Skip to content

SIGA Data Security

OT/ICS anomaly detection vendor that monitors physical-layer electrical signals from industrial sensors and actuators, rather than network traffic, to catch manipulation invisible to conventional OT monitoring tools.

Visit Website ↗ + Add to Compare
57/100Incremental Innovator

Overview

SIGA Data Security (operating publicly as SIGA OT Solutions) builds anomaly detection technology for operational technology and industrial control system environments, targeting critical infrastructure sectors including energy, water, oil and gas, chemicals, and manufacturing. Rather than monitoring OT network traffic and protocols the way most ICS security vendors do, SIGA instruments the raw electrical and waveform signals coming directly from field-level sensors and actuators — what the company calls Level 0 of the Purdue model — and applies machine learning to flag physical-process anomalies that never generate network traffic an IT/OT monitoring tool would see.

Founded in 2014 and headquartered in Be’er Sheva, Israel, SIGA raised an $8.1 million Series B round in 2021 led by Dutch investor PureTerra Ventures, with participation from Israeli fund SIBF, Moore Capital, and Phoenix Contact — a German industrial automation manufacturer whose strategic investment lends some operational credibility given its own footprint in the industrial control space. Total disclosed funding is roughly $15 million, modest next to network-layer OT security incumbents like Claroty, Dragos, and Nozomi Networks, which have each raised hundreds of millions.

SIGA has published case studies describing deployments at water utilities managing large physical footprints (in one case spanning roughly 20 dams and 2,000 kilometers of pipeline), and argues its physical-layer approach addresses a documented compliance gap — SIGA-cited surveys put water-system EPA cybersecurity non-compliance above 70%. The company’s pitch is narrow and technically specific rather than broad platform coverage, which is both its differentiator and its limitation: it complements, rather than replaces, network-based OT monitoring.

Innovation Matrix Assessment

Innovation Velocity 5/10

Continues to develop AI-based predictive analysis on top of its core physical-signal monitoring, a steady iteration pace typical of a small, focused OT security vendor rather than a company shipping a broad platform roadmap.

Operational Value 5/10

Deployed across multiple critical infrastructure sectors (energy, water, oil and gas, manufacturing) with a published water-utility case study covering a large physical footprint, but the company remains small (roughly 11-50 employees) relative to the scope of the environments it protects.

Market Momentum 4/10

Raised an $8.1M Series B in 2021 with strategic backing from industrial automation manufacturer Phoenix Contact, bringing total disclosed funding to roughly $15M -- real but modest traction next to OT security incumbents like Claroty, Dragos, and Nozomi Networks, which have each raised hundreds of millions.

Category Disruption 7/10

Monitoring raw physical/electrical signals at the sensor-actuator layer (Level 0) rather than network traffic is a genuinely different technical approach from the network-based monitoring most OT security vendors rely on, addressing a real blind spot for attacks that manipulate physical processes without generating detectable network traffic.

Real-World Efficacy 5/10

A published water-utility case study describes deployment across a large footprint (roughly 20 dams and 2,000km of pipeline), but this is a vendor-published case study rather than an independent third-party evaluation; no MITRE ATT&CK for ICS evaluation results were found for SIGA.

Enduring Relevance 8/10

Physical-layer attacks on water, energy, and other critical infrastructure are a documented and growing concern, with SIGA-cited surveys showing over 70% of surveyed water systems failing EPA cybersecurity standards, making OT/ICS anomaly detection a high-priority category for critical infrastructure operators.

Why CISOs Should Care

For CISOs responsible for OT/ICS environments, SIGA offers visibility into physical-layer manipulation of industrial equipment that traditional network-based OT monitoring tools can miss, closing a blind spot for attacks that spoof control signals without touching IT/OT network traffic.

What Makes It Different

Where most OT security vendors (Claroty, Dragos, Nozomi) monitor network traffic and protocols, SIGA instruments the physical electrical signals at the sensor/actuator (Level 0) layer, positioning it to catch manipulation that never appears on the network.

The Matrix Verdict

57/100 — INCREMENTAL INNOVATOR

A technically differentiated niche player addressing a real blind spot in OT security, but still an early-stage company by funding and scale relative to established ICS security vendors; worth watching for critical infrastructure operators, particularly water and energy utilities, evaluating physical-layer anomaly detection.

Editorial Note: Claims vs. Verified Findings

SIGA's water utility deployment scale (dams/pipeline network figures) comes from a vendor-published case study rather than an independent audit. Funding figures ($8.1M Series B, ~$15M total, Phoenix Contact strategic investment) are independently reported by SecurityWeek and TechCrunch. No independent MITRE ATT&CK for ICS evaluation results were found for SIGA at the time of writing.

Sources