
Sicura
The licensed commercial edition of an industry-leading open-source software designed for enterprise and government users that need advanced platform support and rapid out-of-the-box deployment for compliance automation.
Date | Investors | Amount | Round |
---|---|---|---|
investor | €0.0 | round | |
* | N/A | Seed | |
Total Funding | 000k |
USD | 2022 | 2023 |
---|---|---|
Revenues | 0000 | 0000 |
% growth | - | 32 % |
EBITDA | 0000 | 0000 |
Profit | 0000 | 0000 |
EV | 0000 | 0000 |
EV / revenue | 00.0x | 00.0x |
EV / EBITDA | 00.0x | 00.0x |
R&D budget | 0000 | 0000 |
Source: Dealroom estimates
Related Content
Sicura operates as a cybersecurity entity specializing in Security Control Management (SCM), providing automated security control enforcement for both government and commercial sectors. The company traces its origins to a research project within Onyx Point, a government contractor focused on IT infrastructure and security. This project, which aimed to automate compliance for the National Security Agency, was later open-sourced through the NSA's Technology Transfer Program and became the foundational technology for Sicura when it spun out of Onyx Point in September 2021.
The firm was established in 2021 and is headquartered in Baltimore, Maryland. Lisa Umberger is a co-founder and the CEO of the company. Sicura has secured an undisclosed amount in a seed funding round led by Squadra Ventures, with participation from Inner Loop Capital, BlueWing Ventures, and CoFactor Ventures. This capital is intended to fuel the expansion of its sales, business development, and marketing operations.
Sicura's core offering is a security and compliance platform designed to enforce and remediate technical security controls. The platform bridges the communication gap between security and engineering teams by automating the process of fixing misconfigurations and preventing security drift in cloud and hybrid environments. It helps organizations map their system configurations to guidelines from the National Institute of Standards and Technology (NIST) and the Center for Internet Security (CIS). The system provides automated remediation for security issues across the operating system and the rest of the technology stack. Serving middle-market and Fortune 500 companies, as well as government agencies like Army DEVCOM and the Department of State, Sicura's platform helps to reduce Authorization to Operate (ATO) timelines and ensure continuous, real-time compliance. The solutions cater to on-premise, cloud, and hybrid infrastructures, offering both agent-based continuous configuration and agentless task-based approaches to optimize security operations.
Keywords: Security Control Management, SCM, cybersecurity automation, compliance automation, DevSecOps, infrastructure security, risk remediation, configuration management, automated compliance, federal security, cloud security, hybrid environment security, IT infrastructure, Onyx Point, NIST compliance, CIS compliance, continuous Authorization to Operate, cATO, security drift, vulnerability management