Skip to content

JupiterOne

Graph-based cyber asset attack surface management (CAASM) platform that continuously maps assets, identities, and their relationships across cloud, SaaS, and code environments.

Visit Website ↗ + Add to Compare
65/100Incremental Innovator

Overview

JupiterOne provides a cyber asset attack surface management (CAASM) platform that continuously ingests data from cloud accounts, SaaS applications, code repositories, identity providers, and security tools, then models the relationships between them as a graph. That graph-based approach lets security teams answer questions that are otherwise hard to piece together manually — which assets exist, who or what can access them, and how they relate to each other — rather than relying on point-in-time asset inventories that go stale quickly.

Founded in 2018 and headquartered in Morrisville, North Carolina, JupiterOne was built out of the internal asset-visibility tooling its founders developed while running security at LifeOmic. The company has raised roughly $119 million in total funding, including a $30 million Series B in 2021 led by Sapphire Ventures and a $70 million Series C in 2022 that pushed its valuation above $1 billion, with investors including Bain Capital Ventures and Cisco Investments. Named customers referenced in company and press materials include Reddit, Databricks, and Auth0.

JupiterOne competes in the increasingly crowded attack surface management and cyber asset management space, where the core technical challenge — keeping an always-current, relationship-aware asset inventory across sprawling multi-cloud environments — is well understood but genuinely hard to execute well at scale. Its unicorn valuation reflects investor confidence as of its 2022 raise, though more recent, independent performance or market-share data was not found in public sources.

Innovation Matrix Assessment

Innovation Velocity 6/10

Has steadily expanded integrations and graph-query capabilities since launch, a reasonable pace for a well-funded mid-stage company, though it has not published major product milestones recently in public sources reviewed.

Operational Value 7/10

The graph-based data model for representing assets and their relationships is a genuinely more capable approach to attack surface visibility than static, list-based asset inventories, and the product has real breadth of integrations across cloud, SaaS, code, and identity sources.

Market Momentum 7/10

Reached a $1B+ valuation with a $70M Series C in 2022 backed by Bain Capital Ventures and Sapphire Ventures, strong momentum at the time, though no newer funding or growth milestones were found, suggesting the pace may have cooled since.

Category Disruption 6/10

Was an early mover in applying graph-based modeling specifically to cyber asset attack surface management, a genuinely useful reframing of asset inventory, though CAASM has since become a more crowded category with multiple well-funded competitors.

Real-World Efficacy 6/10

Named enterprise customers (Reddit, Databricks, Auth0) referenced in press provide some independent signal of real production use, though no independent third-party benchmarking of asset-coverage accuracy or detection completeness was found.

Enduring Relevance 7/10

Maintaining an accurate, relationship-aware asset inventory across sprawling multi-cloud and SaaS environments is a foundational and increasingly urgent security requirement, keeping CAASM tools broadly relevant to security programs of most sizes.

Why CISOs Should Care

Gives security teams a continuously updated, relationship-aware map of cloud, SaaS, code, and identity assets, addressing the basic but persistent problem of not knowing what exists in the environment or how it connects.

What Makes It Different

Uses a graph data model to represent relationships between assets rather than flat inventory lists, differentiating it from simpler asset-discovery tools that surface assets without capturing how they relate to each other.

The Matrix Verdict

65/100 — INCREMENTAL INNOVATOR

A well-funded, technically credible CAASM platform with real named customers and a genuinely useful graph-based approach, though it now competes in a more crowded attack surface management field than when it launched.

Editorial Note: Claims vs. Verified Findings

Funding rounds, valuation, and named customers (Reddit, Databricks, Auth0) are independently reported via PRNewswire and BusinessWire. Specific platform-coverage and accuracy claims beyond named customer mentions come from company sources and are not independently benchmarked here.

Sources