Digitemis
French cybersecurity consultancy delivering offensive security testing, governance/compliance advisory and RGPD data protection services to enterprise and public-sector clients. PASSI LPM qualified by ANSSI with CNIL label, serving 650+ clients from offices in Vendée, Nantes, Paris and Angers.
- Company typePrivate
- Founded2014
- HeadquartersLa Merlatière, France
- Headcount11–50
- GTM typeB2B
- OfferingServices
What Digitemis does
Digitemis is a French cybersecurity consulting firm founded in 2014 and headquartered in Vendée, France, with additional offices in Nantes, Paris, and Angers. The firm delivers an integrated portfolio spanning three pillars: offensive security (external, internal, web, and mobile penetration testing, Red Team operations, IBM i/AS400 mainframe security auditing, and social-engineering campaigns), governance & compliance (security diagnostics, ISO 27001, HDS, DORA, NIS2, CRA, AI Act compliance, PSSI policies, and third-party risk management), and RGPD data protection (GDPR audits, Privacy by Design, DPIA, external DPO services). The company is qualified PASSI LPM by ANSSI at the elevated level across all five audit scopes (including for Defense Code-regulated environments), labeled by CNIL for data protection, certified Qualiopi for training, and listed on the UGAP public-procurement marketplace. Notable client logos include EDF, MAIF, Vinci, Suez, SNCF, and Sodebo, with a stated base of over 650 clients spanning enterprise, mid-market, public sector, defense, and healthcare segments.
The underlying technology stack is services-led rather than platform-led. The proprietary capability of consequence is the RedDive research laboratory, created in 2015, which reproduces advanced threat-actor techniques in controlled environments and publishes tooling or conference research; this laboratory underwrites the firm's offensive security credibility and feeds penetration testing methodologies. Internally, the firm uses a standard B2B sales stack including Pipedrive CRM and supports its sales motion with content marketing (blog, monthly newsletter, webinars, white papers, checklists). The supporting brand Digitemis Academy provides Qualiopi-certified cybersecurity and RGPD training delivered in-person or remotely.
Digitemis is structured as a SAS (Société par Actions Simplifiée) with €50,000 share capital, is entirely founder/management owned with no identified institutional investors or M&A activity, and operates as a wholly independent private company. The commercial model is professional-services based: engagements are sold via direct sales (Account Executives, Business Developers) and inside-sales (SDR) motions, executed through tenders and complex sales cycles, and priced as project-based or multi-year retainer contracts. Multi-year managed CISO/DPO engagements and the UGAP channel provide recurring revenue, while training, audits, and incident-response engagements supply project-based revenue. Pricing is quote-driven and not publicly disclosed.
Digitemis firmographics
Firmographics- Name
- Digitemis
- Legal name
- SAS DIGITEMIS
- Website
- https://digitemis.com
- Company type
- Private
- Founded year
- 2014
- Operating status
- Operating
- Headcount range
- 11–50 employees
- Short description
- French cybersecurity consultancy delivering offensive security testing, governance/compliance advisory and RGPD data protection services to enterprise and public-sector clients. PASSI LPM qualified by ANSSI with CNIL label, serving 650+ clients from offices in Vendée, Nantes, Paris and Angers.
- Ownership category
- akta.pro rank
Digitemis industry classification
Industry- Product category
- Cybersecurity Consulting Services
- NAICS
- Other Computer Related Services (541519), Computer Systems Design and Related Services (5415)
- SIC
- Services-Computer Programming, Data Processing, Etc. (7370)
- akta.pro primary industry
- Vulnerability Management & Penetration Testing Services (BPAEADAD)
- akta.pro secondary industries
- Security Audits & Compliance (ISO 27001, SOC 2, PCI DSS, HIPAA, SOX) (BPAKADAC), Cybersecurity & Identity Consulting (BPAHAEAG), Cybersecurity Technical Skills (Security Engineering, SOC, Pen Testing) (EDABAFAF)
Keywords
Where Digitemis is headquartered
LocationHeadquarters
- HQ city
- La Merlatière
- HQ country
- France
- HQ region
- Europe
Offices5 records
Markets served
Digitemis business model
Business model- GTM type
- B2B
- Offering type
- Services
- Cost components
- Personnel, Operations, Technology or R&D, Marketing or Sales, Others
Revenue model
- Professional Cybersecurity Services: Consulting engagements including penetration testing, security audits, compliance assessments (RGPD, ISO 27001, NIS2, DORA), RSSI external/CISO as a service, and managed cyber services. Billed as project-based or retainer contracts.
- Training Services: Cybersecurity and RGPD training catalog certified Qualiopi, adapted for technical and business profiles, delivered in-person or remotely.
Pricing tiers
| Model | Billing | Price |
|---|---|---|
| Other | Multi-year contract | Professional services engagement |
Go-to-market motion3 records
Distribution channels3 records
Marketing channels5 records
Digitemis product offering
Product offeringCore offering
Digitemis is a unified cybersecurity consulting firm delivering integrated security services through three practice areas: offensive security (external, internal, web and mobile penetration testing, red team operations, mainframe/IBM i testing, social engineering campaigns), governance and compliance (security audits, ISO 27001 readiness, DORA/NIS2/AI Act compliance, third-party risk management), and data protection (RGPD audits, Privacy by Design, external DPO). The firm combines pentesters, GRC consultants, and legal jurists in cross-functional teams, with additional managed CISO/RSSI services, continuity and crisis management, and Qualiopi-certified training through Digitemis Academy.
Product overview
Digitemis is a unified cybersecurity consulting and advisory firm offering an integrated portfolio of security services organized around three pillars: offensive security (penetration testing, Red Team operations, social engineering, mainframe security), governance & compliance (risk analysis, regulatory compliance including DORA/NIS2/AI Act, strategy and governance, managed CISO services), and data protection (GDPR audits, Privacy by Design, external DPO). The offering is delivered through cross-functional teams combining pentesters, GRC consultants, and legal experts. Supporting offerings include Digitemis Academy (certified training), RedDive (internal research laboratory), and specialized checklists. The company operates from offices in Vendée, Nantes, Paris, and Angers.
Differentiator
Problem solved
Functional benefit
Brands
- RedDive: Internal offensive security research laboratory created in 2015, dedicated to reproducing advanced attack techniques and tooling to anticipate threats before they reach client systems.
- Digitemis Academy
Products and services
- Sécurité offensive (Pentests) Offensive security services including external and internal penetration testing, web and mobile application testing, Red Team operations, IBM i/AS400 mainframe testing, and social engineering campaigns (phishing, vishing, smishing). Delivered by qualified pentesters.
- Audits boîte blanche White-box security audits including source code review and security configuration analysis to identify vulnerabilities in applications and infrastructure.
- Gouvernance & conformité Security governance and compliance services covering security audits and diagnostics, risk analysis, organizational audits, ISO 27001 certification readiness, DORA, NIS2, AI Act compliance, cybersecurity strategy, PSSI policies, security assurance plans (PAS), and third-party risk management (TPRM).
- Services managés & RSSI externalisé Managed cybersecurity services including a cyber service center, CISO support and coaching, and fully externalized CISO (RSSI as a service) functions.
- Continuité & crise Business continuity and crisis management services including BCP/DRP (PRA / PCA) development, cyber crisis response planning, and crisis management training.
- Protection des données (RGPD) GDPR compliance services including data protection audits for information systems, websites, and software; Privacy by Design implementation; Data Protection Impact Assessments (DPIA / AIPD); processing mapping; CNIL control simulations; and external DPO services.
- Digitemis Academy Qualiopi-certified cybersecurity and RGPD training catalog adapted for technical and business profiles, delivered in-person or remotely, including GDPR awareness and cybersecurity crisis management training.
Quantifiable outcome
- Supporting 650+ clients across public and private sectors including sensitive defense, banking and aeronautic clients
Companies that use Digitemis
Customer profileNamed customers6 records
Segments6 records
Ideal customer profiles4 records
Digitemis technology and API
TechnologyTechnology focussed No
API detail
- Has API
- No
- API docs
- API detail
Core technology
AI maturity
App detail
Feature1 record
Digitemis partnerships and signals
Strategic signalScale indicators3 records
Recent moves7 records
Expansion highlights6 records
Digitemis competitors and assessment
Company assessmentDirect peers
- Wavestone: French-headquartered consultancy with a large cybersecurity, risk and compliance practice serving enterprise and public-sector clients. Closest direct peer given Digitemis's mix of pentesting, GRC and managed CISO offerings, though Wavestone operates at significantly greater scale and broader scope.
- Orange Cyberdefense: France-based cybersecurity services arm of Orange, offering offensive security, GRC consulting, managed SOC and compliance services to French enterprise and public-sector clients. Comparable on pentesting, audit and managed cyber services, but with much larger headcount and integrated MSSP capabilities.
- Advens: French cybersecurity pure-player specializing in offensive security, GRC, managed detection and SOC services. Directly comparable on pentesting, ISO 27001/RGPD advisory and managed cyber services for French mid-market and enterprise customers.
- Algosecure: French cybersecurity consulting firm focused on offensive security (pentesting, red team), audits and GRC advisory for enterprise clients. Very similar profile to Digitemis in service mix and target customers, though smaller and Paris-centric.
Broad incumbents
- Devoteam: French-headquartered IT and digital transformation consultancy with a dedicated cybersecurity practice. Overlaps on pentesting, governance and cloud security services but competes as a broader digital-transformation incumbent rather than a cybersecurity pure-player.
- Capgemini: Global IT services giant with a large French cybersecurity practice covering pentesting, compliance, managed security and identity. Competes with Digitemis on enterprise and public-sector mandates but as part of a much wider portfolio spanning consulting, application services and engineering.
- Thales: French defense and aerospace group with a sizable cybersecurity division serving defense, government and critical-infrastructure clients. Comparable on PASSI-grade audit and defense-sector cyber work, but with a much broader hardware, systems and defense portfolio.
- Sopra Steria: Major European IT services firm with cybersecurity, compliance and digital trust practices serving French and pan-European enterprise and public-sector clients. Competes with Digitemis on GRC, RGPD and managed security but at significantly larger scale.
- Atos: European IT services group with a dedicated cybersecurity portfolio (Big Data & Security) covering identity, SOC, compliance and risk advisory. Competes in French enterprise and public-sector cyber deals alongside Digitemis but with broader digital services scope.
Emerging players
- ANOZR WAY: French cybersecurity specialist offering managed security, identity, and advisory services to mid-market and enterprise customers. Comparable on managed CISO/RSSI and GRC services, but more productized than Digitemis and still scaling beyond Digitemis's geographic footprint.
Market position
Strengths5 records
Weaknesses5 records
Competitive moat4 records
Key risks6 records
Key highlights6 records
Customer concentration
Digitemis social profiles
Digital presenceDigitemis compliance and trust
Trust signalCompliance4 records
Digitemis financial estimates
Financial estimateRevenue estimate
Valuation estimate
Digitemis leadership team
Management profileNumber of profiles
Profiles1 record
Digitemis funding detail
Funding detailFunding overview
Funding rounds
Investors
Funding detail is available on the Subscription and Enterprise plan.Contact sales →
Digitemis M&A and investment
M&A and investmentM&A
Investments
M&A and investment is available on the Subscription and Enterprise plan.Contact sales →
Frequently asked questions about Digitemis
What does Digitemis do?
Digitemis is a unified cybersecurity consulting firm delivering integrated security services through three practice areas: offensive security (external, internal, web and mobile penetration testing, red team operations, mainframe/IBM i testing, social engineering campaigns), governance and compliance (security audits, ISO 27001 readiness, DORA/NIS2/AI Act compliance, third-party risk management), and data protection (RGPD audits, Privacy by Design, external DPO). The firm combines pentesters, GRC consultants, and legal jurists in cross-functional teams, with additional managed CISO/RSSI services, continuity and crisis management, and Qualiopi-certified training through Digitemis Academy.
Is Digitemis a public or private company?
Digitemis is a private company. It is classified as founder individual operated bootstrapped and is currently operating.
When was Digitemis founded?
Digitemis was founded in 2014. It employs 11 to 50 people.
Where is Digitemis based?
Digitemis is headquartered in La Merlatière, France, in the Europe region.
How does Digitemis make money?
Two revenue lines are on record. Professional Cybersecurity Services are the primary driver. The others are training Services.
Who are Digitemis's main competitors?
Direct peers on record are Wavestone, Orange Cyberdefense, Advens and Algosecure. Broad incumbents are Devoteam, Capgemini, Thales, Sopra Steria and Atos. ANOZR WAY is listed as an emerging player.
Does Digitemis have an API?
No public API is recorded for Digitemis.
What industry is Digitemis in?
Digitemis's product category is Cybersecurity Consulting Services. Its primary akta.pro industry code is BPAEADAD, Vulnerability Management & Penetration Testing Services, with a secondary code of BPAKADAC, Security Audits & Compliance (ISO 27001, SOC 2, PCI DSS, HIPAA, SOX). Its NAICS code is 541519 and its SIC code is 7370.