NetSPI is a proactive cybersecurity company focused on helping organizations find, validate, prioritize, and remediate the vulnerabilities that matter most. Founded in 2001, it combines offensive security expertise with a unified software platform to support continuous security testing across applications, networks, cloud environments, AI systems, and broader attack surfaces.
At the center of the portfolio is The NetSPI Platform, which brings together penetration testing as a service, attack surface management, breach and attack simulation, and remediation workflows in one environment. NetSPI emphasizes human-led, AI-accelerated testing, real-time collaboration, and operational reporting that helps security teams move from isolated assessments to ongoing exposure management programs.
Offerings, Capabilities, and Integrations
NetSPI delivers a blend of expert-led services and platform-enabled workflows designed for continuous security validation. Its capabilities span application, network, cloud, AI/ML, mainframe, hardware, and IoT testing, along with attack surface monitoring, validation of detective controls, red teaming, and strategic assessment services. The company’s model is built to surface exploitable issues, add business context, and help teams focus remediation on the highest-impact risks.
Integration is a core part of how NetSPI operationalizes findings. The NetSPI Platform offers API support and more than 1,000 integrations across ticketing and workflow systems, identity providers, asset and device management tools, vulnerability data sources, and security controls, allowing findings to move into existing remediation and governance processes. NetSPI also connects with cloud environments to extend visibility into AWS, Azure, and Google Cloud assets and configurations.
Products and Services
- The NetSPI Platform: NetSPI’s flagship platform unifies pentesting workflows, attack surface visibility, vulnerability prioritization, collaboration with testers, reporting, and remediation management in a single environment.
- Penetration Testing as a Service (PTaaS): Penetration Testing as a Service (PTaaS) gives customers ongoing access to expert-led application, network, cloud, and other pentesting services with platform-based findings management, reporting, and remediation workflows.
- Attack Surface Visibility: Attack Surface Visibility provides always-on visibility into internal and external attack surfaces, including external asset discovery, cloud configuration reviews, dark web monitoring, and domain monitoring.
- Vulnerability Prioritization: Vulnerability Prioritization helps teams rank issues using business context, NetSPI exploitation data, and factors such as CVSS, EPSS, and known exploited vulnerabilities so they can fix what matters first.
- Breach and Attack Simulation (BAS) as a Service: Breach and Attack Simulation (BAS) as a Service validates how well endpoint, network, SIEM, and managed security controls detect real-world attacker behaviors through expert-led simulation and platform-based retesting.
- Security Assessments & Advisory: Security Assessments & Advisory combines technical assessments and strategic guidance across services such as red teaming, social engineering, detective controls testing, threat modeling, cybersecurity maturity work, and secure code review.
- NetSPI External Attack Surface Management (EASM): NetSPI External Attack Surface Management (EASM) continuously discovers, inventories, tests, and prioritizes exposures across internet-facing assets and external environments.
- NetSPI Cyber Asset Attack Surface Management (CAASM): NetSPI Cyber Asset Attack Surface Management (CAASM) delivers real-time visibility into internal assets, control coverage gaps, and contextualized risk to support continuous asset and exposure management.
- AI / ML Pentesting: AI / ML Pentesting assesses the resilience of AI systems and applications, including model evaluation, jailbreak testing, and security testing for LLM-enabled use cases.
- Cloud Pentesting: Cloud Pentesting provides expert-led testing for AWS, Azure, and Google Cloud environments, combining manual and automated methods to uncover misconfigurations, identity issues, and chained attack paths.
- Detective Controls Testing: Detective Controls Testing uses focused attack simulations to evaluate whether EDR, SIEM, SOAR, XDR, and MSSP controls are logging, detecting, alerting, and responding effectively.
- Red Team Operations: Red Team Operations simulates realistic attacks to test security controls, response processes, and organizational readiness through scenarios such as threat intelligence-led exercises, assumed breach, and black box testing.
- Social Engineering: Social Engineering services test human and physical security controls through phishing, vishing, and on-site scenarios designed to expose procedural and awareness gaps.
- Secure Code Review: Secure Code Review applies manual review and SAST-supported analysis to identify vulnerabilities in source code, frameworks, and libraries that automated scanning alone may miss.
Target Customers
NetSPI primarily targets enterprises that run complex technology estates, face significant regulatory or business risk, and need a repeatable security testing program rather than one-off projects. Its platform and services are well suited to security leaders managing ongoing pentesting, attack surface monitoring, control validation, and remediation across distributed environments.
Its customer evidence points to strong fit with large and highly scrutinized organizations in sectors such as financial services, healthcare, cloud and technology, software, insurance, utilities, education technology, and managed security services. NetSPI also appears positioned for teams spanning security operations, application security, cloud security, vulnerability management, and broader cyber risk programs.
Cloud Integrations and Marketplace
- AWS Marketplace: NetSPI has a verified AWS Marketplace listing for The NetSPI Platform, and its attack surface capabilities also include AWS cloud configuration reviews to identify insecure settings and exposures.
- Microsoft Azure: NetSPI supports Azure through weekly Azure cloud configuration scans in Attack Surface Visibility, Azure-focused breach and attack simulation scenarios, and cloud pentesting services for Azure environments.
- Google Cloud: NetSPI supports Google Cloud through cloud pentesting services and documented GCP integrations within its ASM capabilities, enabling additional visibility into cloud assets and exposures.
Key People
- Aaron Shilts: President & Chief Executive Officer
- Jay Golonka: Chief Financial Officer
- Sridhar Jayanthi: Interim Chief Product and Technology Officer
- Caroline Japic: Chief Marketing Officer
- Bryan Wiese: Chief Customer Officer
- Joe Evangelisto: Chief Information Security Officer
- Heather Crosley: Chief People Officer
- Mike Balwanz: Head of Sales
- Nabil Hannan: Field CISO
Key Facts
- Headquarters: Minneapolis, Minnesota, United States
- Employees: 600+
- Annual Revenue: $150M-$176M
- Parent Company: NetSPI Parent Holdings, LP
- Subsidiaries: NetSPI UK Ltd.; NetSPI Canada Ltd.; NetSPI India Private Ltd.
- Publicly Listed: Private
Analyst Recognitions
- Gartner: 2025 Gartner Hype Cycle for Application Security – Sample Vendor in Penetration Testing as a Service (PTaaS).
- Forrester: 2026 The Proactive Security Platforms Landscape, Q1 2026 – Notable Vendor.