Exabeam

Exabeam is a cybersecurity company focused on behavior intelligence and AI-driven security operations. Its portfolio is built to help security teams detect, investigate, and respond to threats faster by combining security log management, SIEM, behavioral analytics, automation, and AI assistance. The company emphasizes visibility into both human and non-human activity, including service accounts and AI agents, so teams can uncover insider threats, credential misuse, and other hard-to-spot attacks.

Exabeam supports two deployment models across its product portfolio. Its New-Scale offerings provide a cloud-native path for modern security operations, while its LogRhythm offerings serve organizations that require self-hosted, customer-managed environments. This mix positions Exabeam for enterprises that want to replace legacy SIEM tooling, augment an existing SIEM or data lake, or maintain tighter control over deployment and compliance requirements.

Offerings, Capabilities, and Integrations

Exabeam delivers threat detection, investigation, and response capabilities centered on behavioral analytics, risk-based prioritization, log management, case management, automation, and network visibility. Its approach is designed to reduce manual triage, connect related activity into clearer incident context, and help analysts focus on higher-priority threats.

The platform is built to work with existing security ecosystems as well as act as a primary security operations environment. Exabeam supports integration with third-party SIEMs, data sources, and cloud services, and it provides cloud connectors for major environments including Microsoft Azure, Amazon Web Services, and Google Cloud. Its architecture also supports organizations that want to modernize incrementally rather than replace established tooling all at once.

Products and Services

  • New-Scale Fusion: Cloud-native security operations platform that combines SIEM, behavioral analytics, dynamic risk scoring, automation, and AI-driven investigation in a unified workflow.
  • New-Scale SIEM: Cloud-native SIEM for security log management, search, detection, dashboarding, reporting, case management, and compliance-oriented monitoring.
  • New-Scale Analytics: Behavioral analytics offering that applies UEBA and Agent Behavior Analytics to detect insider threats, compromised credentials, malicious agent activity, and risky AI usage, including as an extension to an existing SIEM or data lake.
  • Exabeam Nova: Embedded multi-agent AI capability that supports natural-language search, automated triage, case summaries, threat scoring, visualization, and security posture guidance.
  • Outcomes Navigator: Security coverage and posture application that maps detections and data coverage to use cases and MITRE ATT&CK, with peer benchmarking and board-ready reporting.
  • NetMon: Network visibility and forensics solution that provides deep packet inspection, packet capture, application identification, analytics, and investigation support across Exabeam deployments.
  • LogRhythm SIEM: Self-hosted SIEM for on-premises or customer-managed private cloud deployments, with event collection, correlation, investigation workflows, SOAR capabilities, and compliance content.
  • LogRhythm Intelligence: Cloud-native add-on for LogRhythm SIEM that adds behavioral analytics, machine learning, risk-based prioritization, and identity-focused detections to self-hosted workflows.

Target Customers

Exabeam targets security operations teams that need stronger detection and faster response without adding excessive manual work. Its portfolio fits organizations running a modern SOC, especially those evaluating whether to standardize on a cloud-native platform or keep a self-hosted SIEM for control, residency, or policy reasons.

The company is well aligned to large and upper-midmarket enterprises with complex environments, broad log volumes, and a need to monitor both user and machine behavior. Its industry materials and solution focus show particular relevance for regulated and high-risk sectors such as financial services, healthcare, retail, and federal environments. Exabeam also works with MSSP and MDR organizations that deliver managed security services to their own clients.

Cloud Integrations and Marketplace

  • Google Cloud Marketplace: Exabeam Fusion is offered through Google Cloud Marketplace, and Exabeam positions its cloud-native security operations platform as built on Google Cloud.
  • Microsoft Azure: Exabeam provides Azure Cloud Connector support and Microsoft Sentinel collection capabilities so Azure and Sentinel telemetry can flow into Exabeam workflows.
  • Amazon Web Services: Exabeam provides AWS and AWS Multi-Tenant Cloud Connectors for collecting telemetry from AWS services such as CloudTrail, CloudWatch, GuardDuty, Redshift, Shield, and Inspector.
  • Google Cloud: Exabeam supports Google Cloud Platform and Google Cloud Pub/Sub connectors for ingesting Google Cloud audit and service data into its platform.

Key People

  • Peter Harteveld: Chief Executive Officer
  • Nir Polak: Chairman of the Board and Co-founder
  • Mike Byron: Chief Financial Officer
  • Steve Wilson: Chief AI and Product Officer
  • Joanne Wong: Chief Marketing Officer
  • Kish Dill: Chief Customer Success Officer
  • David Kennedy: Chief Technology Officer
  • Kiley LePage: Chief Legal Officer
  • Matt Sarafian: Chief People Officer
  • Kevin Kirkwood: Chief Information Security Officer

Key Facts

  • Headquarters: Broomfield, Colorado, United States
  • Employees: Approximately 875
  • Annual Revenue: Undisclosed
  • Parent Company: Thoma Bravo
  • Subsidiaries: None
  • Publicly Listed: No (privately held)

Analyst Recognitions

  • Gartner: 2025 Gartner Magic Quadrant for Security Information and Event Management – Leader.
Exabeam

Enter a search