Sonrai Security develops public cloud identity and access management software focused on permissions security, least-privilege enforcement, and cloud privileged access management. The company positions its platform around helping organizations control identity, access, and permissions risk across AWS, Microsoft Azure, and Google Cloud without relying on legacy credential-vaulting approaches.
Its current market narrative centers on turning cloud permissions intelligence into direct action. Sonrai Security emphasizes cloud-native policy enforcement, rapid path-to-least-privilege outcomes, and support for developer and operations teams that need stronger controls without disrupting day-to-day cloud work.
Offerings, Capabilities, and Integrations
Sonrai Security combines permissions intelligence, graph-based analysis, and policy-driven automation to identify effective permissions, overprivileged identities, dormant accounts, unused services, and risky third-party access. Its approach is designed to enforce least privilege through cloud-native, organization-level controls while preserving actively used access and avoiding inline disruption to running workloads.
The platform is built to plug into existing cloud and identity operations. Sonrai Security supports ChatOps-driven request and approval flows through Slack and Microsoft Teams, records access changes in ITSM workflows, offers SSO through SAML and OpenID Connect-based identity providers, and exposes a GraphQL API for automation, reporting, and integration use cases.
Products and Services
- Cloud Permissions Firewall: Sonrai Security’s flagship platform for cloud-native least-privilege enforcement. It analyzes real permission usage, protects privileged permissions, quarantines unused IAM users and roles, and disables unused services or regions through centrally managed policies and approval workflows.
- WALLy Cloud PAM Agent: AI-driven cloud permissions and PAM agent that helps teams analyze identity and access data, surface privilege risk, propose remediation, and support just-in-time access and privilege reduction with human review guardrails.
- Privilege Inspector: Privilege analysis tool from Sonrai Security that helps teams evaluate cloud permissions and identify highly privileged or risky access. Company-controlled descriptions indicate it is positioned as a free tool for reviewing AWS IAM policies, GCP role definitions, and GCP deny policies.
- Just-in-Time Access: Time-limited, approval-based access capability within Cloud Permissions Firewall that removes standing privileges, routes requests through Slack, Microsoft Teams, or email, and auto-revokes access with auditable session records and summaries.
Target Customers
Sonrai Security targets cloud-first organizations that run complex AWS, Microsoft Azure, and Google Cloud environments and need to reduce identity and permission risk without slowing engineering delivery. Its messaging is aimed at security, CloudOps, and DevOps teams responsible for securing access across multi-account estates.
The company appears especially aligned to enterprises with regulated or high-consequence environments, including large financial institutions and other Fortune 100 or highly regulated organizations. Its use cases also extend to teams managing human, machine, AI, and third-party identities at organization, OU, and account scope.
Cloud Integrations and Marketplace
- AWS Marketplace: Sonrai Security maintains an AWS Marketplace listing for its enterprise cloud security offering. Its AWS ecosystem presence also includes documented integration with AWS Control Tower and newer Amazon Bedrock-backed AI features tied to privileged access workflows.
- Microsoft Azure Marketplace: Sonrai Security is present in Microsoft Azure Marketplace through Sonrai Security for Microsoft Sentinel. Its Microsoft ecosystem integrations also span Sentinel alert visibility, Microsoft Teams-based approvals, and Azure AD-related identity workflows.
Key People
- Brendan Hannigan: CEO & Co-Founder
- Sandy Bird: CTO & Co-Founder
- Eric Kedrosky: CISO
- Todd Evers: Vice President of Sales
- Theresa Roulic: Vice President of Finance
- Aaron Breen: Vice President of Customer Success
- Jeff Moncrief: Field CTO & Head of Sales Engineering
- Karen Levy: Vice President of Product Marketing
Key Facts
- Headquarters: New York, NY, United States
- Employees: Approximately 100
- Annual Revenue: Approximately $18M-$22M
- Parent Company: None
- Subsidiaries: None
- Publicly Listed: Private
Analyst Recognitions
- Gartner: 2021 Gartner Cool Vendor in Cloud Security Posture Management (CSPM).