NetRise

Binary-derived SBOMs that show what actually executes, rather than what a manifest declares.

ToolSBOM AnalysisCloud

Pricing: Not published; contact sales. A free SBOM report is offered.

Reviewed by the Cyber Vendor Guide editorial team against the public sources cited below · Last reviewed August 2026 · How we review listings

What is NetRise?

NetRise analyses compiled code rather than source, building an SBOM from the binary so that a supplied manifest can be checked against the software that actually executes. The platform covers firmware and software components, with NetRise Provenance assessing open-source component and repository health, ZeroLens identifying weaknesses in compiled software, and Trace applying semantic search to code provenance and supply chain origin. Reachability analysis identifies which vulnerable code runs at startup so remediation can be prioritised. NetRise publishes a financial services solution brief covering the software supply chain of banking and trading applications, mapped to PCI DSS 4.0, NYDFS, the SEC cybersecurity rules and FFIEC. The company was founded in 2020 and is based in Austin, Texas.

Best for: Financial institutions and device makers needing a binary-derived component inventory where source code is not available
Pros
  • Builds the component inventory from the binary, which is the only way to test whether a vendor's SBOM matches what ships
  • Publishes a financial services brief written for banking and trading applications, mapped to PCI DSS 4.0, NYDFS, the SEC cybersecurity rules and FFIEC
  • Reachability analysis narrows findings to code that actually executes at startup
Things to check
  • Financial services does not appear among the verticals on its main site; the banking material sits in a single solution brief
  • No banking customer is named publicly, and the only testimonial on the site is anonymised
  • Covers application and firmware software supply chain, not payment hardware

Reported in public reviews and vendor documentation. See sources below.

Key Features

Compiled-code analysis without access to source
Binary-derived SBOM generation and validation against a supplied SBOM
Open-source component and repository health risk (Provenance)
Weakness identification in compiled software (ZeroLens)
Semantic search for code provenance and supply chain origin (Trace)
Reachability analysis identifying vulnerable code that runs at startup

Do you work at NetRise? to confirm the details or send us a correction.

Sources & references

Where the information on this listing comes from. Always verify pricing and capabilities against the vendor before a purchasing decision.

Spot an error, or do you represent NetRise? Request a correction.

Quick Info
PricingNot published; contact sales. A free SBOM report is offered.
ModelEnterprise subscription
Founded2020
CloudYes
Self-HostedNo

Last updated: Aug 26, 2026