Adacis
Adacis is a French cybersecurity firm (Nouvelle-Aquitaine) providing PASSI Élevé LPM-qualified security audits, ANSSI-labelled risk management tools (Arimes, Agrios), OSINT (Basileak), AI-assisted pentesting (Pentest LLM), and shared CISO services to OIVs, mid-market and large enterprises, and SMEs across France.
- Company typePrivate
- Founded2003
- HeadquartersBayas, France
- Headcount11–50
- GTM typeB2B
- OfferingServices
What Adacis does
ADACIS SAS is a French cybersecurity company headquartered in Bayas, Nouvelle-Aquitaine, with additional offices in Cenon and Bordeaux. Founded in 2004 (operating under a structure registered in 2003), the firm operates as a privately held SAS with 11-50 employees and provides cybersecurity services and proprietary software tools to Operators of Vital Importance (OIV), mid-sized and large enterprises (ETI, grandes entreprises), and small/medium businesses (TPE/PME) primarily in France. The company holds the PASSI Élevé LPM qualification from ANSSI (since April 2020), the highest-level authorization required to audit sensitive systems and OIV infrastructure under French military programming law, positioning it inside a legally gated segment of the French cybersecurity market.
The product portfolio combines ANSSI-labelled risk management tooling with operational security utilities. Arimes Standalone and Arimes Web are desktop and browser-based risk analysis tools certified compliant with the EBIOS Risk Manager methodology; Agrios is a GRC platform with API integration to Arimes Web and LDAP/MFA support; Basileak provides OSINT investigation and attack surface mapping; and Pentest LLM, awarded under the France 2030 program in September 2024, is an LLM-based tool that augments penetration testers. Adjacent products include Medusa (RTSP proxy), Road (RADIUS OTP), Vizird (video processing), and Secure Upload (encrypted file sharing). Supporting services span PASSI-qualified audits (penetration testing, architecture, configuration, organizational/physical), risk analysis, crisis management, secure development (DevSecOps), OSINT investigation, training (Qualiopi-certified), security integration, and ISO 27001/NIS2 compliance accompaniment. The Canut brand offers a shared/outsourced CISO (RSSI mutualisé) service through Lot 5 of a public-sector framework agreement.
ADACIS generates revenue primarily through professional services billed on a day-rate (JH - Jour Homme) per auditor model, with project scoping that varies by perimeter, team size, activity mix, and on-site versus remote delivery. The firm operates a direct enterprise field-sales motion targeting OIV operators and large/mid-sized organizations, with both on-site and remote delivery across France, plus reference to clients of national and international dimension. Distribution is direct (no disclosed channel partners), supported by content marketing through a monthly cybersecurity newsletter, blog, and industry events. Capital structure shows no disclosed funding rounds, M&A, or institutional investors; ownership appears concentrated with founders/operators, including Christophe Maillet as publication responsible.
Adacis firmographics
Firmographics- Name
- Adacis
- Legal name
- ADACIS SAS
- Website
- https://adacis.net
- Company type
- Private
- Founded year
- 2003
- Operating status
- Operating
- Headcount range
- 11–50 employees
- Short description
- Adacis is a French cybersecurity firm (Nouvelle-Aquitaine) providing PASSI Élevé LPM-qualified security audits, ANSSI-labelled risk management tools (Arimes, Agrios), OSINT (Basileak), AI-assisted pentesting (Pentest LLM), and shared CISO services to OIVs, mid-market and large enterprises, and SMEs across France.
- Ownership category
- akta.pro rank
Adacis industry classification
Industry- Product category
- Cybersecurity Services
- NAICS
- Custom Computer Programming Services (541511), Computer Systems Design Services (541512), Other Computer Related Services (541519)
- SIC
- Services-Computer Programming, Data Processing, Etc. (7370), Services-Engineering, Accounting, Research, Management (8700)
- akta.pro primary industry
- Cybersecurity & Identity Consulting (BPAHAEAG)
- akta.pro secondary industries
- IT Risk Management (ITRM) (HDADAIAD), Application Security Testing (SAST/DAST/IAST/SCA) (HDADACAC), Multi-Factor Authentication (MFA) & Passwordless Authentication (HDAEAJAC)
Keywords
Where Adacis is headquartered
LocationHeadquarters
- HQ city
- Bayas
- HQ country
- France
- HQ region
- Europe
Offices3 records
Markets served
Adacis business model
Business model- GTM type
- B2B
- Offering type
- Services
- Cost components
- Personnel, Technology or R&D, Operations, Marketing or Sales, Others
Revenue model
- Cybersecurity Professional Services: Consulting and audit services including PASSI-qualified security audits, risk analysis, crisis management, training, OSINT investigation, secure development, security integration, and ISO 27001/NIS2 compliance support. Day-rate billing model with project-based engagements.
Pricing tiers
| Model | Billing | Price |
|---|---|---|
| Other | Pay-as-you-go | Professional services with day-rate billing |
Go-to-market motion1 record
Distribution channels2 records
Marketing channels3 records
Adacis product offering
Product offeringCore offering
Adacis provides PASSI-qualified cybersecurity audits (penetration testing, architecture, configuration, organizational/physical), EBIOS-based risk analysis, crisis management, OSINT investigation, secure development (DevSecOps), security equipment integration, ISO 27001 and NIS2 compliance support, and cybersecurity training. The company complements these services with proprietary software tools (Arimes, Agrios, Basileak, Pentest LLM, Medusa, Road, Vizird, Secure Upload) and a shared CISO offering (Canut).
Product overview
ADACIS is a French cybersecurity company offering a portfolio of proprietary software tools complemented by professional services. The product suite includes Arimes Standalone and Arimes Web (both ANSSI-certified EBIOS Risk Manager risk analysis tools), Agrios (a GRC risk and compliance management platform), Basileak (OSINT investigation platform), Vizird (video processing), Medusa (RTSP proxy), Road (RADIUS OTP), Pentest LLM (AI-assisted penetration testing), and Secure Upload (secure file sharing). These tools are complemented by a suite of managed cybersecurity services including qualified PASSI security audits, secure development, crisis management, OSINT investigation, training, and ISO 27001/NIS2 compliance accompaniment. The Canut managed CISO service provides shared security leadership. The portfolio is anchored by the Arimes/Agrios ecosystem for risk management and the Pentest LLM AI initiative under France 2030.
Differentiator
Problem solved
Functional benefit
Brands
- Arimes Standalone: Risk analysis tool labeled compliant with EBIOS Risk Manager methodology by ANSSI
- Arimes Web
- Agrios
- Basileak
- Medusa
- Road
- Vizird
- Pentest LLM
- Secure Upload
- Canut
- Arimes
Products and services
- Arimes Standalone Desktop risk analysis application labelled compliant with the EBIOS Risk Manager methodology by ANSSI, supporting structured risk studies with JSON/CSV import of referentials and DICT scale. Used by security and risk teams to conduct EBIOS-aligned assessments.
- Arimes Web Web-based version of Arimes providing EBIOS Risk Manager methodology support with LDAP enterprise authentication and API token connectivity to Agrios GRC.
- Agrios Governance, Risk and Compliance (GRC) platform that centralizes risks, security measures, compliance treatments and follow-ups, with MFA, Excel import and bidirectional integration with Arimes Web.
- Basileak OSINT (Open Source Intelligence) investigation platform for digital footprint mapping, attack surface analysis and cyber threat monitoring.
- Medusa RTSP proxy tool for intercepting, routing and managing RTSP video streams, used in security testing and video stream analysis.
- Road RADIUS OTP (One-Time Password) solution delivering multi-factor authentication for network access control.
- Vizird Video processing and analysis solution for visualization, transformation and analysis of video streams in security contexts.
- Pentest LLM AI/LLM-powered tool that augments penetration testers by assisting with vulnerability identification, analysis and reporting. Developed as part of the France 2030 Pentest.LLM project.
- Secure Upload Secure content sharing platform enabling users to upload and exchange sensitive files through encrypted channels.
- Canut (Shared CISO / Managed Cybersecurity Services) Managed cybersecurity service offering governance and strategy, technical security, monitoring and technical assistance, security gap audits, security exercises and shared/mutualised CISO (RSSI) services. Adacis holds Lot 5 of the 'Prestations Cybersécurité' framework agreement.
- Audit PASSI (PASSI Élevé LPM Security Audits) Qualified PASSI Élevé LPM security audit services covering penetration testing, architecture audits, configuration audits and organizational/physical audits for sensitive systems including OIV operators.
- Audit de configuration Configuration audit services verifying that hardware and software security configurations comply with state-of-the-art practices and internal security requirements, aligned with the RGS reference framework.
- Audit de tests d'intrusion Penetration testing services that identify vulnerabilities on audited information systems and verify their exploitability and impact under real attack conditions.
- Audit d'architecture Architecture audit services verifying compliance of security practices related to the selection, positioning and implementation of hardware and software components in an information system.
- Audit organisationnel et physique Organizational and physical security audit services assessing logical and physical security organization, compliance and procedures.
- Analyse de risques Risk analysis services using the EBIOS Risk Manager method with Arimes, ISO 27005, and end-to-end digital risk management accompaniment.
- Gestion de crises Crisis management services covering preparation (response plan development), response (detection and isolation of affected systems) and remediation (restoration of systems and data).
- Investigation OSINT OSINT investigation services including open-source intelligence gathering, attack surface and digital footprint mapping, OSINT scoring and cyber threat monitoring.
- Développement sécurisé Secure development services integrating security into agile development workflows (DevSecOps), covering fullstack development in PHP, JavaScript, SQL, Symfony, C, C++, Ruby and other languages.
- Intégration Security equipment integration and technical expertise services, including technical and organizational training, security awareness, and ISO 27001 and GDPR compliance support.
- ISO 27001 ISO 27001 information security management system implementation and compliance accompaniment services, including externalized DPO, delegated CISO and NIS2 directive support.
- Accompagnement NIS2 NIS2 directive compliance accompaniment services helping organizations meet the EU cybersecurity requirements under the NIS2 framework.
- Formations Cybersecurity training services covering ISO 27001, ISO 27005, OSINT, DevSecOps, firewall configuration and integration, and cybersecurity awareness. Qualiopi certified.
Quantifiable outcome
- PASSI qualification by ANSSI since April 2020
- +2 more outcomes
Companies that use Adacis
Customer profileSegments3 records
Ideal customer profiles3 records
Adacis technology and API
TechnologyTechnology focussed Yes
API detail
- Has API
- No
- API docs
- API detail
Core technology
AI maturity
App detail
Integration1 record
AI capability5 records
Feature9 records
Adacis partnerships and signals
Strategic signalPartnerships
One partnership is on record.
- StormshieldcorePlatinum partner status - highest level of partnership and expertise in Stormshield security solutions including network security, endpoint protection, and data security. Stormshield is a French cybersecurity vendor specializing in cybersecurity solutions for enterprises.
Scale indicators4 records
Recent moves6 records
Expansion highlights6 records
Adacis competitors and assessment
Company assessmentBroad incumbents
- Orange Cyberdefense: Orange Cyberdefense is the cybersecurity arm of Orange and a major French/European MSSP and audit provider. It overlaps directly with Adacis in PASSI-qualified security audits, GRC advisory, and managed detection services, but operates at vastly greater scale with a broader portfolio of services and a global footprint.
- Thales Cybersecurity (Thales Cyber & Digital): Thales provides cybersecurity services and solutions for critical infrastructure and defence, including risk management, audits, and identity solutions. It is a benchmark PASSI-credentialed competitor for OIV contracts and competes with Adacis for high-assurance cybersecurity engagements.
- WALLIX: WALLIX is a French cybersecurity vendor focused on Privileged Access Management (PAM) and identity security. While more product-led than Adacis, it operates in the adjacent IAM/PAM space where Adacis also has offerings (Road OTP) and shares the French cybersecurity regulatory customer base.
- Capgemini Cybersecurity: Capgemini delivers large-scale cybersecurity consulting, GRC, and managed security services to global enterprises, including French OIV-adjacent clients. It competes with Adacis for enterprise risk, compliance, and ISO 27001/NIS2 mandates, though as part of a much broader IT services portfolio.
Direct peers
- Devensys Cybersecurity: Devensys is a French cybersecurity services firm offering audits, GRC, SOC, and ISO 27001/NIS2 advisory. It overlaps with Adacis's professional services portfolio and serves a comparable mix of ETI and OIV clients in France.
- Riskinsight (EBIOS Risk Manager tooling competitor): Riskinsight is a French vendor offering EBIOS Risk Manager tooling and GRC support. It is a direct peer to Adacis's Arimes/Agrios portfolio, competing for the same EBIOS RM-trained risk manager buyers within French enterprises and public sector.
- Synacktiv: Synacktiv is a French cybersecurity consultancy specialising in offensive security, penetration testing, and PASSI-qualified audits. It is one of the closest direct competitors to Adacis in the PASSI Élevé LPM audit market and serves a similar OIV and large-enterprise customer base.
- Yogosha: Yogosha is a French offensive-security platform combining bug bounty and pentest services with managed security expertise. It competes with Adacis on penetration testing and PASSI-style engagements, particularly for large enterprises seeking AI-augmented testing capabilities.
Emerging players
- Sekoia.io: Sekoia is a French cybersecurity SaaS provider delivering a SIEM/XDR platform with threat intelligence capabilities. It overlaps with Adacis in OSINT/cyber threat monitoring (Basileak) and in serving French MSSP-style use cases, though as a software-native vendor.
Others
- Stormshield: Stormshield is a French cybersecurity product vendor (network, endpoint, data) and Adacis's Platinum partner. It is included as an ecosystem peer rather than a direct competitor — Adacis integrates and resells Stormshield technology as part of its audit and integration services.
Market position
Strengths5 records
Weaknesses5 records
Competitive moat4 records
Key risks6 records
Key highlights6 records
Customer concentration
Adacis social profiles
Digital presenceAdacis compliance and trust
Trust signalCompliance4 records
Adacis financial estimates
Financial estimateRevenue estimate
Valuation estimate
Adacis leadership team
Management profileNumber of profiles
Profiles1 record
Adacis funding detail
Funding detailFunding overview
Funding rounds
Investors
Funding detail is available on the Subscription and Enterprise plan.Contact sales →
Adacis M&A and investment
M&A and investmentM&A
Investments
M&A and investment is available on the Subscription and Enterprise plan.Contact sales →
Frequently asked questions about Adacis
What does Adacis do?
Adacis provides PASSI-qualified cybersecurity audits (penetration testing, architecture, configuration, organizational/physical), EBIOS-based risk analysis, crisis management, OSINT investigation, secure development (DevSecOps), security equipment integration, ISO 27001 and NIS2 compliance support, and cybersecurity training. The company complements these services with proprietary software tools (Arimes, Agrios, Basileak, Pentest LLM, Medusa, Road, Vizird, Secure Upload) and a shared CISO offering (Canut).
Is Adacis a public or private company?
Adacis is a private company. It is classified as founder individual operated bootstrapped and is currently operating.
When was Adacis founded?
Adacis was founded in 2003. It employs 11 to 50 people.
Where is Adacis based?
Adacis is headquartered in Bayas, France, in the Europe region.
How does Adacis make money?
One revenue line is on record: cybersecurity Professional Services.
Who are Adacis's main competitors?
Broad incumbents on record are Orange Cyberdefense, Thales Cybersecurity (Thales Cyber & Digital), WALLIX and Capgemini Cybersecurity. Direct peers are Devensys Cybersecurity, Riskinsight (EBIOS Risk Manager tooling competitor), Synacktiv and Yogosha. Sekoia.io is listed as an emerging player. Stormshield is listed as an others.
Does Adacis have an API?
No public API is recorded for Adacis.
What industry is Adacis in?
Adacis's product category is Cybersecurity Services. Its primary akta.pro industry code is BPAHAEAG, Cybersecurity & Identity Consulting, with a secondary code of HDADAIAD, IT Risk Management (ITRM). Its NAICS code is 541511 and its SIC code is 7370.