Picus Security Logo
Develops a platform for Breach and Attack Simulation and Adversarial Exposure Validation to help companies validate security effectiveness.

About Picus Security

Founded in 2013, we specialize in Breach and Attack Simulation (BAS) and Adversarial Exposure Validation (AEV) within the computer and network security industry. We provide the Picus Security Validation Platform, which helps organizations validate security effectiveness, prioritize real risks, and act faster with evidence.

Our platform combines exposure assessment, security control validation, and exposure validation to provide a complete view of security performance. It safely simulates real attack techniques and adversarial TTPs (Tactics, Techniques, and Procedures) across network, endpoint, and cloud environments. Its capabilities include External Attack Surface Management (EASM), Cyber Asset Attack Surface Management (CAASM), Detection Rule Validation (DRV), Attack Path Validation (APV), Cloud Security Validation (CSV), and Exposure Mitigation. The platform also has a Smart Map, Risk Dashboard, and Auto-Remediation, and is powered by Numi AI.

Our platform integrates with various security controls like SIEM, EDR, NGFW, and WAF. It identifies the small percentage of vulnerabilities that are truly exploitable. This helps organizations reduce patch backlogs by 86% and decreases the mean time to remediate (MTTR) from 74 to 14 days. Our customers have seen an 86% decrease in high/critical vulnerability backlog, an 81% decrease in MTTR, and 92% fewer SLA violations for high/critical vulnerabilities. They also report an estimated $580,000 annual labor cost reduction from optimized workloads.

We serve enterprises worldwide, including Mastercard, Vodafone, VMware, and Turkish Airlines. We have partnered with Mastercard to enhance global cybersecurity resilience through Mastercard’s Cyber Front platform, which uses our technology.

We have secured $80 million in funding across multiple rounds, including a $45 million Series C growth investment in September 2024. We have 500 customers, 35 tech alliances, and 80 channel partners.

Mission & Values

Our mission is “to reduce cyber risk through security validation.”

We operate based on three core values:

  • Innovate: We encourage our team to be innovation drivers, challenging the status quo in cyber risk management, finding solutions to real problems, and continuously pursuing innovation.
  • Elevate: We aim to take everything to the next level. We don’t settle; we do what others cannot, going the extra mile to deliver value and raise the bar.
  • Celebrate: We recognize and celebrate accomplishments and our collective journey, fostering a sense of pride and appreciation within the team.

Team & Culture

We are a global team of 201-500 employees. We foster a culture where our employees are encouraged to build new things, push out of their comfort zones, and collaboratively tackle challenges. Our work environment emphasizes working together to achieve personal and collective bests.

We are committed to Diversity, Inclusion, and Equality, creating a strong sense of belonging where individual uniqueness enhances team effectiveness. We provide all employees with equal opportunities for growth and development, supporting their evolution and celebrating individuality.

We operate as a global remote team, with physical offices in Ankara, Türkiye; Wilmington, Delaware, USA; Tampa, Florida, USA; the United Kingdom; and Singapore.

Benefits & Perks

We offer a range of benefits designed to support our employees, including:

  • Stock Options
  • Remote Work flexibility
  • Annual Leave
  • Work From Home Budget
  • Birthday Bliss (a day off to celebrate)
  • Rest & Relaxation Day (a day to recharge)
  • Volunteering Time Off
  • Competitive Salary

We also emphasize ongoing career development opportunities, global exposure through collaborating with customers worldwide, and the potential for increased responsibility in a rapidly growing environment. We are committed to being an equal opportunity employer.

Frequently Asked Questions

What products or services does Picus Security offer?

Picus Security provides the Picus Security Validation Platform, which includes Breach and Attack Simulation (BAS) and Adversarial Exposure Validation (AEV). The platform unifies exposure assessment, security control validation, and exposure validation capabilities. It offers features like External Attack Surface Management (EASM), Cyber Asset Attack Surface Management (CAASM), Detection Rule Validation (DRV), Attack Path Validation (APV), Cloud Security Validation (CSV), and Exposure Mitigation. The platform integrates with existing security controls such as SIEM, EDR, NGFW, and WAF.

What are the employee benefits at Picus Security?

Employee benefits at Picus Security include Stock Options, Remote Work flexibility, Annual Leave, a Work From Home Budget, a ‘Birthday Bliss’ day off, a ‘Rest & Relaxation Day’ off, Volunteering Time Off, and a Competitive Salary. The company also emphasizes ongoing career development opportunities, global exposure, and the potential for increased responsibility.

What is the company's work culture like?

Picus Security’s work culture is characterized by innovation, continuous elevation, and celebration of achievements. The company encourages employees to be innovation drivers, challenge the status quo, and continuously improve. It fosters a collaborative environment where teams work together, push boundaries, and take on challenges. There is a strong commitment to Diversity, Inclusion, and Equality, ensuring a sense of belonging and equal opportunities for growth for all employees.

How is Picus Security structured for remote work?

Picus Security operates as a global remote team, allowing for flexible work locations while maintaining a unified impact. The company provides a Work From Home Budget to support remote setups and emphasizes remote collaboration. While primarily remote, Picus Security also maintains offices in Türkiye, the USA (Delaware and Tampa), the United Kingdom, and Singapore.

When was Picus Security founded?

Picus Security was founded in 2013.

What industries and sectors does Picus Security specialize in?

Picus Security is active in the Network Security Device Testing, Automated Security Testing, Automated Control Assessment, Control Effectiveness Testing, Breach And Attack Simulation, Threat Exposure Management, Automated Pen Testing, Mitre Att&ck, Security Validation, Exposure Validation, and Adversarial Exposure Validation markets.

How many people work at Picus Security?

Picus Security has 201-500 employees.

Where does Picus Security hire?

Picus Security hires in 🇦🇺 Australia, 🇦🇿 Azerbaijan, 🇪🇸 Spain, 🇬🇧 United Kingdom, 🇮🇪 Ireland, 🇯🇵 Japan, 🇹🇷 Turkey, and 🇺🇸 United States.

Is Picus Security hiring?

Yes! Picus Security is actively hiring with 6 open remote jobs available now.

Does Picus Security hire for remote and work from home roles?

Yes, Picus Security is a remote-first company.

What is Picus Security's website?

Picus Security's website is www.picussecurity.com .

Where to find Picus Security on social media?

You can find Picus Security on X (Twitter) and LinkedIn .

6 remote jobs at Picus Security

Explore latest remote opportunities and join a team that values work flexibility.

Remote companies like Picus Security

Find your next opportunity with companies that specialize in Network Security Device Testing, Automated Security Testing, Automated Control Assessment, and Control Effectiveness Testing. Explore remote-first companies like Picus Security that prioritize flexible work and home-office freedom.

Bishop Fox Logo

Bishop Fox

Provides offensive security solutions including penetration testing, red teaming, and attack surface management.

View company profile →
Praetorian Logo

Praetorian

Provides continuous offensive security, attack surface management, and threat exposure management for enterprises.

View company profile →
CYE Logo

CYE

201-500 cyesec.com

A continuous exposure management platform that quantifies cyber risk in financial terms to enable mitigation.

View company profile →
BreachLock, Inc. Logo

BreachLock, Inc.

Continuous attack surface discovery, penetration testing, and red teaming services

View company profile →
Security Risk Advisors Logo

Security Risk Advisors

201-500 sra.io

Delivering cybersecurity consulting, 24x7 operations, and SaaS to companies across multiple industries.

View company profile →
SixMap, Inc. Logo

SixMap, Inc.

Preemptive exposure management for organizations, mapping external attack surfaces.

View company profile →

Project: Career Search

Rev. 2026.3

[ Remote Jobs ]
Direct Access

We source jobs directly from 21,000+ company career pages. No intermediaries.

01

Discover Hidden Jobs

Unique jobs you won't find on other job boards.

02

Advanced Filters

Filter by category, benefits, seniority, and more.

03

Priority Job Alerts

Get timely alerts for new job openings every day.

04

Manage Your Job Hunt

Save jobs you like and keep a simple list of your applications.

21,000+ SOURCES UPDATED 24/7