| 
                             Attribute 
                         | 
                        
                             Essential 
                         | 
                        
                             Advanced 
                         | 
                        
                             Orca 
                         | 
                    
| 
                             Focus 
                         | 
                        |||
| 
                             Extras 
                         | 
                        
                             None 
                         | 
                        
                             None 
                         | 
                        
                             AI-SPM,
                                    API
                                        Security, DSPM, IAM
                                        & CIEM, SAST and SCA 
                         | 
                    
| 
                             Headcount 
                         | 
                        |||
| 
                             Headcount distribution 
                         | 
                        |||
| 
                             Headcount growth 
                         | 
                        |||
| 
                             Headquarters 
                         | 
                        |||
| 
                             Countries 
                         | 
                        |||
| 
                             Reputation 
                         | 
                        
                             Same 
                         | 
                        
                             9.15 from 496 reviews
                                        over 5 years on G2, Gartner, Peer
                                        Spot, Software
                                        Advice and TrustRadius
                             
                         | 
                    |
| 
                             Followers 
                         | 
                        
                             Same 
                         | 
                        ||
| 
                             Research Firms 
                         | 
                        
                             None 
                         | 
                        
                             None 
                         | 
                        
                             | 
                    
| 
                             Founded 
                         | 
                        2001 | ||
| 
                             Funding 
                         | 
                        
                             Bootstrapped 
                         | 
                        
                             Same 
                         | 
                        
                             $632M
                                        USD in 5 rounds from 18 investors 
                         | 
                    
| 
                             Acquisitions 
                         | 
                        
                             None 
                         | 
                        
                             None 
                         | 
                        
                             Acquired 0 times and made
                                2
                                    acquisition
                             
                         | 
                    
| 
                             Revenue 
                         | 
                        |||
| 
                             CVE 
                         | 
                        
                             
                                0 CVEs reported to MITRE
                             
                         | 
                    ||
| 
                             Compliance 
                         | 
                        
                             SOC 2 Type
                                        II and SOC
                                    3 
                         | 
                        ||
| 
                             Bug bounty 
                         | 
                        
                             No 
                         | 
                    ||
| 
                             Visits 
                         | 
                        |||
| 
                             Authority 
                         | 
                        |||
| 
                             Vulnerability database 
                         | 
                        
                             None 
                         | 
                    ||
| 
                             Content 
                         | 
                        |||
| 
                             Knowledge base 
                         | 
                        
                             13 KB sections
                             
                         | 
                        
                             No information available 
                         | 
                    |
| 
                             Community 
                         | 
                        
                             No 
                         | 
                    ||
| 
                             Sync training 
                         | 
                        
                             1 workshop 
                         | 
                        ||
| 
                             Async training 
                         | 
                        
                             3 product use courses, all
                                free 
                         | 
                        
                             No 
                         | 
                    |
| 
                             Distribution 
                         | 
                        
                             Same 
                         | 
                        ||
| Marketplaces | AWS, Azure and GCP | ||
| 
                             Freemium 
                         | 
                        
                             No 
                         | 
                        
                             No 
                         | 
                        
                             No 
                         | 
                    
| 
                             Free trial 
                         | 
                        |||
| 
                             Demo 
                         | 
                        |||
| 
                             Open Demo 
                         | 
                        
                             No 
                         | 
                        
                             No 
                         | 
                        
                             No 
                         | 
                    
| 
                             Pricing 
                         | 
                        |||
| 
                             Pricing tiers 
                         | 
                        
                             1 plan 
                         | 
                        
                             1 plan 
                         | 
                        
                             4 plans
                             
                         | 
                    
| 
                             Minimum term 
                         | 
                        |||
| 
                             Minimum payment period 
                         | 
                        |||
| 
                             Minimum capabilities 
                         | 
                        |||
| 
                             Minimum scope 
                         | 
                        
                             1 group 
                         | 
                        
                             1 author 
                         | 
                        
                             100 workloads
                             
                         | 
                    
| 
                             Pricing drivers 
                         | 
                        |||
| 
                             Minimum monthly payment 
                         | 
                        
| 
                                 Attribute 
                             | 
                            
                                 Essential 
                             | 
                            
                                 Advanced 
                             | 
                            
                                 Orca 
                             | 
                        
| 
                                 
                                    PTaaS
                                 
                             | 
                            
                                 No 
                             | 
                            
                                 No 
                             | 
                        |
| 
                                 
                                    Reverse engineering
                                 
                             | 
                            
                                 No 
                             | 
                            No | |
| 
                                 
                                    Secure code review
                                 
                             | 
                            
                                 No 
                             | 
                            
                                 No 
                                 | 
                        |
| 
                                 
                                    Pivoting
                                 
                             | 
                            
                                 No 
                             | 
                            
                                 No 
                             | 
                        |
| 
                                 
                                    Exploitation
                                 
                             | 
                            
                                 No 
                             | 
                            
                                 No 
                             | 
                        |
| 
                                 Manual reattacks 
                             | 
                            
                                 Not applicable 
                             | 
                            
                                 Not applicable 
                             | 
                        |
| 
                                 Zero-day
                                        vulnerabilities 
                             | 
                            
                                 None 
                             | 
                            
                                 Continuous zero-day vulnerability research
                                 
                             | 
                            
                                 None 
                             | 
                        
| 
                                 
                                    SLA
                                 
                             | 
                            Availability | ||
| 
                                 Min availability 
                             | 
                            
                                 >=99.95%
                                    per minute LTM 
                             | 
                            
                                 >=90% per month
                                 
                             | 
                        |
| 
                                 After-sale guarantees 
                             | 
                            
                                 No 
                             | 
                            
                                 Yes 
                             | 
                            |
| 
                                 
                                    Accreditations
                                 
                             | 
                            AWS Built-in Competency, Amazon Linux Ready Product and Security ISV Competency | ||
| 
                                 
                                    Hacker certifications
                                 
                             | 
                            
                                 Not applicable 
                                 | 
                            
                                 Not applicable 
                                 | 
                        |
| 
                                 
                                    Type of contract
                                 
                             | 
                            
                                 Employee 
                             | 
                            
                                 Same 
                             | 
                            |
| 
                                 Endpoint control 
                             | 
                            
                                 Not applicable 
                             | 
                            
                                 Total 
                             | 
                            
                                 Not applicable 
                             | 
                        
| 
                                 Channel control 
                             | 
                            
                                 Not applicable 
                             | 
                            
                                 Total 
                             | 
                            
                                 Not applicable 
                             | 
                        
| 
                                 
                                    Standards
                                 
                             | 
                            
                                 Some requirements from 67 standards,
                                        10 in common and 57 additional 
                             | 
                            
                                 All requirements from the same standards
                                 
                             | 
                            
                                 21 standards, 10
                                    in common and 11 additional 
                             | 
                        
| 
                                 
                                        Detection method
                                     
                                 | 
                            
                                 Automated
                                        tools and AI
                                 
                             | 
                        ||
| 
                                 
                                    Remediation
                                 
                             | 
                            
                                 5,
                                    2 in common and 3 additional
                                 
                             | 
                            
                                 Same, plus 1
                                 
                             | 
                            
                                 3, 2 in common and 1
                                    additional 
                             | 
                        
| 
                                 
                                    Outputs
                                 
                             | 
                            
                                 5,
                                        3 in common and 2 additional 
                                 | 
                            
                                 Same, plus 2
                                 
                             | 
                            
                                 5, 3 in
                                        common and 2 additional 
                             | 
                        
| 
                             Attribute 
                         | 
                        Essential | 
                             Advanced 
                         | 
                        
                             Orca 
                         | 
                    
| 
                             
                                ASPM
                             
                         | 
                        
                             No 
                         | 
                    ||
| 
                             API 
                         | 
                        |||
| 
                             
                                IDE
                             
                         | 
                        
                             5 functionalities, none in common 
                         | 
                        
                             Same, plus
                                1 functionality 
                         | 
                        |
| 
                             
                                CLI
                             
                         | 
                        |||
| 
                             
                                CI/CD
                             
                         | 
                        |||
| 
                             Vulnerability sources 
                         | 
                        
                             4 sources
                             
                         | 
                        
                             No information available 
                         | 
                    |
| 
                             Threat model alignment 
                         | 
                        
                             No 
                         | 
                    ||
| 
                             Priority criteria 
                         | 
                        
                             Same 
                         | 
                        ||
| 
                             Custom prioritization 
                         | 
                        |||
| 
                             Scanner origin 
                         | 
                        |||
| 
                             
                                SCA
                             
                         | 
                        
                             9 package
                                        managers, all in common 
                         | 
                    ||
| 
                             AI security 
                         | 
                        
                             No 
                         | 
                        ||
| 
                             
                                Reachability
                             
                         | 
                        
                             12 languages
                             
                         | 
                        
                             Yes. No information
                                        available 
                             | 
                    |
| 
                             Reachability type 
                         | 
                        
                             No information available 
                         | 
                    ||
| 
                             
                                SBOM
                             
                         | 
                        9 package managers, 7 in common and 2 additional | ||
| 
                             Malware detection 
                         | 
                        
                             Yes 
                         | 
                        
                             Yes 
                         | 
                        |
| 
                             Autofix on components 
                         | 
                        
                             No 
                         | 
                        
                             No 
                         | 
                        
                             No 
                         | 
                    
| 
                             
                                Containers
                             
                         | 
                        
                             Yes.
                                    No information available 
                             | 
                    ||
| 
                             
                                Source SAST 
                            
                                (languages)
                                 
                         | 
                        
                             12,
                                        14 in common and 4 additional 
                         | 
                        
                             29 languages, 14 in common and 15
                                    additional 
                         | 
                    |
| 
                             Source SAST 
                            (frameworks) 
                         | 
                        
                             No
                                    information available 
                         | 
                    ||
| 
                             Custom rules 
                         | 
                        
                             No 
                         | 
                        
                             No 
                         | 
                        |
| 
                             IaC 
                         | 
                        
                             6, 4 in common and 2
                                    additional
                             
                         | 
                        
                             4, 1 in common and 3
                                    additional
                             
                         | 
                        
                             7,
                                5 in common and 2 additional 
                         | 
                    
| 
                             
                                Binary SAST
                             
                         | 
                        
                             1 type
                                    of binary
                             
                         | 
                        
                             Same,
                                plus 2 types of binaries 
                         | 
                        
                             No
                             
                         | 
                    
| 
                             
                                DAST
                             
                         | 
                        
                             No  | 
                    ||
| 
                             API security testing 
                         | 
                        
                             No 
                         | 
                        
                             Yes. No
                                    information
                                    available 
                         | 
                    |
| 
                             
                                IAST
                             
                         | 
                        
                             No 
                         | 
                        
                             No 
                         | 
                        
                             No 
                         | 
                    
| 
                             
                                CSPM
                             
                         | 
                        Yes | ||
| 
                             ASM 
                         | 
                        
                             No 
                         | 
                        
                             No 
                         | 
                        
                             No 
                         | 
                    
| 
                             
                                Secrets
                             
                         | 
                        
                             Same,
                                    plus verify other attack vectors and secrets
                                    exploitability 
                         | 
                        
                             Yes.
                                No information available 
                         | 
                    |
| 
                             
                                AI
                             
                         | 
                        
                             3 functions,
                                1 in common and 3 additional 
                         | 
                        4 functions, 1 in common and 3 additional | |
| 
                             MCP 
                         | 
                        Yes | ||
| 
                             
                                    Open-source
                                 
                             | 
                        
                             Not applicable 
                         | 
                        
                             No 
                         | 
                    |
| 
                             Provisioning as Code 
                         | 
                        
                             No 
                         | 
                    ||
| 
                             
                                Deployment
                             
                         | 
                        
                             SaaS and
                                on-premises
                             
                            
                         | 
                    ||
| Regions | |||
| 
                             
                                Status
                             
                         | 
                        |||
| 
                             
                                Incidents
                             
                         | 
                        
| 
                             Attribute 
                         | 
                        
                             Essential 
                         | 
                        
                             Advanced 
                         | 
                        
                             Orca 
                         | 
                    
| 
                             
                                SCM
                             
                         | 
                        
                             6,
                                    3 in common and 3 additional 
                         | 
                        
                             3, all in
                                common 
                         | 
                    |
| 
                             
                                Binary repositories
                             
                         | 
                        
                             None 
                         | 
                        
                             None 
                         | 
                        
                             None 
                         | 
                    
| 
                             
                                Ticketing
                             
                         | 
                        
                             3,
                                1 in common
                                and 2 additional 
                         | 
                        
                             4, 1 in common and 3 additional  | 
                    |
| 
                             
                                ChatOps
                             
                         | 
                        None | 
                             None 
                         | 
                        |
| 
                             
                                IDE
                             
                         | 
                        
                             3,
                                1 in common
                                and 2 additional 
                         | 
                        
                             1 in common  | 
                    |
| 
                             
                                CI/CD
                             
                         | 
                        
                             21, 5 in common and 16 additional 
                         | 
                        
                             5, all
                                    in common 
                             | 
                    |
| 
                             
                                SCA
                             
                         | 
                        
                             Native and 2 integrations  | 
                    ||
| 
                             
                                Container
                             
                         | 
                        |||
| 
                             SAST
                             
                         | 
                        
                             Native powered by Opengrep and 1 integration  | 
                    ||
| 
                             
                                DAST
                             
                         | 
                        
                             None  | 
                    ||
| 
                             
                                IAST
                             
                         | 
                        None | 
                             None 
                         | 
                        
                             None 
                         | 
                    
| 
                             
                                Cloud
                             
                         | 
                        
                             3,
                                all in
                                common 
                         | 
                        
                             5, 3 in common
                                and 2 additional 
                         | 
                    |
| 
                             
                                CSPM
                             
                         | 
                        Native and 7 integrations | ||
| 
                             
                                Secrets
                             
                         | 
                        
                             None  | 
                    ||
| 
                             Remediation 
                         | 
                        
                             None 
                         | 
                        
                             None 
                         | 
                        
                             None 
                         | 
                    
| 
                             Bug bounty 
                         | 
                        
                             None 
                         | 
                        
                             None 
                         | 
                        
                             None 
                         | 
                    
| 
                             Vulnerability management 
                         | 
                        
                             None 
                         | 
                        
                             None 
                         | 
                        |
| 
                             
                                Compliance
                             
                         | 
                        
                             None 
                         | 
                        
                             None 
                         |