Skip to content

Permiso Security

Permiso Security is an identity-centric cloud detection and response (CDR) platform, founded by former FireEye/Mandiant executives, that tracks human, machine, vendor, and service-provider identities across IaaS, PaaS, and SaaS to find and stop identity-based attacks.

Visit Website ↗ + Add to Compare
63/100Incremental Innovator

Overview

Permiso Security was founded in 2020 by former FireEye executives Paul Nguyen and Jason Martin to bring identity-focused threat detection to cloud infrastructure, an area they argued was underserved by tools built primarily for endpoint or network telemetry. The platform unifies identity signals across identity providers, cloud service providers, SaaS applications, and infrastructure-as-code to build a “single pane of glass” for identifying the riskiest actors, human or machine, operating in a customer’s environment.

The company emerged from stealth in 2022 with $10 million in seed funding and raised an $18.5 million Series A in 2024 led by Altimeter Capital, bringing total funding to $28.5 million as it continues building out cloud identity threat detection and response capabilities.

Innovation Matrix Assessment

Innovation Velocity 6/10

Moved from stealth to seed to Series A with expanding identity-detection coverage within about four years.

Operational Value 7/10

Unifying identity signals across IdPs, clouds, and SaaS into one risk view reduces the manual correlation burden on cloud SOC teams.

Market Momentum 6/10

Series A led by Altimeter Capital with Point72 Ventures participation signals credible institutional validation.

Category Disruption 6/10

Identity-first cloud detection is a meaningfully different lens than the infrastructure- or workload-centric approach of most cloud detection tools.

Real-World Efficacy 6/10

Founder pedigree from FireEye/Mandiant lends credibility, but independent efficacy benchmarks were not found.

Enduring Relevance 7/10

Identity remains the dominant vector for cloud breaches, keeping identity-centric CDR strategically relevant.

Why CISOs Should Care

CISOs get detection and response coverage purpose-built for identity-based cloud attacks (compromised service accounts, over-privileged roles, stolen API keys) that generic SIEM correlation often misses.

What Makes It Different

Permiso's identity-first data model unifies signals across IdPs, clouds, SaaS, and IaC into one identity risk view, rather than treating identity as one data source feeding a broader, non-identity-centric detection engine.

The Matrix Verdict

63/100 — INCREMENTAL INNOVATOR

A credible, founder-pedigreed cloud detection and response vendor addressing a real and growing gap in identity-based cloud attack detection, still early in its growth trajectory.

Editorial Note: Claims vs. Verified Findings

Founding team background and funding figures are independently corroborated; detection efficacy is described through vendor blog posts and has not been independently benchmarked here.

Sources