EST Security
EST Security is a Seoul-based endpoint security vendor behind ALYac, a widely deployed South Korean antivirus and EDR product now integrated with an AI-driven detection and reporting agent.
Visit Website ↗ + Add to CompareOverview
EST Security (ESTsecurity Corp.) is a South Korean endpoint security vendor built around ALYac, an antivirus product with roots dating back to 2007 that has grown into one of the most widely installed consumer and business endpoint agents in South Korea. On the enterprise side, the company sells ALYac EDR, which layers behavioral detection and response on top of the signature and heuristic engine the consumer product built its reputation on, and more recently an agentic AI capability (linked to LG’s K-EXAONE model) intended to automate parts of the detection-triage-report workflow that would otherwise require a human analyst.
The company is closely affiliated with ESTsoft Corp., a KOSDAQ-listed South Korean software company (ticker 047560) founded in 1993; ESTsecurity itself was established in 2017 to focus specifically on the security line of business. This gives EST Security a stable, well-capitalized corporate parent even though ESTsecurity is not itself independently publicly traded.
EST Security’s relevance outside Korea is narrower than global EDR incumbents — its installed base and threat-intelligence pipeline are concentrated in the Korean market, where it reports detecting roughly 190 million malware events per year across more than 16 million ALYac and Dr.Capsule users. For CISOs operating in or expanding into the Korean market, EST Security is a locally dominant, ICSA Labs-certified option; for buyers elsewhere, it is a useful signal of how a regional endpoint vendor is layering agentic AI onto a two-decade-old antivirus engine rather than a default global consideration.
Innovation Matrix Assessment
ALYac has been continuously developed since 2007 and the company has recently added an agentic AI layer (linked to LG's K-EXAONE model) covering detection through report writing, showing an active roadmap on top of a mature core engine rather than a stalled legacy product.
Backed by KOSDAQ-listed parent ESTsoft (public since 2008, founded 1993), EST Security has a stable capital base and a multi-decade operating history in the Korean software market, reducing the vendor-viability risk that smaller independent startups carry.
Momentum is steady rather than explosive: ALYac's installed base (16M+ users) is a mature, largely domestic figure, and there is no evidence of recent funding events, major new geographic expansion, or notable executive/analyst-recognition news beyond incremental product releases.
The core antivirus/EDR architecture is conventional for the category; the agentic-AI detection-to-report layer is a genuine recent addition but is an incremental enhancement to an existing engine rather than a fundamentally new detection approach.
ICSA Labs Anti-Malware Certification for ALYac is a real, independently administered third-party validation. The 16 million user and 190 million annual malware detections figures are company-reported and not independently audited, though they are broadly consistent with ALYac's known market position in South Korea.
EST Security is dominant within the South Korean endpoint security market but has limited visibility, localization, or channel presence outside Korea, which caps its relevance for CISOs operating primarily in Western markets even though the technology itself is sound.
Why CISOs Should Care
For organizations with meaningful operations or user bases in South Korea, EST Security offers a locally proven, ICSA-certified endpoint platform with deep familiarity with the Korean threat landscape that global EDR vendors often address only generically.
What Makes It Different
EST Security's differentiation is depth of Korea-specific threat telemetry built up over nearly two decades of ALYac deployments, plus a newer agentic-AI layer for automating detection triage and reporting, rather than a novel detection architecture.
The Matrix Verdict
53/100 — INCREMENTAL INNOVATOR
A stable, well-capitalized regional endpoint security leader with real independent certification behind its core product; useful and credible for Korea-market coverage, but not a globally differentiated pick outside that footprint.
Editorial Note: Claims vs. Verified Findings
Independently verified: ICSA Labs Anti-Malware Certification for ALYac, and ESTsoft's KOSDAQ listing/public status. Vendor-sourced and unverified: the 16 million user count and 190 million annual malware detections figures come from company materials and were not corroborated by an independent third party.
Sources
Alternatives to EST Security
Abnormal AI
AI-native behavioral security platform that analyzes sender identity and communication patterns, rather than message content alone, to stop…
Palo Alto Networks Cortex XSIAM
Palo Alto Networks' AI-driven 'autonomous SOC' platform that unifies SIEM, EDR, SOAR, and attack-surface data into a single…
Fenix24
Chattanooga-based ransomware recovery specialist that has restored operations after 500+ real-world incidents, including 30 Fortune 500 companies.
Torq
AI-native hyperautomation platform positioning itself as an 'agentic SOC,' using a multi-agent system to autonomously execute large volumes…
Anvilogic
Palo Alto-based AI security operations platform that automates SOC detection engineering across existing SIEMs and data lakes without…
Tines
No-code security automation platform letting SOC teams build and share automated workflows ('Stories') without proprietary scripting or vendor…