Product Threat Intelligence Providers: 5 companies compared
Companies that provide threat intelligence focused on specific products and devices, rather than general enterprise or network threat intelligence. This covers vulnerability intelligence tailored to a product's own hardware and software…
Quick comparison
All product threat intelligence providers companies side by side, alphabetical.
| company | Founded | Engagement | Specialism | Standards / accreditations |
|---|---|---|---|---|
| PCA Cyber Security | 2019 | Project-based engagements | Payment-device makers and operators wanting offensive, real-world security testing of ter… | TISAX Assessment Level 3ISO/SAE 21434UNECE R155 |
| Eclypsium | 2017 | Enterprise subscription | Banks needing firmware-level integrity assurance across a large estate of laptops, server… | — |
| Finite State | — | Not publicly disclosed | Manufacturers of connected devices across IoT, automotive, medical, and industrial sector… | — |
| Upstream Security | 2017 | Subscription (custom) | OEMs and fleet operators that want cloud-scale detection, response, and a managed Vehicle… | ISO/SAE 21434UNECE R155UNECE R156 |
| VicOne | 2022 | Subscription (custom) | OEMs and suppliers wanting a broad, lifecycle automotive security portfolio backed by an… | ISO/SAE 21434UNECE R155Automotive SPICE (ASPICE) Level 2 |
Eclypsium
Product Threat IntelligenceBanks needing firmware-level integrity assurance across a large estate of laptops, servers and network devices
Eclypsium monitors firmware and hardware integrity below the operating system, covering laptops, servers, network devices, baseboard management controllers and AI data centre hardware. It verifies the integrity and authenticity of components to establish trust in hardware infrastructure, and detects indicators of compromise in hardware, firmware and software. It publishes a financial services practice aimed at bank device estates, naming First Financial as a customer with an attributed quote from its VP of Information Technology, and maps firmware controls to FFIEC cybersecurity guidelines, SOX internal controls, PCI DSS firmware integrity requirements and NYDFS cybersecurity regulations. The company was founded in 2017 by Yuriy Bulygin and Alex Bazhaniuk, both former Intel security engineers, and is based in Portland, Oregon.
Finite State
Product Threat Intelligence ProvidersManufacturers of connected devices across IoT, automotive, medical, and industrial sectors needing firmware-level vulnerability and exploit intelligence tied to compliance evidence.
Finite State positions itself as the "Product Security OS for Connected Devices," analyzing firmware, binaries, and source code to generate SBOMs, identify vulnerabilities, and produce compliance evidence, embedded directly into release workflows. Its threat intelligence capability centers on exploitability-based prioritization and execution-aware reachability analysis, aimed at cutting through vulnerability noise to surface findings that are actually reachable and exploitable. It covers IoT and embedded systems, automotive and connected vehicles, medical devices, industrial control systems, and energy and utilities infrastructure, and supports EU Cyber Resilience Act, FDA, and NIST compliance frameworks.
PCA Cyber Security
PCI PTS Compliance Testing CompaniesPayment-device makers and operators wanting offensive, real-world security testing of terminals beyond baseline PCI PTS certification
PCA Cyber Security is an offensive security and threat intelligence firm registered in Budapest as PCA Cyber Security Zrt., with a further office in Munich. It works across two connected practices. The payment-device practice tests payment terminals, PIN pads, unattended and self-service terminals, ATMs, and fuel-pump and EV-charging payment systems, testing beyond PCI PTS certification to find vulnerabilities in approved devices; PCA became a PCI SSC Associate Participating Organisation in 2026. The automotive and embedded practice, formerly PCAutomotive, covers vehicle and ECU penetration testing, threat analysis and risk assessment, product security operations monitoring, and research from its CyberLab and CyberGarage facilities. It also offers software composition analysis and SBOM validation, reverse-engineering device firmware rather than relying on vendor documentation, delivering an extended bill of materials with CVE mapping. The vendor is a repeat Pwn2Own Automotive contestant and holds TISAX Assessment Level 3.
Upstream Security
Automotive CybersecurityOEMs and fleet operators that want cloud-scale detection, response, and a managed Vehicle SOC for connected fleets
Upstream Security operates a cloud-native, agentless AI platform purpose-built for connected vehicles and mobility IoT. It ingests telematics, OTA, diagnostic, and dealership data to deliver cybersecurity detection and response (V-XDR), automotive threat intelligence, and data-driven applications. Upstream pairs its platform with a managed 24/7 Vehicle Security Operations Center and monitors tens of millions of vehicles, making it one of the largest-scale players in connected-vehicle security. Because it works server-side without in-vehicle agents, it is typically deployed alongside embedded ECU protection rather than replacing it.
VicOne
Automotive CybersecurityOEMs and suppliers wanting a broad, lifecycle automotive security portfolio backed by an established cybersecurity parent
VicOne is a wholly-owned subsidiary of Trend Micro dedicated exclusively to automotive cybersecurity for connected and electric vehicles. It leverages Trend Micro's 30-plus years of security expertise and the Zero Day Initiative's vulnerability research network. The same program behind Pwn2Own Automotive. To give OEMs and suppliers lifecycle protection from development and production through in-vehicle operation. Its portfolio covers an in-vehicle IDPS, a managed VSOC, threat intelligence, SBOM and vulnerability management, and penetration testing services.
Related guides
Other categories you might be evaluating alongside product threat intelligence providers.
About this listing
Product Threat Intelligence Providers companies, listed alphabetically and compared on public information. How we work →