LupaSafe
A Dutch all-in-one cybersecurity awareness, phishing-simulation, and NIS2-compliance platform built for small and mid-sized businesses.
Visit Website ↗ + Add to CompareOverview
LupaSafe is a Dutch security awareness and compliance platform built by Skopos Security Labs BV, aimed squarely at small and mid-sized businesses that cannot staff a dedicated security team. The product bundles phishing simulation (email, QR-code, and credential-harvest variants), employee training modules, dark web exposure monitoring, DMARC/email authentication reporting, Microsoft 365 configuration auditing, and network scanning into a single dashboard, with automated reporting mapped to the EU’s NIS2 directive.
The company’s pitch is consolidation: rather than an SME buying separate point tools for awareness training, phishing tests, and compliance evidence, LupaSafe tries to cover the baseline controls a regulator or cyber-insurance underwriter would ask about in one low-cost subscription. That NIS2-reporting angle is a deliberate wedge into the European SME market, where the directive’s expanding scope is pulling smaller supply-chain vendors into compliance obligations they previously ignored.
LupaSafe says it is used by more than 600 organizations across Europe, with country-specific rollouts (including a 2024 Spain launch) run in partnership with local resellers and the Mastercard Strive small-business support program. As a young, narrowly-scoped vendor, its differentiation is breadth-at-low-price for the SME segment rather than depth against sophisticated adversaries — it competes more with generalist compliance/training bundles than with enterprise security operations platforms.
Innovation Matrix Assessment
LupaSafe has shipped a broad feature set (phishing sim, training, dark-web monitoring, DMARC, M365 audit, NIS2 reporting) since its 2019 founding and has run country-specific rollouts such as a 2024 Spain launch, but this is aggregation of established SME security categories rather than novel engineering.
The single-dashboard design and low per-user pricing (from €3.99/user/month) are built for SMEs without security staff, which lowers deployment friction, though the company's youth and small team size (11-50) leave open questions about support depth at scale.
LupaSafe cites 600+ organizations across Europe and a partnership with the Mastercard Strive small-business program, but no funding round has been publicly disclosed, so growth signals rely on vendor-reported customer counts rather than independently tracked metrics.
The product is a consolidation play — bundling training, phishing simulation, and compliance reporting that SMEs would otherwise buy separately — rather than a technically novel approach; it competes in a crowded SME awareness/compliance bundle segment.
No independent third-party testing, MITRE evaluation, or named enterprise case study was found; efficacy claims (e.g., phishing simulation realism, risk-scoring accuracy) are self-reported on LupaSafe's own site.
The EU's NIS2 directive is actively pulling smaller supply-chain vendors into compliance obligations, and LupaSafe's automated NIS2 reporting directly targets that live regulatory pressure point for European SMEs.
Why CISOs Should Care
CISOs at larger enterprises may encounter LupaSafe indirectly through third-party risk programs, as European SME suppliers adopt it to demonstrate baseline NIS2 compliance and awareness-training coverage.
What Makes It Different
Rather than selling a single point tool, LupaSafe bundles phishing simulation, training, dark-web monitoring, DMARC reporting, M365 auditing, and automated NIS2 compliance reporting into one low-cost SME dashboard.
The Matrix Verdict
52/100 — INCREMENTAL INNOVATOR
A reasonably priced consolidation tool for European SMEs facing NIS2 pressure, not a technically disruptive platform; useful as a baseline-compliance stopgap but unproven against independent efficacy testing.
Editorial Note: Claims vs. Verified Findings
Customer-count claims ("600+ organizations"), pricing, and platform capability descriptions come from LupaSafe's own site and blog and are unverified; independently confirmed facts are limited to the Mastercard Strive program listing and press coverage of the 2024 Spain market launch. No independent efficacy or third-party test data was found.
Sources
Alternatives to LupaSafe
Abnormal AI
AI-native behavioral security platform that analyzes sender identity and communication patterns, rather than message content alone, to stop…
Palo Alto Networks Cortex XSIAM
Palo Alto Networks' AI-driven 'autonomous SOC' platform that unifies SIEM, EDR, SOAR, and attack-surface data into a single…
Fenix24
Chattanooga-based ransomware recovery specialist that has restored operations after 500+ real-world incidents, including 30 Fortune 500 companies.
Torq
AI-native hyperautomation platform positioning itself as an 'agentic SOC,' using a multi-agent system to autonomously execute large volumes…
Anvilogic
Palo Alto-based AI security operations platform that automates SOC detection engineering across existing SIEMs and data lakes without…
ReliaQuest
ReliaQuest operates GreyMatter, a security operations platform that unifies detection, investigation, and response across a customer's existing security…