Cimento is a security platform that runs AI‑generated, multi‑channel attack simulations—including phishing via email, SMS, and voice—and automatically adapts each scenario to the employee’s role and behavior. It provides personalized, short training modules and continuously updates a dynamic risk score for every user, triggering automated remediation such as additional training or access restrictions without manual effort.
Funding
Funding not disclosed

Founders
Product
Problem
Organizations struggle to keep security awareness training relevant and effective because traditional programs rely on static content and single-channel phishing tests, leaving employees vulnerable to evolving multi-channel attacks such as SMS scams and AI-generated deepfake voice calls.
Solution
Cimento offers a dynamic security awareness platform that simulates realistic multi-channel attacks—including email, SMS, and AI‑generated deepfake voice—to mirror current attacker tactics. An AI‑driven engine creates short, role‑specific training modules that are delivered immediately after each simulated incident or before high‑risk actions. The platform continuously calculates a living risk score for every employee based on simulation outcomes, behavior patterns, and signals from existing security tools. These risk scores trigger automated remediation, such as adaptive training assignments or access restrictions, without requiring manual intervention. By combining multi‑turn attack scenarios, on‑demand content generation, and automated response, Cimento keeps awareness training aligned with real‑world threats.
Target Audience
Primary customers are security and compliance teams in mid‑size to large enterprises that need continuous, automated security awareness training and risk mitigation across their workforce.
Features
- Multi‑channel attack simulations covering email, SMS, and AI‑generated deepfake voice content, customized to user role and behavior
- AI‑powered LLM engine that generates 60‑90 second, role‑specific training modules triggered by simulations or risky actions
- Living employee risk scores that update continuously from simulation results and integrated security signals
- Automated remediation actions, including adaptive training assignment and access restriction for high‑risk users
- Multi‑turn phishing sequences that unfold across multiple touchpoints to emulate realistic attack conversations
- On‑demand AI content builder that creates production‑ready training modules from simple scenario descriptions