Sekoia.io
Paris-based cloud-native XDR and threat intelligence platform aiming to bring SOC-grade detection and response to organizations without large in-house security teams.
Visit Website ↗ + Add to CompareOverview
Sekoia.io provides a cloud-native SOC platform that combines XDR (detection and response across endpoints, network, and cloud) with an integrated cyber threat intelligence (CTI) feed, aimed at bringing SOC-grade detection to organizations and MSSPs that can’t staff a full in-house security operations center. The company has increasingly layered agentic AI into the platform to auto-triage and auto-resolve detected threats rather than routing everything to a human analyst.
The company traces back to a French security consultancy founded in 2008 that built its early reputation on CERT incident response, red team, and GRC/audit services, then pivoted toward product starting around 2015 out of frustration with the alert-correlation tools available to operational security teams at the time. Its SaaS XDR/CTI platform launched commercially in 2020. Headquartered in Paris, Sekoia.io raised €10 million in its first funding round in October 2020, followed by a €35 million Series A in May 2023 — at the time a record for a European cybersecurity Series A — and a €26 million Series B in April 2025, bringing total funding to roughly $78 million.
In its Series B announcement, the company reported that of about 4 million real threats detected across its platform in 2024, 25% were resolved fully automatically, an internal metric pointing to growing automation in its detection engine.
Sekoia.io competes in a crowded XDR/SIEM/MSSP-platform category against much larger incumbents such as CrowdStrike, Microsoft, and Palo Alto Networks, along with other European challengers. Its differentiation rests on natively integrating CTI into the detection platform from the outset and on a European/sovereign-cloud positioning that appeals to EU customers with data-residency requirements.
Innovation Matrix Assessment
Progressed from a 2020 platform launch through three funding rounds by 2025 while adding agentic AI-driven auto-triage, a fast pace of product and fundraising evolution for a five-year-old commercial product.
Combines XDR and CTI into one operational platform, a real integration advantage over point tools, though as a mid-sized European vendor it lacks the global telemetry scale of the largest XDR incumbents.
A record European Series A (€35M, 2023) followed by a €26M Series B (2025) and total funding over $78M is strong, independently verified financial momentum for a European cybersecurity vendor.
Bundling native CTI directly into an XDR platform to bring SOC-grade detection to organizations without large in-house SOC teams is a genuine value proposition, though XDR+CTI bundling itself is no longer unique to Sekoia.
The reported 4-million-threats-detected/25%-auto-resolved 2024 figure is a real operational metric but self-reported by the company; no named third-party red-team or MITRE ATT&CK evaluation results were found publicly.
XDR and threat intelligence remain core, high-priority SOC investments for CISOs, and Sekoia's European data-sovereignty positioning adds specific relevance for EU buyers navigating data-residency requirements.
Why CISOs Should Care
Gives smaller security teams SOC-grade detection and response without having to build and staff a full in-house SOC, while its European base appeals to organizations with EU data-sovereignty requirements.
What Makes It Different
Built CTI directly into its XDR platform from the outset rather than treating threat intelligence as an add-on, and traces its detection engine back to over a decade of hands-on CERT and red-team consulting work rather than a green-field product build.
The Matrix Verdict
65/100 — INCREMENTAL INNOVATOR
A well-funded, fast-growing European XDR/CTI challenger with real financial momentum, though its efficacy evidence currently relies more on self-reported detection metrics than independent third-party validation.
Editorial Note: Claims vs. Verified Findings
The funding rounds, amounts, and investor names are independently reported by SecurityWeek, BusinessWire, and multiple funding-tracking outlets. The '4 million threats detected / 25% auto-resolved in 2024' figure is self-reported by Sekoia in its own Series B announcement and has not been independently audited.
Sources
Alternatives to Sekoia.io
Abnormal AI
AI-native behavioral security platform that analyzes sender identity and communication patterns, rather than message content alone, to stop…
Palo Alto Networks Cortex XSIAM
Palo Alto Networks' AI-driven 'autonomous SOC' platform that unifies SIEM, EDR, SOAR, and attack-surface data into a single…
Fenix24
Chattanooga-based ransomware recovery specialist that has restored operations after 500+ real-world incidents, including 30 Fortune 500 companies.
Torq
AI-native hyperautomation platform positioning itself as an 'agentic SOC,' using a multi-agent system to autonomously execute large volumes…
Anvilogic
Palo Alto-based AI security operations platform that automates SOC detection engineering across existing SIEMs and data lakes without…
Tines
No-code security automation platform letting SOC teams build and share automated workflows ('Stories') without proprietary scripting or vendor…