SIGA Data Security
OT/ICS anomaly detection vendor that monitors physical-layer electrical signals from industrial sensors and actuators, rather than network traffic, to catch manipulation invisible to conventional OT monitoring tools.
Visit Website ↗ + Add to CompareOverview
SIGA Data Security (operating publicly as SIGA OT Solutions) builds anomaly detection technology for operational technology and industrial control system environments, targeting critical infrastructure sectors including energy, water, oil and gas, chemicals, and manufacturing. Rather than monitoring OT network traffic and protocols the way most ICS security vendors do, SIGA instruments the raw electrical and waveform signals coming directly from field-level sensors and actuators — what the company calls Level 0 of the Purdue model — and applies machine learning to flag physical-process anomalies that never generate network traffic an IT/OT monitoring tool would see.
Founded in 2014 and headquartered in Be’er Sheva, Israel, SIGA raised an $8.1 million Series B round in 2021 led by Dutch investor PureTerra Ventures, with participation from Israeli fund SIBF, Moore Capital, and Phoenix Contact — a German industrial automation manufacturer whose strategic investment lends some operational credibility given its own footprint in the industrial control space. Total disclosed funding is roughly $15 million, modest next to network-layer OT security incumbents like Claroty, Dragos, and Nozomi Networks, which have each raised hundreds of millions.
SIGA has published case studies describing deployments at water utilities managing large physical footprints (in one case spanning roughly 20 dams and 2,000 kilometers of pipeline), and argues its physical-layer approach addresses a documented compliance gap — SIGA-cited surveys put water-system EPA cybersecurity non-compliance above 70%. The company’s pitch is narrow and technically specific rather than broad platform coverage, which is both its differentiator and its limitation: it complements, rather than replaces, network-based OT monitoring.
Innovation Matrix Assessment
Continues to develop AI-based predictive analysis on top of its core physical-signal monitoring, a steady iteration pace typical of a small, focused OT security vendor rather than a company shipping a broad platform roadmap.
Deployed across multiple critical infrastructure sectors (energy, water, oil and gas, manufacturing) with a published water-utility case study covering a large physical footprint, but the company remains small (roughly 11-50 employees) relative to the scope of the environments it protects.
Raised an $8.1M Series B in 2021 with strategic backing from industrial automation manufacturer Phoenix Contact, bringing total disclosed funding to roughly $15M -- real but modest traction next to OT security incumbents like Claroty, Dragos, and Nozomi Networks, which have each raised hundreds of millions.
Monitoring raw physical/electrical signals at the sensor-actuator layer (Level 0) rather than network traffic is a genuinely different technical approach from the network-based monitoring most OT security vendors rely on, addressing a real blind spot for attacks that manipulate physical processes without generating detectable network traffic.
A published water-utility case study describes deployment across a large footprint (roughly 20 dams and 2,000km of pipeline), but this is a vendor-published case study rather than an independent third-party evaluation; no MITRE ATT&CK for ICS evaluation results were found for SIGA.
Physical-layer attacks on water, energy, and other critical infrastructure are a documented and growing concern, with SIGA-cited surveys showing over 70% of surveyed water systems failing EPA cybersecurity standards, making OT/ICS anomaly detection a high-priority category for critical infrastructure operators.
Why CISOs Should Care
For CISOs responsible for OT/ICS environments, SIGA offers visibility into physical-layer manipulation of industrial equipment that traditional network-based OT monitoring tools can miss, closing a blind spot for attacks that spoof control signals without touching IT/OT network traffic.
What Makes It Different
Where most OT security vendors (Claroty, Dragos, Nozomi) monitor network traffic and protocols, SIGA instruments the physical electrical signals at the sensor/actuator (Level 0) layer, positioning it to catch manipulation that never appears on the network.
The Matrix Verdict
57/100 — INCREMENTAL INNOVATOR
A technically differentiated niche player addressing a real blind spot in OT security, but still an early-stage company by funding and scale relative to established ICS security vendors; worth watching for critical infrastructure operators, particularly water and energy utilities, evaluating physical-layer anomaly detection.
Editorial Note: Claims vs. Verified Findings
SIGA's water utility deployment scale (dams/pipeline network figures) comes from a vendor-published case study rather than an independent audit. Funding figures ($8.1M Series B, ~$15M total, Phoenix Contact strategic investment) are independently reported by SecurityWeek and TechCrunch. No independent MITRE ATT&CK for ICS evaluation results were found for SIGA at the time of writing.
Sources
Alternatives to SIGA Data Security
Forward
CISO ReviewedBuilds a mathematically accurate 'digital twin' of enterprise networks, letting teams verify network and security changes before they…
Zscaler
A cloud-native security-service-edge pioneer that routes all user traffic through a global proxy cloud instead of backhauling it…
Claroty
Cyber-physical systems protection platform securing industrial, healthcare and enterprise IoT devices for critical infrastructure operators.
Tailscale
A zero-configuration mesh VPN built on WireGuard that applies Google's BeyondCorp zero-trust model to make secure networking accessible…
TXOne Networks Inc.
OT and industrial control system cybersecurity built for zero operational disruption, protecting legacy manufacturing and critical infrastructure devices…
Illumio
A microsegmentation pioneer built on the assumption that breaches are inevitable, focused on containing lateral movement rather than…