Element Security
Tel Aviv-based external attack surface management platform, formerly known as Ovalsec, that combines continuous exposure discovery with active exploitation testing.
Visit Website ↗ + Add to CompareOverview
Element Security, formerly known as Ovalsec, builds a cloud-based External Attack Surface Management (EASM) platform that continuously discovers an organization’s internet-facing assets — including shadow IT and unsanctioned SaaS applications — and then goes a step further than most EASM tools by running active exploitation attempts against discovered exposures. The goal is to move past theoretical vulnerability lists and show security teams which exposures are actually reachable and chainable into a real attack path, then prioritize remediation accordingly.
Founded in 2021 in Tel Aviv by CEO Daniel Lublin and COO Omer Cohen, the company rebranded from Ovalsec to Element Security following a Series A round in September 2024. It has raised a total of roughly $5 million from investors including Q Fund VC and a group of individual backers, and operates with a lean team of around 20 people.
The active-exploitation approach differentiates Element Security from EASM competitors that stop at asset discovery and vulnerability scanning, but the company is early-stage and has not yet published independent third-party validation of its exploitation engine’s accuracy or coverage at enterprise scale.
Innovation Matrix Assessment
A roughly 20-person team has shipped a rebrand from Ovalsec to Element Security alongside continued platform development, but there is no public evidence of an unusually fast release cadence beyond the normal pace expected of a Series A-stage startup.
Continuous discovery of internet-facing assets including shadow IT and unsanctioned SaaS is operationally useful and addresses a real blind spot for security teams, though the company has not published detail on false-positive rates or integration breadth with existing vulnerability management workflows.
Closed a Series A round in September 2024 (on top of prior seed funding, totaling roughly $5M raised) and executed a rebrand signaling continued investor confidence, but funding scale remains modest relative to more heavily capitalized EASM competitors.
Moving EASM from passive asset discovery to active exploitation validation is a genuine shift in how exposure is prioritized, differentiating it from the discovery-only approach most EASM tools still take.
The platform's active-exploitation approach to validate real attack chains, rather than just listing theoretical CVEs, is a meaningful efficacy differentiator if accurate, but no independent third-party test of the exploitation engine's accuracy has been published.
Attack surface management is a growing priority as organizations struggle with shadow IT and unsanctioned SaaS sprawl, and Element Security's exploitation-first prioritization directly addresses the alert-fatigue problem plaguing many exposure management programs.
Why CISOs Should Care
Helps security teams cut through exposure management noise by showing which internet-facing vulnerabilities are actually exploitable and chainable into a real attack path, rather than just another long list of theoretical CVEs.
What Makes It Different
Combines EASM asset discovery with active exploitation testing to validate real attack chains, going further than discovery-only competitors in the category.
The Matrix Verdict
57/100 — INCREMENTAL INNOVATOR
A young, exploitation-focused EASM challenger with a credible technical differentiator; promising but still needs independent validation of its exploitation engine's accuracy at enterprise scale.
Editorial Note: Claims vs. Verified Findings
The 2021 founding, Tel Aviv location, founder names, and ~$5M Series A funding are independently reported by industry trackers (PitchBook, Crunchbase-sourced coverage); specific accuracy or coverage claims about the exploitation engine are vendor-sourced and not independently verified.
Sources
Alternatives to Element Security
CybelAngel
External attack surface management and digital risk protection platform that scans the open, deep, and dark web for…
watchTowr
Singapore-based platform combining external attack surface management with continuous automated red teaming to validate whether exposures are actually…
CyCognito
Agentless attack surface management platform that maps organizations' entire external footprint, including subsidiaries and shadow assets, using graph-based…
Armis (a ServiceNow company)
Agentless asset intelligence platform discovering and assessing every connected IT, OT, IoT and medical device, now part of…
Axonius
New York-based CAASM pioneer that aggregates data from hundreds of existing tools to build a unified, agentless asset…
IONIX
EASM vendor, formerly Cyberpion, that maps not just an organization's own internet-facing assets but the chain of third-party…