Absolute Security
Firmware-embedded endpoint resilience platform that detects and automatically restores security agents and device configurations across a device fleet, now including Syxsense's vulnerability and patch management.
Visit Website ↗ + Add to CompareOverview
Absolute Security’s core bet is that endpoint security tools fail in a predictable, fixable way: agents get uninstalled, disabled, or corrupted, and organizations lose visibility into devices the moment that happens. Absolute’s technology is embedded directly into the firmware of laptops and other devices at the factory — the company says it has agreements with more than 28 device manufacturers covering roughly 600 million devices — giving it a persistence layer that survives OS reinstalls and lets it detect, report, and automatically reinstall (self-heal) both its own agent and other critical security applications that get removed or go dark.
Originally known as Absolute Software and built on an asset-tracking and anti-theft heritage (Computrace), the company was acquired by Crosspoint Capital Partners in 2023 for roughly $870 million and rebranded to Absolute Security in 2024 to reflect its shift toward endpoint resilience and access. In September 2024, Absolute acquired Syxsense, adding real-time vulnerability scanning and patch management to close the gap between IT operations and security operations — Syxsense now operates as an Absolute Security company.
Based in Vancouver, British Columbia, Absolute reports serving roughly 10,000 customers and generating well over $100 million in annual revenue, with more than a thousand employees globally. Its 2025 "Rehydrate Remotely" capability, which restores compromised endpoints at scale, and its recognition in Gartner’s Hype Cycles for Workspace Security and Private Networks in 2026, both point to a company with real enterprise scale and continued platform investment rather than a niche point tool.
Innovation Matrix Assessment
Since the Crosspoint acquisition, Absolute has shipped the Syxsense acquisition integration (Sept 2024), the 'Rehydrate Remotely' mass endpoint restoration capability (Sept 2025), and continued Zero Trust feature work recognized in Gartner's 2026 Hype Cycles, showing a sustained release and integration cadence under new ownership.
With roughly 1,250 employees, ~10,000 customers, and OEM firmware agreements with 28+ device manufacturers spanning an estimated 600 million devices, Absolute has enterprise-grade scale and a distribution model (embedded at the factory) that most endpoint security competitors cannot replicate.
Revenue estimates cluster around $135-210M depending on source (ARR vs. total revenue figures differ), and the company completed a material acquisition (Syxsense, Sept 2024) under new PE ownership, indicating active consolidation and growth investment, though exact like-for-like growth rates are not independently disclosed since going private.
Firmware-level embedding that persists through OS reinstalls and enables automatic self-healing of security agents addresses a well-documented, real failure mode (silently disabled or uninstalled endpoint agents) that most endpoint security products cannot detect or fix on their own.
Absolute's firmware-embedded persistence is independently verifiable through its long-standing OEM agreements (documented by device manufacturers, not just Absolute), and Gartner Hype Cycle inclusion is third-party analyst recognition; specific self-healing success-rate statistics, however, are vendor-reported rather than independently tested.
Endpoint sprawl, remote/hybrid work, and shadow IT have made 'is our security software actually still running on this device' a persistent, unresolved problem for CISOs, and Absolute's device-fleet visibility plus 2024 addition of vulnerability/patch management (via Syxsense) directly targets that operational gap.
Why CISOs Should Care
Absolute answers a question most endpoint tools cannot: whether security agents and configurations are still actually present and functioning on devices that have left the network, and it can automatically restore them at scale when they are not.
What Makes It Different
Its persistence is embedded in device firmware by OEM agreement rather than installed as software, meaning it survives OS reimaging and can detect and reinstall other vendors' security agents — a resilience layer that sits below, and monitors, the rest of the security stack.
The Matrix Verdict
68/100 — INCREMENTAL INNOVATOR
A large, well-established endpoint resilience vendor whose firmware-level approach is a genuine architectural differentiator with real OEM-verified scale; the 2024 Syxsense acquisition rounds out its story from pure resilience toward fuller endpoint security operations.
Editorial Note: Claims vs. Verified Findings
The firmware embedding, OEM partner count, and device coverage figures are Absolute's own reported numbers but are independently plausible given publicly documented OEM partnerships; specific self-healing effectiveness statistics and customer-count figures are vendor-reported and not independently audited here. The Crosspoint acquisition value, Syxsense acquisition, and Gartner Hype Cycle mentions are independently corroborated via press releases and Gartner publications.
Sources
Alternatives to Absolute Security
CybelAngel
External attack surface management and digital risk protection platform that scans the open, deep, and dark web for…
watchTowr
Singapore-based platform combining external attack surface management with continuous automated red teaming to validate whether exposures are actually…
CyCognito
Agentless attack surface management platform that maps organizations' entire external footprint, including subsidiaries and shadow assets, using graph-based…
Armis (a ServiceNow company)
Agentless asset intelligence platform discovering and assessing every connected IT, OT, IoT and medical device, now part of…
Axonius
New York-based CAASM pioneer that aggregates data from hundreds of existing tools to build a unified, agentless asset…
IONIX
EASM vendor, formerly Cyberpion, that maps not just an organization's own internet-facing assets but the chain of third-party…