Developer docs
API playgroundTry for free, no card

Search company profiles

IBLISS Digital Security

Full company profile

uuid002cjjw

Namestring
IBLISS Digital Security
Legal namestring
IBLISS SEGURANÇA DIGITAL LTDA.
Websiteurl
ibliss.com.br
Company typeenum
Private
Founded yearint
2009
Descriptiontext

IBLISS Digital Security (legal name: IBLISS Segurança Digital LTDA.) is a Brazilian cybersecurity consultancy founded in 2009 and headquartered in São Paulo (Bela Vista). The firm delivers multidisciplinary cybersecurity services across six pillars — cybersecurity consulting, penetration testing (Pentest), security awareness and culture, compliance and governance, managed security services (MSS), and AppSec & DevSecOps — supplemented by proprietary methodologies such as the Security Essentials 360° diagnostic and a dedicated HaaS (Hacker as a Service) offensive security team. The technology stack integrates partner platforms (Tenable, Veracode, Imperva, KnowBe4, Vicarius) with internally developed open-source tools (WebDiscover, Octopus) and the spun-off GAT (Get Ahead of Threats) vulnerability management platform, now operating independently at gat.digital.

The company serves a broad base of more than 500 organizations across financial services, government, healthcare, insurance, retail/e-commerce, technology, and SMBs, including Fortune 500 firms and Brazilian majors such as SulAmerica Seguros and Bradesco Seguros (referenced in joint LGPD events). IBLISS is ISO/IEC 27001:2013 certified, recognized as a top Brazilian Information Security consultant by ISG Lens for two consecutive years, and a Great Place to Work for four consecutive years. Go-to-market combines direct enterprise sales (led by CRO Guilherme Serra and Head of Customer Success Alexandre Trentini) with strategic channel partnerships — notably IT-ONE (digital transformation, jointly serving 1,000+ clients) and INVIRON (digital media) — and content-led demand generation through its Minuto Proteção blog, e-books, vulnerability bulletins, and webinars.

Revenue is generated through project-based professional services engagements (consulting, pentest, compliance), recurring managed security services (MSS, PtaaS, vulnerability remediation, WAF/API protection, Security Champion), subscription-style awareness and culture programs, and the spun-off GAT platform. The business remains privately held under founder and CEO Leonardo Militelli, with the September 2024 appointment of a CRO and Business Executive signaling a transition toward more formalized, CTEM-focused (Continuous Threat Exposure Management) go-to-market.

Short descriptiontext

IBLISS Digital Security is a Brazilian cybersecurity consultancy founded in 2009, serving 500+ organizations including Fortune 500 firms with multidisciplinary services spanning penetration testing, managed security, compliance, AppSec/DevSecOps, and security awareness across Brazil.

Operating statusenum
Operating
Ownership categoryenum
Headcount rangeband
51–100
akta.pro rankint
HeadquartersBela Vista, Brazil
HQ citystring
Bela Vista
HQ countrystring
Brazil
HQ regionstring
Latin America
Markets served

Serves global market

Offices1 record

Each record includes

City, Country, Type, Description, Source

Keyword5 values
penetration testing services, managed security services, cybersecurity consulting, application security testing, compliance governance advisory
Industry3 codes
1Vulnerability Assessment, Security Audits & Compliance Testing
CodeBPAKAHAGPrimaryYes
2Vulnerability Management & Penetration Testing Services
CodeBPAEADADPrimaryNo
3Cybersecurity & Identity Consulting
CodeBPAHAEAGPrimaryNo
NAICS code3 codes
  • Security Systems Services (except Locksmiths)561621
  • Computer Systems Design and Related Services54151
  • Custom Computer Programming Services541511
SIC code2 codes
  • Services-Detective, Guard & Armored Car Services7381
  • Services-Computer Programming Services7371
Product category
Cybersecurity Services
GTM motion3 records

Each record includes

Type, Description, Source

Revenue model4 records
1Cybersecurity Consulting Services
TypeProfessional Services
Description

Professional services across cybersecurity consulting, penetration testing (Blackbox/Greybox/Whitebox, Network, Cloud, Mobile, Web & API pentests), AppSec & DevSecOps, and compliance/governance advisory. Sold as project-based engagements to enterprise and mid-market clients.

ibliss.com.br
2Managed Security Services (MSS)
TypeManaged Services
Description

Recurring continuous service programs covering vulnerability management and patches, PtaS, baseline definition and management, Security Champion, vulnerability remediation, WAF and API protection. Proposed as ongoing outsourced security operations.

ibliss.com.br
3Security Awareness & Culture Programs
TypeSubscription Recurring
Description

Subscription-style awareness and training programs for end-user behavior change including workshops, anti-phishing campaigns, quizzes and educational videos, delivered as ongoing programs.

ibliss.com.br
4GAT Platform (Spun Off)
TypeSubscription Recurring
Description

Vulnerability and threat management platform that originated inside IBLISS consulting and was spun off as a separate product, now operating under gat.digital. Likely sold via subscription or licensing model to enterprises.

ibliss.com.br
Marketing channels10 records

Each record includes

Title, Type, Stage, Description, Source

Distribution channels5 records

Each record includes

Title, Type, Scope, Target buyer, Description, Source

Cost components4 values
Personnel, Technology or R&D, Marketing or Sales, Operations
GTM typeB2B
B2B
Offering typeServices
Services
Brand1 record
1GAT – Get Ahead of Threats
Description

Vulnerability and threat management platform originated inside IBLISS and later spun off as a separate platform/company focused on Continuous Threat Exposure Management (CTEM).

ibliss.com.br
Core offering1 text field

IBLISS Digital Security provides multidisciplinary cybersecurity services for Brazilian organizations, organized into six pillars: strategic consulting, penetration testing, security awareness and culture, compliance and governance, managed security services (MSS), and AppSec/DevSecOps. The company delivers bespoke consulting engagements, continuous offensive security testing, regulatory gap analysis (LGPD, BACEN, PCI-DSS, ISO 27001), and outsourced security operations, leveraging its proprietary GAT (Get Ahead of Threats) vulnerability management platform and Security Essentials 360° diagnostic methodology.

Differentiator
Functional benefit
Problem solved
Quantifiable outcome1 of 5 values shown
  • More than 10,000 hours of security testing per year delivered through HaaS team
+4 more records
Product overview1 text field

IBLISS Digital Security delivers a multi-disciplinary cybersecurity services portfolio organized into six core pillars — Consultoria em Cibersegurança, Teste de Intrusão (Pentest), Conscientização & Cultura, Compliance & Governança, Serviços Gerenciados (MSS), and AppSec & DevSecOps — supported by specialized offerings such as the Security Essentials 360° maturity assessment, the HaaS (Hacker as a Service) offensive security team, and the spun-off GAT vulnerability management platform. The Servicos Gerenciados bundle includes sub-modules such as Gestão de Vulnerabilidades e Patches, PtaaS (Pentest as a Service), Definição e Gestão de Baseline, Security Champion, Correção de Vulnerabilidades (built on Vicarius), and WAF e Proteção API (built on Imperva); the AppSec & DevSecOps pillar contains SAST/DAST analysis and ASVS security reviews; and the consultancy is reinforced by internally developed tools like WebDiscover and Octopus as well as the Sec4Kids awareness program for children. The architecture is service-led rather than a single SaaS product, but IBLISS integrates partner technologies (Tenable, Vicarius, Veracode, KnowBe4, Imperva, and its own GAT platform) and is ISO/IEC 27001:2013 certified.

Product and service9 records
1Consultoria em Cibersegurança
CategoryCybersecurity Consulting
Description

Strategic cybersecurity consulting providing intelligence for prevention, identification, and detection of risks and incidents, including computer forensic analysis, threat analysis, risk assessments, and penetration testing. Targeted at enterprise and mid-market clients in Brazil.

2Teste de Intrusão (Pentest)
CategoryOffensive Security Services
Description

Penetration testing service delivered across Network, Cloud, Mobile, and Web/API modalities and Blackbox, Greybox, and Whitebox engagement approaches. Includes more than 10,000 testing hours per year, including the dedicated HaaS offensive security team.

3Conscientização & Cultura
CategorySecurity Awareness Training
Description

Security awareness and culture program sensitizing and engaging employees on information security and privacy, including workshops, anti-phishing simulations, educational quizzes and videos. Targeted at enterprises seeking to reduce human-factor security incidents.

4Compliance & Governança
CategoryCompliance & Governance Advisory
Description

Compliance and governance advisory covering PCI-DSS, GDPR, ISO, NIST, LGPD, BACEN, CIS Controls, CONATRAN, and OWASP SAMM, including gap analysis, supplier evaluation, process definition, pre-audit for certification, and CISO/DPO support. For regulated Brazilian organizations.

5Serviços Gerenciados (MSS)
CategoryManaged Security Services
Description

Managed security services program providing continuous, proactive visibility of risks and threats, including vulnerability and patch management, PtaaS (Pentest as a Service), secure baseline definition, Security Champion program, vulnerability remediation (via Vicarius vRx), and WAF/API protection (via Imperva). Sold as outsourced recurring engagements.

6AppSec & DevSecOps
CategoryApplication Security
Description

Application security practice establishing best practices across the software development lifecycle, including SAST and DAST analysis and ASVS (Application Security Verification Standard) security reviews. For technology providers, startups, and enterprises building software products.

7Security Essentials 360°
CategorySecurity Maturity Assessment
Description

360-degree maturity assessment that maps information security and privacy posture across people, processes, and technology pillars to identify gaps and inform an investment plan for a security program. For organizations beginning or refreshing a security program.

8GAT – Get Ahead of Threats
CategoryVulnerability Management Platform
Description

Vulnerability and threat management platform providing integrated lifecycle management of vulnerabilities across the IT environment and an IBLISS Security Score; spun off from IBLISS and now commercialized via gat.digital.

9HaaS (Hacker as a Service)
CategorySpecialized Offensive Security
Description

Specialized offensive security team delivering continuous penetration testing, red-team activities, exploit research, and open-source security tool development for Brazilian enterprises requiring deep offensive expertise.

Scale indicator10 records

Each record includes

Type, Value, Description, Source

Partnership10 partners
Strategic tierModerateTypeStrategic or Co-development PartnerAnnounced on2022-05-30
Description

Partnership announced on May 30, 2022, with INVIRON to enhance security criteria and requirements applicable to INVIRON's digital media publishing network. IBLISS brings 13+ years of information security and privacy expertise, ISO 27001:2013 certified.

Strategic tierFlagshipTypeStrategic or Co-development PartnerAnnounced on2022-05-01
Description

Strategic partnership announced in May 2022 to combine IT-ONE's digital transformation expertise with IBLISS's cybersecurity capabilities; combined client base exceeds 1,000 across Brazil. Initial offerings include Vulnerability Assessment, Gap Analysis LGPD, and User Awareness programs.

Strategic tierFlagshipTypeStrategic or Co-development Partner
Description

GAT originated inside IBLISS as an integrated vulnerability and threat management platform and was spun off as a separate product. The partnership enables IBLISS to leverage the GAT platform in client engagements while GAT independently commercializes the technology; IBLISS + GAT Security Score is also offered as a joint asset on the website.

Strategic tierCoreTypeTechnology or Integration
Description

Tenable is one of IBLISS's technology partners (logo displayed in the partners section). IBLISS and Tenable co-hosted a series of webinars on vulnerability prioritization for remote work, predictive prioritization, and other technical deep-dives, and jointly support vulnerability management programs for clients.

Strategic tierCoreTypeTechnology or Integration
Description

Imperva is one of IBLISS's displayed technology partners, providing WAF and API protection capabilities that IBLISS offers to clients through its managed services and application security portfolio.

Strategic tierCoreTypeTechnology or Integration
Description

KnowBe4 is featured as a strategic technology partner of IBLISS, supporting the company's security awareness and culture programs with phishing simulation and training capabilities.

Strategic tierCoreTypeTechnology or Integration
Description

Veracode is displayed as a technology partner, supporting IBLISS's AppSec & DevSecOps offerings with application security testing capabilities (SAST/DAST).

Strategic tierCoreTypeStrategic or Co-development Partner
Description

Vicarius is a strategic partner of IBLISS, recognized by IDC as a leader in preemptive exposure management. The partnership enables IBLISS to deliver vulnerability remediation and preemptive exposure solutions to clients.

9Fundação Abrinq
Strategic tierModerateTypeGTM or Marketing Partner
Description

Institutional partnership where IBLISS secures Fundação Abrinq's digital environment and Fundação Abrinq helps promote the SEC4KIDS social responsibility project. The collaboration combines cybersecurity protection with social impact focused on children and adolescents' internet safety.

ibliss.com.br
10IBM
Strategic tierMinorTypeOthers
Description

IBM is referenced as a source for cybersecurity frameworks (NIST Cybersecurity Framework) and IBM Cost of a Data Breach Report that IBLISS cites in thought-leadership content; not a commercial partnership but a content reference.

Recent move8 records

Each record includes

Date, Type, Title, Description, Source

Expansion highlight5 records

Each record includes

Type, Description

Peers10 records
TypeBroad incumbent
Description

Global incident response, threat intelligence, and cybersecurity consulting firm — comparable to IBLISS in offensive security and consulting capabilities, but serving a global enterprise customer base with substantially more resources.

TypeBroad incumbent
Description

Global MSSP and security consulting provider offering managed detection, vulnerability management, and advisory services — comparable to IBLISS in MSS and consulting positioning, but at much larger scale and global reach.

TypeBroad incumbent
Description

Global cybersecurity company offering MSS, consulting, penetration testing, and compliance services to enterprises — comparable to IBLISS in service portfolio, but operating globally with much larger headcount and managed services infrastructure.

TypeDirect peer
Description

Brazilian cybersecurity specialist focused on pentesting, red team, threat intelligence, and managed detection & response — comparable to IBLISS in offensive-security expertise and Brazilian enterprise/government customer profile.

TypeBroad incumbent
Description

Large Brazilian IT services group with a dedicated cybersecurity practice covering consulting, managed services, and compliance — a broad incumbent that competes with IBLISS on enterprise security engagements at significantly greater scale.

6Clavis Segurança da Informação
TypeDirect peer
Description

Brazilian cybersecurity firm delivering consulting, vulnerability management, managed security, and compliance services to enterprise and government clients — closely comparable to IBLISS across service lines, certifications, and Brazilian enterprise customer base.

TypeDirect peer
Description

Brazilian cybersecurity consultancy offering offensive security (pentesting, red team), managed detection, and security consulting to large enterprises — directly comparable to IBLISS in services portfolio, target customer (Fortune 500/large Brazilian corporates), and Brazilian market focus.

TypeBroad incumbent
Description

Latin American cybersecurity consultancy (part of the Stefanini/A Br ecosystem) offering managed security, consulting, and offensive security to large enterprises across Brazil — comparable to IBLISS in services portfolio but operating at a larger scale with broader geographic reach.

TypeBroad incumbent
Description

Global IT solutions and managed services provider with a Brazilian security practice spanning consulting, MSS, and compliance — comparable to IBLISS in services and customer base, but as part of a much larger multinational portfolio.

10H4rdw0rk
TypeDirect peer
Description

Brazilian offensive-security boutique delivering penetration testing, red team, and AppSec services to enterprise clients — a directly comparable niche peer to IBLISS's HaaS and pentest practices within the Brazilian market.

Market position
Strengths5 records

Each record includes

Headline, Details, Source

Weaknesses5 records

Each record includes

Headline, Details, Source

Competitive moat5 records

Each record includes

Type, Details

Key risks5 records

Each record includes

Headline, Details, Source

Key highlights7 records

Each record includes

Headline, Details, Source

Customer concentration

Classification, Details

Named customers5 records

Each record includes

Name, Industry, Type, Use case, Source, UUID

Segment7 records

Each record includes

Title, Type, Primary, Description, Pain point addressed, Use case, Source

Ideal customer profile4 records

Each record includes

Profile, Firmographic size, Sales motion, Sales cycle length, Buying structure, Purchase trigger, Buyer persona, Geography, Industry vertical, Primary use case, Description, Pain points, Evidence proof points, Target buyer

Technology focused
Yes
API detail
Has APIbool
No

Docs URL, Description

Integration7 records

Each record includes

Title, Type, Description, Source

AI maturity
App detail

Has app

Feature6 records

Each record includes

Title, Differentiator, Description, Source

Core technology
Revenue estimate
Valuation estimate
Number of profiles
Profiles8 records

Each record includes

Name, Designation, Designation category, Overview, Profile commentary, Source

Subsidiaries1 record

Each record includes

Name, Acquired on, Relationship type, Type, Business focus

Compliance3 records

Each record includes

Name, Class, Description

Funding overview

Funding stage, Last funding date, Total funding USD

Funding rounds

Each record includes

Round, Amount USD, Date, Pre money valuation, Total investors, Investors, News

Investors

Each record includes

Name, Type, Date of entry, Rounds participated, Website

Funding detail is available on the Subscription and Enterprise plan.Contact sales →

M&A

Each record includes

Name, Acquisition type, Announced date, Completed date, Status, Website, News

Investment

Each record includes

Name, Round, Announced date, Lead investor, Website, News

M&A and investment is available on the Subscription and Enterprise plan.Contact sales →

IBLISS Digital Security

Cybersecurity Servicesibliss.com.br

IBLISS Digital Security is a Brazilian cybersecurity consultancy founded in 2009, serving 500+ organizations including Fortune 500 firms with multidisciplinary services spanning penetration testing, managed security, compliance, AppSec/DevSecOps, and security awareness across Brazil.

What IBLISS Digital Security does

IBLISS Digital Security (legal name: IBLISS Segurança Digital LTDA.) is a Brazilian cybersecurity consultancy founded in 2009 and headquartered in São Paulo (Bela Vista). The firm delivers multidisciplinary cybersecurity services across six pillars — cybersecurity consulting, penetration testing (Pentest), security awareness and culture, compliance and governance, managed security services (MSS), and AppSec & DevSecOps — supplemented by proprietary methodologies such as the Security Essentials 360° diagnostic and a dedicated HaaS (Hacker as a Service) offensive security team. The technology stack integrates partner platforms (Tenable, Veracode, Imperva, KnowBe4, Vicarius) with internally developed open-source tools (WebDiscover, Octopus) and the spun-off GAT (Get Ahead of Threats) vulnerability management platform, now operating independently at gat.digital.

The company serves a broad base of more than 500 organizations across financial services, government, healthcare, insurance, retail/e-commerce, technology, and SMBs, including Fortune 500 firms and Brazilian majors such as SulAmerica Seguros and Bradesco Seguros (referenced in joint LGPD events). IBLISS is ISO/IEC 27001:2013 certified, recognized as a top Brazilian Information Security consultant by ISG Lens for two consecutive years, and a Great Place to Work for four consecutive years. Go-to-market combines direct enterprise sales (led by CRO Guilherme Serra and Head of Customer Success Alexandre Trentini) with strategic channel partnerships — notably IT-ONE (digital transformation, jointly serving 1,000+ clients) and INVIRON (digital media) — and content-led demand generation through its Minuto Proteção blog, e-books, vulnerability bulletins, and webinars.

Revenue is generated through project-based professional services engagements (consulting, pentest, compliance), recurring managed security services (MSS, PtaaS, vulnerability remediation, WAF/API protection, Security Champion), subscription-style awareness and culture programs, and the spun-off GAT platform. The business remains privately held under founder and CEO Leonardo Militelli, with the September 2024 appointment of a CRO and Business Executive signaling a transition toward more formalized, CTEM-focused (Continuous Threat Exposure Management) go-to-market.

IBLISS Digital Security firmographics

Firmographics
Name
IBLISS Digital Security
Legal name
IBLISS SEGURANÇA DIGITAL LTDA.
Website
https://ibliss.com.br
Company type
Private
Founded year
2009
Operating status
Operating
Headcount range
51–100 employees
Short description
IBLISS Digital Security is a Brazilian cybersecurity consultancy founded in 2009, serving 500+ organizations including Fortune 500 firms with multidisciplinary services spanning penetration testing, managed security, compliance, AppSec/DevSecOps, and security awareness across Brazil.
Ownership category
akta.pro rank

IBLISS Digital Security industry classification

Industry
Product category
Cybersecurity Services
NAICS
Security Systems Services (except Locksmiths) (561621), Computer Systems Design and Related Services (54151), Custom Computer Programming Services (541511)
SIC
Services-Detective, Guard & Armored Car Services (7381), Services-Computer Programming Services (7371)
akta.pro primary industry
Vulnerability Assessment, Security Audits & Compliance Testing (BPAKAHAG)
akta.pro secondary industries
Vulnerability Management & Penetration Testing Services (BPAEADAD), Cybersecurity & Identity Consulting (BPAHAEAG)

Keywords

  • Penetration testing services
  • Managed security services
  • Cybersecurity consulting
  • Application security testing
  • Compliance governance advisory

Where IBLISS Digital Security is headquartered

Location

Headquarters

HQ city
Bela Vista
HQ country
Brazil
HQ region
Latin America

Offices1 record

Markets served

IBLISS Digital Security business model

Business model
GTM type
B2B
Offering type
Services
Cost components
Personnel, Technology or R&D, Marketing or Sales, Operations

Revenue model

  1. Cybersecurity Consulting Services: Professional services across cybersecurity consulting, penetration testing (Blackbox/Greybox/Whitebox, Network, Cloud, Mobile, Web & API pentests), AppSec & DevSecOps, and compliance/governance advisory. Sold as project-based engagements to enterprise and mid-market clients.
  2. Managed Security Services (MSS): Recurring continuous service programs covering vulnerability management and patches, PtaS, baseline definition and management, Security Champion, vulnerability remediation, WAF and API protection. Proposed as ongoing outsourced security operations.
  3. Security Awareness & Culture Programs: Subscription-style awareness and training programs for end-user behavior change including workshops, anti-phishing campaigns, quizzes and educational videos, delivered as ongoing programs.
  4. GAT Platform (Spun Off): Vulnerability and threat management platform that originated inside IBLISS consulting and was spun off as a separate product, now operating under gat.digital. Likely sold via subscription or licensing model to enterprises.

Go-to-market motion3 records

Distribution channels5 records

Marketing channels10 records

IBLISS Digital Security product offering

Product offering

Core offering

IBLISS Digital Security provides multidisciplinary cybersecurity services for Brazilian organizations, organized into six pillars: strategic consulting, penetration testing, security awareness and culture, compliance and governance, managed security services (MSS), and AppSec/DevSecOps. The company delivers bespoke consulting engagements, continuous offensive security testing, regulatory gap analysis (LGPD, BACEN, PCI-DSS, ISO 27001), and outsourced security operations, leveraging its proprietary GAT (Get Ahead of Threats) vulnerability management platform and Security Essentials 360° diagnostic methodology.

Product overview

IBLISS Digital Security delivers a multi-disciplinary cybersecurity services portfolio organized into six core pillars — Consultoria em Cibersegurança, Teste de Intrusão (Pentest), Conscientização & Cultura, Compliance & Governança, Serviços Gerenciados (MSS), and AppSec & DevSecOps — supported by specialized offerings such as the Security Essentials 360° maturity assessment, the HaaS (Hacker as a Service) offensive security team, and the spun-off GAT vulnerability management platform. The Servicos Gerenciados bundle includes sub-modules such as Gestão de Vulnerabilidades e Patches, PtaaS (Pentest as a Service), Definição e Gestão de Baseline, Security Champion, Correção de Vulnerabilidades (built on Vicarius), and WAF e Proteção API (built on Imperva); the AppSec & DevSecOps pillar contains SAST/DAST analysis and ASVS security reviews; and the consultancy is reinforced by internally developed tools like WebDiscover and Octopus as well as the Sec4Kids awareness program for children. The architecture is service-led rather than a single SaaS product, but IBLISS integrates partner technologies (Tenable, Vicarius, Veracode, KnowBe4, Imperva, and its own GAT platform) and is ISO/IEC 27001:2013 certified.

Differentiator

Problem solved

Functional benefit

Brands

  • GAT – Get Ahead of Threats: Vulnerability and threat management platform originated inside IBLISS and later spun off as a separate platform/company focused on Continuous Threat Exposure Management (CTEM).

Products and services

  • Consultoria em Cibersegurança Strategic cybersecurity consulting providing intelligence for prevention, identification, and detection of risks and incidents, including computer forensic analysis, threat analysis, risk assessments, and penetration testing. Targeted at enterprise and mid-market clients in Brazil.
  • Teste de Intrusão (Pentest) Penetration testing service delivered across Network, Cloud, Mobile, and Web/API modalities and Blackbox, Greybox, and Whitebox engagement approaches. Includes more than 10,000 testing hours per year, including the dedicated HaaS offensive security team.
  • Conscientização & Cultura Security awareness and culture program sensitizing and engaging employees on information security and privacy, including workshops, anti-phishing simulations, educational quizzes and videos. Targeted at enterprises seeking to reduce human-factor security incidents.
  • Compliance & Governança Compliance and governance advisory covering PCI-DSS, GDPR, ISO, NIST, LGPD, BACEN, CIS Controls, CONATRAN, and OWASP SAMM, including gap analysis, supplier evaluation, process definition, pre-audit for certification, and CISO/DPO support. For regulated Brazilian organizations.
  • Serviços Gerenciados (MSS) Managed security services program providing continuous, proactive visibility of risks and threats, including vulnerability and patch management, PtaaS (Pentest as a Service), secure baseline definition, Security Champion program, vulnerability remediation (via Vicarius vRx), and WAF/API protection (via Imperva). Sold as outsourced recurring engagements.
  • AppSec & DevSecOps Application security practice establishing best practices across the software development lifecycle, including SAST and DAST analysis and ASVS (Application Security Verification Standard) security reviews. For technology providers, startups, and enterprises building software products.
  • Security Essentials 360° 360-degree maturity assessment that maps information security and privacy posture across people, processes, and technology pillars to identify gaps and inform an investment plan for a security program. For organizations beginning or refreshing a security program.
  • GAT – Get Ahead of Threats Vulnerability and threat management platform providing integrated lifecycle management of vulnerabilities across the IT environment and an IBLISS Security Score; spun off from IBLISS and now commercialized via gat.digital.
  • HaaS (Hacker as a Service) Specialized offensive security team delivering continuous penetration testing, red-team activities, exploit research, and open-source security tool development for Brazilian enterprises requiring deep offensive expertise.

Quantifiable outcome

  • More than 10,000 hours of security testing per year delivered through HaaS team
  • +4 more outcomes

Companies that use IBLISS Digital Security

Customer profile

Named customers5 records

Segments7 records

Ideal customer profiles4 records

IBLISS Digital Security technology and API

Technology

Technology focussed Yes

API detail

Has API
No
API docs
API detail

Core technology

AI maturity

App detail

Integration7 records

Feature6 records

IBLISS Digital Security partnerships and signals

Strategic signal

Partnerships

Ten partnerships are on record, tiered moderate, flagship, core and minor.

  • INVIRONmoderateStrategic or Co-development Partner · 30 May 2022Partnership announced on May 30, 2022, with INVIRON to enhance security criteria and requirements applicable to INVIRON's digital media publishing network. IBLISS brings 13+ years of information security and privacy expertise, ISO 27001:2013 certified.
  • IT-ONEflagshipStrategic or Co-development Partner · 1 May 2022Strategic partnership announced in May 2022 to combine IT-ONE's digital transformation expertise with IBLISS's cybersecurity capabilities; combined client base exceeds 1,000 across Brazil. Initial offerings include Vulnerability Assessment, Gap Analysis LGPD, and User Awareness programs.
  • GAT Security (Get Ahead of Threats)flagshipStrategic or Co-development PartnerGAT originated inside IBLISS as an integrated vulnerability and threat management platform and was spun off as a separate product. The partnership enables IBLISS to leverage the GAT platform in client engagements while GAT independently commercializes the technology; IBLISS + GAT Security Score is also offered as a joint asset on the website.
  • TenablecoreTechnology or IntegrationTenable is one of IBLISS's technology partners (logo displayed in the partners section). IBLISS and Tenable co-hosted a series of webinars on vulnerability prioritization for remote work, predictive prioritization, and other technical deep-dives, and jointly support vulnerability management programs for clients.
  • ImpervacoreTechnology or IntegrationImperva is one of IBLISS's displayed technology partners, providing WAF and API protection capabilities that IBLISS offers to clients through its managed services and application security portfolio.
  • KnowBe4coreTechnology or IntegrationKnowBe4 is featured as a strategic technology partner of IBLISS, supporting the company's security awareness and culture programs with phishing simulation and training capabilities.
  • VeracodecoreTechnology or IntegrationVeracode is displayed as a technology partner, supporting IBLISS's AppSec & DevSecOps offerings with application security testing capabilities (SAST/DAST).
  • VicariuscoreStrategic or Co-development PartnerVicarius is a strategic partner of IBLISS, recognized by IDC as a leader in preemptive exposure management. The partnership enables IBLISS to deliver vulnerability remediation and preemptive exposure solutions to clients.
  • Fundação AbrinqmoderateGTM or Marketing PartnerInstitutional partnership where IBLISS secures Fundação Abrinq's digital environment and Fundação Abrinq helps promote the SEC4KIDS social responsibility project. The collaboration combines cybersecurity protection with social impact focused on children and adolescents' internet safety.
  • IBMminorOthersIBM is referenced as a source for cybersecurity frameworks (NIST Cybersecurity Framework) and IBM Cost of a Data Breach Report that IBLISS cites in thought-leadership content; not a commercial partnership but a content reference.

Scale indicators10 records

Recent moves8 records

Expansion highlights5 records

IBLISS Digital Security competitors and assessment

Company assessment

Broad incumbents

  • Mandiant (Google Cloud): Global incident response, threat intelligence, and cybersecurity consulting firm — comparable to IBLISS in offensive security and consulting capabilities, but serving a global enterprise customer base with substantially more resources.
  • Secureworks: Global MSSP and security consulting provider offering managed detection, vulnerability management, and advisory services — comparable to IBLISS in MSS and consulting positioning, but at much larger scale and global reach.
  • Trustwave: Global cybersecurity company offering MSS, consulting, penetration testing, and compliance services to enterprises — comparable to IBLISS in service portfolio, but operating globally with much larger headcount and managed services infrastructure.
  • Stefanini Cybersecurity: Large Brazilian IT services group with a dedicated cybersecurity practice covering consulting, managed services, and compliance — a broad incumbent that competes with IBLISS on enterprise security engagements at significantly greater scale.
  • Cipher (A Br company): Latin American cybersecurity consultancy (part of the Stefanini/A Br ecosystem) offering managed security, consulting, and offensive security to large enterprises across Brazil — comparable to IBLISS in services portfolio but operating at a larger scale with broader geographic reach.
  • Logicalis Brasil (Security Practice): Global IT solutions and managed services provider with a Brazilian security practice spanning consulting, MSS, and compliance — comparable to IBLISS in services and customer base, but as part of a much larger multinational portfolio.

Direct peers

  • Morphus (Sec4Way Group): Brazilian cybersecurity specialist focused on pentesting, red team, threat intelligence, and managed detection & response — comparable to IBLISS in offensive-security expertise and Brazilian enterprise/government customer profile.
  • Clavis Segurança da Informação: Brazilian cybersecurity firm delivering consulting, vulnerability management, managed security, and compliance services to enterprise and government clients — closely comparable to IBLISS across service lines, certifications, and Brazilian enterprise customer base.
  • Tempest Security Intelligence: Brazilian cybersecurity consultancy offering offensive security (pentesting, red team), managed detection, and security consulting to large enterprises — directly comparable to IBLISS in services portfolio, target customer (Fortune 500/large Brazilian corporates), and Brazilian market focus.
  • H4rdw0rk: Brazilian offensive-security boutique delivering penetration testing, red team, and AppSec services to enterprise clients — a directly comparable niche peer to IBLISS's HaaS and pentest practices within the Brazilian market.

Market position

Strengths5 records

Weaknesses5 records

Competitive moat5 records

Key risks5 records

Key highlights7 records

Customer concentration

IBLISS Digital Security social profiles

Digital presence

IBLISS Digital Security compliance and trust

Trust signal

Compliance3 records

IBLISS Digital Security financial estimates

Financial estimate

Revenue estimate

Valuation estimate

IBLISS Digital Security leadership team

Management profile

Number of profiles

Profiles8 records

IBLISS Digital Security subsidiaries and ownership

Company hierarchy

Subsidiaries1 record

IBLISS Digital Security funding detail

Funding detail

Funding overview

Funding rounds

Investors

Funding detail is available on the Subscription and Enterprise plan.Contact sales →

IBLISS Digital Security M&A and investment

M&A and investment

M&A

Investments

M&A and investment is available on the Subscription and Enterprise plan.Contact sales →

Frequently asked questions about IBLISS Digital Security

What does IBLISS Digital Security do?

IBLISS Digital Security provides multidisciplinary cybersecurity services for Brazilian organizations, organized into six pillars: strategic consulting, penetration testing, security awareness and culture, compliance and governance, managed security services (MSS), and AppSec/DevSecOps. The company delivers bespoke consulting engagements, continuous offensive security testing, regulatory gap analysis (LGPD, BACEN, PCI-DSS, ISO 27001), and outsourced security operations, leveraging its proprietary GAT (Get Ahead of Threats) vulnerability management platform and Security Essentials 360° diagnostic methodology.

Is IBLISS Digital Security a public or private company?

IBLISS Digital Security is a private company. It is classified as founder individual operated bootstrapped and is currently operating.

When was IBLISS Digital Security founded?

IBLISS Digital Security was founded in 2009. It employs 51 to 100 people.

Where is IBLISS Digital Security based?

IBLISS Digital Security is headquartered in Bela Vista, Brazil, in the Latin America region.

How does IBLISS Digital Security make money?

Four revenue lines are on record. Cybersecurity Consulting Services are the primary driver. The others are managed Security Services (MSS), security Awareness & Culture Programs and GAT Platform (Spun Off).

Who are IBLISS Digital Security's main competitors?

Broad incumbents on record are Mandiant (Google Cloud), Secureworks, Trustwave, Stefanini Cybersecurity, Cipher (A Br company) and Logicalis Brasil (Security Practice). Direct peers are Morphus (Sec4Way Group), Clavis Segurança da Informação, Tempest Security Intelligence and H4rdw0rk.

Does IBLISS Digital Security have an API?

No public API is recorded for IBLISS Digital Security.

What industry is IBLISS Digital Security in?

IBLISS Digital Security's product category is Cybersecurity Services. Its primary akta.pro industry code is BPAKAHAG, Vulnerability Assessment, Security Audits & Compliance Testing, with a secondary code of BPAEADAD, Vulnerability Management & Penetration Testing Services. Its NAICS code is 561621 and its SIC code is 7381.

Unlock the full company data

50 free credits on sign-up, no credit card required.

Contact sales