SoSafe

SoSafe’s mission is to strengthen digital self-defense and become the global leader in human risk management. The company aims to empower organizations to build a robust security culture by turning employees into an active line of defense against online threats. SoSafe’s approach is rooted in behavioral science, utilizing psychological principles to drive meaningful and lasting behavioral change in employees regarding cybersecurity. This focus on the human element is a key differentiator for the company.

The company’s primary goal is to help organizations sustainably manage their human risk through engaging and impactful products. SoSafe develops GDPR-compliant awareness programs that include personalized learning experiences and smart attack simulations. By making the training enjoyable and interactive, SoSafe aims for high employee engagement, which it sees as crucial for building a strong security culture. The company is focused on continuous platform innovation, international expansion, and providing solutions that are easy to deploy and deliver a high impact with minimal effort for busy security teams.

SoSafe has established a positive market reputation, often highlighted for its innovative and effective approach to security awareness training. Customers frequently praise the realistic phishing simulations and the engaging, non-boring nature of the learning modules. The platform’s use of gamification and behavioral science is well-regarded for making learning about cybersecurity interesting and effective. While some users have noted a desire for more flexibility in customization, the overall sentiment is that SoSafe provides a valuable tool for significantly raising employee awareness and strengthening a company’s security posture.

Offerings, Capabilities, and Integrations

SoSafe provides a cybersecurity awareness and human risk management platform that utilizes a human-centric approach grounded in behavioral science. SoSafe’s offerings are designed to create a robust security culture within organizations by making secure behavior intuitive for employees. The platform’s capabilities include personalized and gamified training modules, realistic phishing simulations, and analytics to measure the effectiveness of the training. This approach gives SoSafe a competitive edge by moving beyond simple compliance and focusing on lasting behavioral change, which in turn strengthens an organization’s overall security posture against human-centric threats. SoSafe’s platform is designed for easy integration with existing IT infrastructures, including learning management systems (LMS) and email clients like Microsoft 365 and Gmail, and it supports single sign-on (SSO) with providers such as Microsoft Entra ID, Google, and Okta. SoSafe also offers an API for deeper integration with internal systems.

Products and Services

SoSafe’s core product is its security awareness and human risk management platform, which includes several key services. SoSafe’s flagship offering is its Cybersecurity Awareness Training, which uses personalized, gamified micro-learning modules to educate employees on topics like phishing, ransomware, and insider threats. Another primary service is its Smart Phishing Simulations, which are realistic and can be customized to an organization’s specific industry and risk profile. These simulations include email and SMS (smishing) attacks. A newer addition to its product suite is the Human Risk OS, a platform that consolidates all of SoSafe’s offerings to help security teams manage human risk holistically. This includes real-time risk detection and behavioral insights. SoSafe has also introduced an AI-powered chatbot named Sofie, which acts as a human security copilot, providing real-time guidance and answers to security questions. The platform also features a Phishing Report Button for easy threat reporting by employees and provides detailed analytics and reporting for administrators to track progress and measure ROI.

Target Customers

SoSafe’s target customers are businesses and organizations of all sizes, from small and medium-sized enterprises (SMEs) to large corporations and government agencies. The platform is designed to be scalable and is beneficial for any organization looking to improve its cybersecurity posture by focusing on the human element. SoSafe caters to a variety of industries, with a particular focus on sectors where data protection is critical, such as finance, healthcare, education, automotive, and mechanical engineering. These customers benefit from SoSafe’s products and services by creating a stronger security culture, which reduces the likelihood of security breaches caused by human error. The personalized and engaging nature of the training helps to ensure that employees not only learn about cybersecurity best practices but also apply them in their daily work, turning them into a proactive line of defense against cyber threats.

Cloud Integrations and Marketplaces

SoSafe provides several cloud integrations to enhance its security awareness platform. The company’s infrastructure and customer data are hosted on Amazon Web Services (AWS).

Key integrations include:

  • Microsoft Azure: SoSafe has a significant integration with Microsoft Entra ID (formerly Azure Active Directory). This allows clients to manage user access, enable enterprise Single Sign-On (SSO) using organizational accounts, and configure automatic user provisioning and de-provisioning. The connection supports both SP and IDP initiated SSO and uses the SCIM protocol for user synchronization.
  • Google Workspace: SoSafe supports Single Sign-On (SSO) with Google accounts. An integration is also available for Gmail, allowing users to report suspicious emails.
  • Other Integrations: SoSafe offers SSO capabilities with Okta. The platform also provides integrations with ServiceNow for streamlining feedback on reported phishing emails and offers a data export integration with OneDrive, which is currently in beta. A REST API is available for customers to programmatically access their training data and integrate it into other internal systems.

Regarding cloud marketplaces, SoSafe is listed on the Microsoft Azure Marketplace. The marketplace listing facilitates the procurement and deployment of the SoSafe platform for Azure customers, highlighting the seamless single sign-on experience with Microsoft Entra ID. SoSafe does not have a listing on the AWS Marketplace or the Google Cloud Marketplace.

Key People

  • Co-Founder & CEO: Dr. Niklas Hellemann
  • Chief Revenue Officer: Frank Piotraschke
  • Chief People Officer: Laura Ryan.
  • Chief Financial Officer: Ian Cole
  • Chief Technology Officer: Rob Daly
  • Chief Security Officer: Andrew Rose.
  • Chief of Staff: Thore Backen
  • VP Customer Success: Shannon Jaritz
  • VP of Global Partnerships: Megan Brown.
  • SVP Product: Mads Møller.

Key Facts

  • Headquarters Location: Cologne, Germany.
  • Number of Employees: 500+.
  • Annual Revenue: $10M – $50M.
  • Parent Company: None.
  • Subsidiary Companies: None.
  • Publicly Listed: No.

Analyst Recognition

SoSafe has been recognized by technology analyst firms Forrester and Gartner for its role in the cybersecurity awareness and training market.

  • Forrester named SoSafe a “Strong Performer” in its Forrester Wave™: Human Risk Management Solutions, Q3 2024 report. This positions SoSafe as a significant vendor in the human risk management market.
  • Gartner recognized SoSafe as a “Representative Provider” for security behavior and culture program (SBCP) capabilities.

There is no publicly available information indicating that SoSafe has been included in recent IDC MarketScape or Everest Group PEAK Matrix reports.

Enter a search