Skip to main content
PS

Permiso Security

Permiso Security offers an identity-based cloud detection and response solution that monitors user behavior and access patterns to enhance security for cloud infrastructures. This technology mitigates risks of unauthorized access and data breaches, ensuring compliance and safeguarding sensitive information.

Palo Alto, United StatesFounded 2020555K+ followers
Updated 20 months ago

Funding

$50.6M raised to dateRaised to date based on public sources. This may differ from the amount the company actually raised and is based only on what is publicly available on the internet.

ACPV
Funding rounds are not available yet.

Founders

Founder details are not available yet.

Product

Problem

Cloud environments face increasing threats from compromised identities, including both human and non-human accounts, which are often targeted by malicious actors to gain unauthorized access and escalate privileges. Existing security solutions often provide an incomplete view of identity risk across diverse cloud environments, leaving organizations vulnerable to account takeover, credential compromise, and insider threats.

Solution

Permiso Security offers a unified Identity Security Posture Management (ISPM) and Identity Threat Detection and Response (ITDR) platform that provides real-time visibility and protection for all identities across multi-cloud environments. The platform leverages a Universal Identity Graph to track identities across authentication boundaries, attributing activity to specific users even when shared credentials are used. By combining runtime and static identity enrichment, Permiso detects identity-based attacks, including account takeover, credential compromise, and insider threats, enabling security teams to respond quickly and effectively. The platform's multi-environment detection capabilities are powered by a library of threat intelligence and machine learning models that identify deviations from baseline user behaviors.

Target Audience

The primary target audience includes security teams, SOC analysts, and cloud security engineers responsible for protecting cloud infrastructure and applications from identity-based attacks, particularly in organizations with complex, multi-cloud environments.

Features

  • Universal Identity Graph: Creates a unified identity view from user activity across AWS, Okta, Terraform, GitHub, and on-premise environments.
  • Activity Attribution: Traces activity conducted through shared credentials back to the originating identity.
  • Multi-Environment Detection: Detects cloud threat actors using a library of TTPs and ML models.
  • Non-Human Identity Security: inventories non-human identities, identifies inactive, overly permissive, stale and orphaned NHIs, and monitors them for suspicious and malicious activity
  • P0 Labs Threat Intelligence: Integrates threat intelligence from Permiso's research team, consisting of ex-Mandiant advanced practices leads, who have developed over 1,500 detection signals.
  • CloudTrail Logging Evasion Detection: Detects and prevents attackers from evading CloudTrail logging by exploiting whitespace in IAM policy size limits.
  • Real-time threat detection: Detects and protects against human and non-human identity threats in real-time.
This profile is AI-generated and may contain inaccuracies.