South and East-to-West, gluing traffic together with a common identifier to create a complete view of network traffic.
Products and services
- Managed Detection and Response (MDR) 24/7 Managed Security Operation Center service providing continuous monitoring of client networks for dangerous traffic and suspicious activity, designed to reduce cyber security risks and attack dwell time for enterprise and critical infrastructure clients.
- Léargas Security Proprietary multi-directional IDS platform that monitors North-to-South and East-to-West network traffic, correlates traffic flows using a common identifier, and enriches Zeek output with purpose-built OT/ICS detections to provide complete network traffic visibility.
- Managed Zeek – IDS Managed Zeek-based Intrusion Detection System service covering deployment, protocol analyzers, the Zeek Intelligence Network, and professional consulting, with OT/ICS analyzers for Modbus, DNP3, ENIP/CIP, S7Comm, BACnet, and Profinet.
- Vulnerability Assessment Identifies cybersecurity risks facing a business and evaluates currently deployed security technologies and procedures to proactively protect vital data, systems, and infrastructure.
- Penetration Testing Controlled security testing that attempts to breach client infrastructure to expose critical vulnerabilities and validate whether people, processes, and technology are effectively protected.
- Incident Response Incident response service following the SANS Institute-recommended process to prevent further damage, with capabilities spanning forensic analysis, containment, and recovery.
- Forensic Analysis Digital forensics and analysis capabilities to investigate security incidents, determine root cause, and support incident recovery and legal proceedings.
- Compliance Audits Security and compliance assessment services to identify weaknesses, evaluate controls, and improve overall security posture in alignment with regulatory requirements.
- DFARS Regulatory Security Services Specialized compliance and security services addressing Defense Federal Acquisition Regulation Supplement requirements for DoD contractors and supply chain security, leveraging the firm's C3PAO qualification for CMMC assessments.
- Virtual CISO (vCISO) On-demand access to seasoned security executives who develop, implement, and manage client information security strategies, addressing the cybersecurity skills shortage for organizations without a full-time CISO.
- Maritime Cyber Security Cybersecurity services tailored for maritime and naval environments, protecting vessel systems, navigation, communications, and port infrastructure from cyber threats.
- Merger & Acquisition Support Cybersecurity due diligence and assessment services supporting M&A transactions, evaluating target company security posture, vulnerabilities, and compliance exposure.
- High Profile Protection Protective security services for high-profile individuals, executives, or assets requiring enhanced physical and information security measures.
- Security Awareness Training Employee cybersecurity training programs to build awareness of threats such as phishing, social engineering, and secure remote work practices.
- Monthly Threat Brief Recurring threat intelligence briefing providing visibility into the evolving cyber and physical threat landscape affecting critical infrastructure, enterprise networks, and OT environments, covering geopolitical developments, emerging vulnerabilities, adversary activity, and operational security observations.
Quantifiable outcome
- Visibility across entire network traffic including North-to-South and East-to-West flows
Companies that use Critical Path Security
Customer profileNamed customers4 records
Segments6 records
Ideal customer profiles6 records
Critical Path Security technology and API
TechnologyTechnology focussed Yes
API detail
- Has API
- No
- API docs
- API detail
Core technology
AI maturity
App detail
Integration5 records
AI capability7 records
Feature5 records
Critical Path Security partnerships and signals
Strategic signalPartnerships
Six partnerships are on record, tiered core, minor and flagship.
- CRISP (CISA)corePatrick Kelley and Jared Haviland led technical sessions at CRISP Autumn Training in Boston 2025 on OT/ICS security using Zeek and Léargas. CRISP (Cybersecurity and Infrastructure Security Agency) collaboration for operational technology security training and awareness.
- Consensus 2025 / CoinDeskminorPatrick Kelley attended Consensus 2025 in Toronto, Ontario as an attendee to assess blockchain and digital identity security trends. Not a formal sponsor but active participation to remain at forefront of cybersecurity trends where blockchain and threat intelligence converge.
- Ryan Vargas (NASCAR Driver)flagshipFull-season sponsorship in NASCAR Whelen Euro Series with Ryan Vargas piloting the No. 30 Critical Path Security Chevrolet Camaro. Expanded from multi-race sponsorship in 2023 to full-season 2024. Also includes NASCAR Craftsman Truck Series and eNASCAR International Series. Marketing partnership focused on brand visibility and the shared mindset between cybersecurity and racing.
- Abuse.ch (MalwareBazaar)coreIntegration partnership bringing Abuse.ch threat intelligence data into Critical Path Security's Zeek-formatted feeds. Abuse.ch operates approximately 50 servers and 200 sandboxes generating over 130TB monthly traffic and handling 2 million API requests daily. Partnership provides real-time malware indicators for network detection.
- Léargas SecuritycorePatrick Kelley co-founded Léargas Security as a separate entity offering multi-directional IDS technology. Critical Path Security is a distribution and implementation partner for the Léargas platform while both companies share leadership under Patrick Kelley.
- Zeek CommunitycoreCritical Path Security contributes to the Zeek (formerly Bro) open-source IDS project, providing managed Zeek-IDS services, custom detections, protocol analyzers, and Zeek-formatted threat intelligence feeds available on GitHub.
Scale indicators3 records
Recent moves7 records
Expansion highlights6 records
Critical Path Security competitors and assessment
Company assessmentDirect peers
- Expel: Cloud-native MDR provider delivering transparent 24/7 SOC monitoring, threat detection, and response; comparable managed security services and enterprise buyer overlap with Critical Path Security.
- eSentire: Managed detection and response and 24/7 SOC provider focused on mid-market and enterprise, with threat hunting and incident response capabilities that overlap closely with Critical Path's MSOC offering.
- Arctic Wolf: Large MSSP offering 24/7 managed detection and response, security operations and concierge security delivery to mid-market and enterprise customers; directly comparable MDR/SOC model to Critical Path Security.
- ReliaQuest: Enterprise security operations provider combining managed detection and response with its GreyMatter platform; comparable enterprise-tier MSSP/MDR positioning to Critical Path.
- Claroty: OT/ICS and healthcare IoT security platform offering network protection, vulnerability management, and threat detection for critical infrastructure; competes directly with L\u00e9argas for OT visibility mandates.
- Corelight: Commercial Zeek-based network detection and response platform with threat intelligence and analytics; competes with Critical Path's Managed Zeek IDS and L\u00e9argas Zeek-formatted feeds at the platform layer.
- Dragos: OT/ICS cybersecurity specialist providing network monitoring, incident response, and threat intelligence for industrial environments; the closest peer to Critical Path's L\u00e9argas OT/ICS protocol analyzer focus.
- Deepwatch: MSSP focused on managed detection and response, vulnerability management and cloud security for mid-market and enterprise; overlapping SOC-as-a-service offering with Critical Path Security.
Broad incumbents
- Mandiant (Google Cloud): Incident response, managed defense and threat intelligence powerhouse now under Google Cloud; overlaps with Critical Path's incident response, forensic analysis and DFARS advisory services for large enterprises.
- CrowdStrike: Endpoint and cloud workload protection leader with Falcon platform MDR, threat intelligence and OT visibility modules; broader incumbent that competes for the same enterprise wallet as Critical Path's MDR services.
Market position
Strengths5 records
Weaknesses2 records
Competitive moat5 records
Key risks5 records
Key highlights7 records
Customer concentration
Critical Path Security social profiles
Digital presenceCritical Path Security compliance and trust
Trust signalCompliance4 records
Critical Path Security financial estimates
Financial estimateRevenue estimate
Valuation estimate
Critical Path Security leadership team
Management profileNumber of profiles
Profiles5 records
Critical Path Security subsidiaries and ownership
Company hierarchySubsidiaries1 record
Critical Path Security funding detail
Funding detailFunding overview
Funding rounds
Investors
Funding detail is available on the Subscription and Enterprise plan.Contact sales →
Critical Path Security M&A and investment
M&A and investmentM&A
Investments
M&A and investment is available on the Subscription and Enterprise plan.Contact sales →
Frequently asked questions about Critical Path Security
What does Critical Path Security do?
Critical Path Security is a Managed Security Service Provider (MSSP) delivering managed detection and response, penetration testing, vulnerability assessments, incident response, DFARS/compliance audits, and virtual CISO services. Its core differentiator is the proprietary Léargas multi-directional IDS platform, built on Zeek and enriched with OT/ICS protocol analyzers and integrated Abuse.ch threat intelligence feeds, to provide 24/7 network monitoring and complete traffic visibility for enterprise and critical infrastructure clients.
Is Critical Path Security a public or private company?
Critical Path Security is a private company. It is classified as founder individual operated bootstrapped and is currently operating.
When was Critical Path Security founded?
Critical Path Security was founded in 2017. It employs 11 to 50 people.
Where is Critical Path Security based?
Critical Path Security is headquartered in Canton, United States, in the North America region.
How does Critical Path Security make money?
Three revenue lines are on record. Managed Detection and Response (MDR) is the primary driver. The others are professional Services and compliance Audits.
Who are Critical Path Security's main competitors?
Direct peers on record are Expel, eSentire, Arctic Wolf, ReliaQuest, Claroty, Corelight, Dragos and Deepwatch. Broad incumbents are Mandiant (Google Cloud) and CrowdStrike.
Does Critical Path Security have an API?
No public API is recorded for Critical Path Security.
What industry is Critical Path Security in?
Critical Path Security's product category is Cybersecurity Services. Its primary akta.pro industry code is BPAKAHAA, Managed Security Services (MSSP) & 24/7 SOC Operations, with a secondary code of HDADAJAC, Critical Infrastructure Protection (CIP) & NERC-CIP Compliance. Its NAICS code is 5415 and its SIC code is 7373.