JupiterOne
Graph-based cyber asset attack surface management (CAASM) platform that continuously maps assets, identities, and their relationships across cloud, SaaS, and code environments.
Visit Website ↗ + Add to CompareOverview
JupiterOne provides a cyber asset attack surface management (CAASM) platform that continuously ingests data from cloud accounts, SaaS applications, code repositories, identity providers, and security tools, then models the relationships between them as a graph. That graph-based approach lets security teams answer questions that are otherwise hard to piece together manually — which assets exist, who or what can access them, and how they relate to each other — rather than relying on point-in-time asset inventories that go stale quickly.
Founded in 2018 and headquartered in Morrisville, North Carolina, JupiterOne was built out of the internal asset-visibility tooling its founders developed while running security at LifeOmic. The company has raised roughly $119 million in total funding, including a $30 million Series B in 2021 led by Sapphire Ventures and a $70 million Series C in 2022 that pushed its valuation above $1 billion, with investors including Bain Capital Ventures and Cisco Investments. Named customers referenced in company and press materials include Reddit, Databricks, and Auth0.
JupiterOne competes in the increasingly crowded attack surface management and cyber asset management space, where the core technical challenge — keeping an always-current, relationship-aware asset inventory across sprawling multi-cloud environments — is well understood but genuinely hard to execute well at scale. Its unicorn valuation reflects investor confidence as of its 2022 raise, though more recent, independent performance or market-share data was not found in public sources.
Innovation Matrix Assessment
Has steadily expanded integrations and graph-query capabilities since launch, a reasonable pace for a well-funded mid-stage company, though it has not published major product milestones recently in public sources reviewed.
The graph-based data model for representing assets and their relationships is a genuinely more capable approach to attack surface visibility than static, list-based asset inventories, and the product has real breadth of integrations across cloud, SaaS, code, and identity sources.
Reached a $1B+ valuation with a $70M Series C in 2022 backed by Bain Capital Ventures and Sapphire Ventures, strong momentum at the time, though no newer funding or growth milestones were found, suggesting the pace may have cooled since.
Was an early mover in applying graph-based modeling specifically to cyber asset attack surface management, a genuinely useful reframing of asset inventory, though CAASM has since become a more crowded category with multiple well-funded competitors.
Named enterprise customers (Reddit, Databricks, Auth0) referenced in press provide some independent signal of real production use, though no independent third-party benchmarking of asset-coverage accuracy or detection completeness was found.
Maintaining an accurate, relationship-aware asset inventory across sprawling multi-cloud and SaaS environments is a foundational and increasingly urgent security requirement, keeping CAASM tools broadly relevant to security programs of most sizes.
Why CISOs Should Care
Gives security teams a continuously updated, relationship-aware map of cloud, SaaS, code, and identity assets, addressing the basic but persistent problem of not knowing what exists in the environment or how it connects.
What Makes It Different
Uses a graph data model to represent relationships between assets rather than flat inventory lists, differentiating it from simpler asset-discovery tools that surface assets without capturing how they relate to each other.
The Matrix Verdict
65/100 — INCREMENTAL INNOVATOR
A well-funded, technically credible CAASM platform with real named customers and a genuinely useful graph-based approach, though it now competes in a more crowded attack surface management field than when it launched.
Editorial Note: Claims vs. Verified Findings
Funding rounds, valuation, and named customers (Reddit, Databricks, Auth0) are independently reported via PRNewswire and BusinessWire. Specific platform-coverage and accuracy claims beyond named customer mentions come from company sources and are not independently benchmarked here.
Sources
Alternatives to JupiterOne
CybelAngel
External attack surface management and digital risk protection platform that scans the open, deep, and dark web for…
watchTowr
Singapore-based platform combining external attack surface management with continuous automated red teaming to validate whether exposures are actually…
CyCognito
Agentless attack surface management platform that maps organizations' entire external footprint, including subsidiaries and shadow assets, using graph-based…
Armis (a ServiceNow company)
Agentless asset intelligence platform discovering and assessing every connected IT, OT, IoT and medical device, now part of…
Axonius
New York-based CAASM pioneer that aggregates data from hundreds of existing tools to build a unified, agentless asset…
Doppel
San Francisco AI-native digital risk protection platform that detects and automatically takes down phishing sites, impersonation accounts, and…