Risk X Group
Risk X Group is a South African vendor-independent cybersecurity firm delivering integrated governance advisory (Risk X), CREST-accredited offensive testing (RXG Labs), and 24/7 AI-enhanced managed security operations (Secure X) to enterprise and mid-market clients in regulated industries, with unique PCI SSC PFI authorisation.
- Company typePrivate
- Founded2016
- HeadquartersCape Town, South Africa
- Headcount11–50
- GTM typeB2B
- OfferingServices
What Risk X Group does
Risk X Group is a privately held South African cybersecurity firm headquartered in Durbanville, Cape Town, that operates as a vendor-independent full-stack security partner for enterprise and mid-market organisations. The company is structured around three operating divisions — Risk X (governance, risk, and compliance advisory including vCISO services and readiness for PCI DSS, ISO 27001, SOC 2, and POPIA), RXG Labs (CREST-accredited offensive security including penetration testing, red teaming, and adversary simulation), and Secure X (24/7 managed security operations including SOC, SIEM, MDR, digital forensics, and incident response) — supplemented by the DAWN dark web credential monitoring product and the RX2 Innovation Incubator for emerging capabilities in AI governance, automation, and cryptographic governance.
The underlying technology stack combines AI-enhanced security operations with applied machine learning: behavioural analytics engines establish dynamic baselines of normal user and system activity, AI-assisted correlation prioritises genuine threats to reduce analyst alert fatigue, automated containment workflows limit threat spread during incidents, and DAWN applies ML to continuous dark web monitoring. AI is also embedded in penetration testing workflows for threat intelligence gathering, vulnerability prioritisation, and reporting. The firm is the only South African company authorised by the PCI Security Standards Council as a PCI Forensic Investigator (PFI), holds CREST accreditation, and partners with the British Standards Institution to deliver ISO 27001:2022 accreditation — a credential stack few regional competitors can replicate.
The business model blends recurring revenue from managed services contracts (SOC, SIEM, MDR, managed PCI ASV scanning, dark web monitoring) with project-based revenue from CREST-accredited penetration testing, red teaming, cloud security assessments, and GRC advisory engagements. Go-to-market is consultative, anchored on direct enterprise field sales supplemented by consultation-driven inbound ('Book a Consultation', 'Talk to an Expert') and thought leadership through LinkedIn, Instagram, and website content. Primary customer segments are the payment card industry and retail (leveraging unique PFI authorisation), regulated industries (financial services, healthcare, government), and enterprise organisations requiring 24/7 security operations support. No pricing, revenue, headcount, or funding data is publicly disclosed.
Risk X Group firmographics
Firmographics- Name
- Risk X Group
- Legal name
- Risk X Group
- Website
- https://riskxgroup.com
- Company type
- Private
- Founded year
- 2016
- Operating status
- Operating
- Headcount range
- 11–50 employees
- Short description
- Risk X Group is a South African vendor-independent cybersecurity firm delivering integrated governance advisory (Risk X), CREST-accredited offensive testing (RXG Labs), and 24/7 AI-enhanced managed security operations (Secure X) to enterprise and mid-market clients in regulated industries, with unique PCI SSC PFI authorisation.
- Ownership category
- akta.pro rank
Risk X Group industry classification
Industry- Product category
- Cybersecurity Services
- NAICS
- Computer Systems Design and Related Services (54151), Other Computer Related Services (541519), Security Systems Services (56162), Computer Systems Design and Related Services (5415)
- SIC
- Services-Computer Integrated Systems Design (7373), Services-Computer Programming, Data Processing, Etc. (7370)
- akta.pro primary industry
- Managed Detection & Response (MDR) & SOC Services (HDADAGAG)
- akta.pro secondary industries
- Security Audits & Compliance (ISO 27001, SOC 2, PCI DSS, HIPAA, SOX) (BPAKADAC), Endpoint Security Managed Services (EDR/XDR) (BPAEADAH), Extended Detection & Response (XDR) (HDADAEAB)
Keywords
Where Risk X Group is headquartered
LocationHeadquarters
- HQ city
- Cape Town
- HQ country
- South Africa
- HQ region
- Africa
Offices1 record
Markets served
Risk X Group business model
Business model- GTM type
- B2B
- Offering type
- Services
- Cost components
- Personnel, Technology or R&D, Operations, Marketing or Sales, Infrastructure
Revenue model
- Managed Security Operations (SOC, SIEM, MDR): Continuous 24/7 monitoring, managed detection and response, SIEM support, and incident response services delivered through Secure X division. Provides recurring revenue through managed service contracts with customers requiring ongoing security operations.
- Professional Services - Security Testing: CREST-accredited penetration testing services including infrastructure, web app, API, mobile, and red teaming engagements. Revenue generated on a project/engagement basis through RXG Labs division.
- Governance, Risk and Compliance Advisory: Advisory services including cyber risk assessments, compliance readiness, vCISO services, policy development, and third-party security risk assessments. Delivered through Risk X division on a consultancy engagement basis.
- Incident Response and Digital Forensics: Incident response, digital forensics, threat hunting, and dark web monitoring services. Typically consumed on an as-needed basis during security incidents or proactively as part of retainer arrangements.
Go-to-market motion3 records
Distribution channels2 records
Marketing channels4 records
Risk X Group product offering
Product offeringCore offering
Risk X Group provides integrated cybersecurity services combining governance/risk/compliance advisory, CREST-accredited offensive security testing (penetration testing, red teaming, adversary simulation), and 24/7 managed security operations (MDR, SOC, SIEM, incident response, digital forensics, threat hunting) under a single vendor-independent partner model. The firm also offers AI-enhanced threat detection, dark web credential monitoring through its proprietary DAWN product, and compliance advisory for frameworks including PCI DSS, P2PE, ISO 27001, SOC 2, and POPIA.
Product overview
Risk X Group is a vendor-independent cybersecurity firm operating as a unified platform with three core divisions — Secure X (managed operations/SOC), Risk X (governance and advisory), and RXG Labs (offensive security testing) — supplemented by the Dawn dark web intelligence product and an Innovation Incubator. The group combines CREST-accredited penetration testing, AI-enhanced 24/7 MDR and SOC monitoring, governance and compliance advisory (PCI DSS, ISO 27001, SOC 2, POPIA), incident response, digital forensics, cloud security assessments, and AI governance into a single partner model. The divisions operate under a closed-loop security model where SOC intelligence informs testing scenarios and testing outcomes strengthen detection capabilities. AI is embedded across operations to accelerate analysis, detect anomalies, and automate investigation and response workflows.
Differentiator
Problem solved
Functional benefit
Brands
- RX2: Innovation Incubator focused on future-ready cyber resilience, assurance, compliance, and emerging technology solutions including AI, automation, and cryptographic governance.
Products and services
- Secure X (Managed Security Operations) Managed detection and response (MDR) division providing 24/7 Security Operations Centre (SOC) monitoring, SIEM support, AI-driven threat detection, incident response, digital forensics, and threat hunting. Delivers proactive protection through continuous environment monitoring for organisations requiring ongoing security operations.
- Risk X (Governance, Risk and Compliance Advisory) Governance, risk, and compliance advisory division offering security maturity assessments, vCISO services, and compliance readiness for frameworks including PCI DSS, P2PE, ISO 27001, SOC 2, and POPIA. Also covers cloud security posture reviews and AI governance advisory for organisations requiring regulatory and audit preparedness.
- RXG Labs (Offensive Security Testing) CREST-accredited offensive testing division delivering penetration testing (network, infrastructure, web app, API, mobile, wireless), red teaming, adversary simulation, PCI ASV scanning, and cloud security assessments against AWS, GCP, and Azure environments for organisations seeking independent validation of their security posture.
- DAWN Dark Web Credential Monitoring (DWCM) Dark web intelligence service powered by machine learning algorithms and threat intelligence that continuously monitors dark web forums, illicit marketplaces, data breach repositories, paste sites, private hacker communities, and encrypted channels for compromised organisational domains, email addresses, and passwords. Designed for security teams needing early warning of credential exposure.
- Managed Detection & Response (MDR) AI-driven MDR capability providing continuous 24/7 monitoring, faster investigation, and effective incident response across endpoints, networks, identities, and cloud environments. Includes real-time threat detection, automated investigation and triage, and rapid incident response with automated containment workflows for organisations needing outsourced SOC capabilities.
- Managed PCI ASV Scanning Managed Approved Scanning Vendor (ASV) service handling all internet-facing PCI ASV scanning requirements, including support, remediation assistance, and false positive logging to the ASV vendor. Designed for merchants and service providers subject to PCI DSS external scanning obligations.
- Cloud Security Assessment Security assessments performed against AWS, GCP, and Azure cloud environments, providing comprehensive security overview with mappings to NIST and CIS security baselines. Reviews IAM policies, network configurations, key management, resource configurations, and cloud-native services for cloud-adopting organisations.
- Red Teaming and Adversary Simulation Offensive security testing service including red teaming, adversary simulation, and breach and attack simulation. Simulates real-world attack patterns to test organisational resilience for enterprises seeking to validate their detection and response capabilities.
- AI Governance and AI Readiness Assessments Advisory service helping organisations assess and govern AI adoption, including readiness assessments, clear oversight and governance processes, and alignment to responsible AI use principles. Targeted at organisations deploying or planning AI systems that require governance frameworks.
- Innovation Incubator (RX2) Governed innovation capability focused on emerging cybersecurity, governance, risk, and compliance solutions. Covers cybersecurity innovation, automation, artificial intelligence, continuous assurance, digital trust, cryptographic governance, and cyber resilience for organisations seeking forward-looking security capabilities.
Quantifiable outcome
- Reduced false positives through AI-assisted correlation and threat prioritisation
- +2 more outcomes
Companies that use Risk X Group
Customer profileSegments3 records
Ideal customer profiles3 records
Risk X Group technology and API
TechnologyTechnology focussed Yes
API detail
- Has API
- No
- API docs
- API detail
Core technology
AI maturity
App detail
AI capability8 records
Feature7 records
Risk X Group partnerships and signals
Strategic signalPartnerships
Two partnerships are on record, tiered core.
- BSicoreRisk X Group partners with BSi (British Standards Institution) to deliver ISO27001:2022 accreditation services to customers. This partnership enables Risk X to offer accredited ISO 27001 certification services in partnership with one of the world's leading standards organisations.
- PCI Security Standards Council (PCI SSC)coreRisk X Group is authorised by the PCI Security Standards Council (PCI SSC) to conduct payment security assessments under PCI-DSS and P2PE standards, and is authorised to conduct Payment Forensic Investigations (PFI). This authorised status positions Risk X as a trusted partner for the payment card industry's security standards body.
Scale indicators3 records
Recent moves6 records
Expansion highlights5 records
Risk X Group competitors and assessment
Company assessmentBroad incumbents
- Optiv Security: Large North American cybersecurity solutions integrator offering advisory, managed security services, and offensive testing. Comparable in delivering the full spectrum of advisory + SOC + testing, but operates at much greater scale and with broader geographic coverage.
- F-Secure (WithSecure): European-headquartered cybersecurity vendor providing managed detection and response, endpoint protection, and security consulting. Comparable in offering an integrated advisory + MDR + testing stack for mid-market and enterprise customers in regulated industries.
- Secureworks: Global pure-play MSSP delivering 24/7 managed detection and response, threat hunting, and security advisory at scale. Directly comparable on the managed SOC/SIEM/MDR offering but with a much larger customer base and global delivery model.
Direct peers
- Trustwave: Global MSSP and security advisory firm with deep PCI DSS expertise, an authorised scanning vendor service, and a global managed SOC. Highly comparable on the PCI/payments and managed security operations overlap, though at significantly larger scale.
- NCC Group: UK-headquartered cybersecurity firm combining governance/assurance advisory, CREST-accredited penetration testing, and managed detection/response services. Operates a comparable three-pillar model (advisory, testing, managed services) with similar accreditations and regulated-industry focus.
- Performanta: South African-headquartered MSSP specialising in managed detection and response, cyber risk advisory, and security consulting across Africa. The most direct regional peer, competing head-to-head in the South African and broader African enterprise market.
- Nclose: South African cybersecurity services firm offering managed SOC, SIEM, threat hunting, and compliance services. Operates in the same South African mid-market and enterprise segment and competes directly for the same MDR/GRC budgets.
- SensePost (Orange Cyberdefense): South African-origin offensive security firm (now part of Orange Cyberdefense) known for penetration testing, red teaming, and security research. Directly comparable on the CREST-accredited testing and advisory capabilities that RXG Labs delivers.
Market position
Strengths4 records
Weaknesses4 records
Competitive moat5 records
Key risks5 records
Key highlights6 records
Customer concentration
Risk X Group social profiles
Digital presenceRisk X Group compliance and trust
Trust signalCompliance3 records
Risk X Group financial estimates
Financial estimateRevenue estimate
Valuation estimate
Risk X Group leadership team
Management profileNumber of profiles
Risk X Group funding detail
Funding detailFunding overview
Funding rounds
Investors
Funding detail is available on the Subscription and Enterprise plan.Contact sales →
Risk X Group M&A and investment
M&A and investmentM&A
Investments
M&A and investment is available on the Subscription and Enterprise plan.Contact sales →
Frequently asked questions about Risk X Group
What does Risk X Group do?
Risk X Group provides integrated cybersecurity services combining governance/risk/compliance advisory, CREST-accredited offensive security testing (penetration testing, red teaming, adversary simulation), and 24/7 managed security operations (MDR, SOC, SIEM, incident response, digital forensics, threat hunting) under a single vendor-independent partner model. The firm also offers AI-enhanced threat detection, dark web credential monitoring through its proprietary DAWN product, and compliance advisory for frameworks including PCI DSS, P2PE, ISO 27001, SOC 2, and POPIA.
Is Risk X Group a public or private company?
Risk X Group is a private company. It is classified as unknown and is currently operating.
When was Risk X Group founded?
Risk X Group was founded in 2016. It employs 11 to 50 people.
Where is Risk X Group based?
Risk X Group is headquartered in Cape Town, South Africa, in the Africa region.
How does Risk X Group make money?
Four revenue lines are on record. Managed Security Operations (SOC, SIEM, MDR) is the primary driver. The others are professional Services - Security Testing, governance, Risk and Compliance Advisory and incident Response and Digital Forensics.
Who are Risk X Group's main competitors?
Broad incumbents on record are Optiv Security, F-Secure (WithSecure) and Secureworks. Direct peers are Trustwave, NCC Group, Performanta, Nclose and SensePost (Orange Cyberdefense).
Does Risk X Group have an API?
No public API is recorded for Risk X Group.
What industry is Risk X Group in?
Risk X Group's product category is Cybersecurity Services. Its primary akta.pro industry code is HDADAGAG, Managed Detection & Response (MDR) & SOC Services, with a secondary code of BPAKADAC, Security Audits & Compliance (ISO 27001, SOC 2, PCI DSS, HIPAA, SOX). Its NAICS code is 54151 and its SIC code is 7373.