Gutsy
Security process intelligence platform applying process mining techniques to analyze, measure, and optimize cybersecurity operations and workflows.
Visit WebsiteCompany Overview
Gutsy is an Israeli cybersecurity startup founded in 2022 and headquartered in Tel Aviv, building a security process intelligence platform that applies process mining methodology to cybersecurity operations. The company was founded by the original creators of Demisto, the security orchestration platform that was acquired by Palo Alto Networks and became Cortex XSOAR, bringing deep domain expertise in security operations center (SOC) workflows and automation.
The platform ingests data from across the security technology stack—SIEMs, SOARs, ticketing systems, EDR tools, identity platforms, and cloud security tools—to reconstruct and visualize the actual end-to-end processes that security teams follow when handling incidents, vulnerabilities, and compliance tasks. Unlike traditional security analytics that focus on threat data, Gutsy focuses on the operational processes themselves, revealing bottlenecks, deviations from standard procedures, redundant steps, and areas where automation would have the highest impact.
Gutsy addresses a critical blind spot in cybersecurity: while organizations invest heavily in security tools, they have limited visibility into how their security operations actually function day-to-day. By providing quantitative measurements of security process effectiveness, Gutsy enables CISOs and security leaders to make data-driven decisions about staffing, tool investments, and process improvements. The company has raised seed funding and is building its initial customer base among enterprise security organizations.
Dual-Use Assessment
Security process intelligence technology is directly applicable to defense cyber operations, enabling military SOCs to measure and optimize their incident response workflows, analyze the effectiveness of cyber defense procedures, and identify gaps in security operations processes across classified and unclassified networks.
Key Technologies
- Process mining algorithms adapted for cybersecurity operational workflows
- Cross-tool security data ingestion and correlation engine
- Security workflow visualization and bottleneck detection
- Quantitative security process effectiveness measurement
- AI-driven process optimization recommendations for SOC operations
Use Cases & Applications
- SOC workflow analysis and optimization for enterprise security teams
- Security process compliance measurement and audit readiness
- Incident response effectiveness measurement and improvement
- Military cyber operations center process optimization and staffing analysis
- Security tool ROI analysis based on actual operational usage patterns
Strategic Value to U.S.-Israel Alliance
Security process intelligence is highly valuable for defense and allied government agencies seeking to optimize their cyber operations centers. Gutsy's technology can help military organizations measure the effectiveness of their security procedures, identify process gaps, and optimize incident response workflows across complex multi-classification environments.
Interested in this startup?
Learn more about our investment approach or get in touch to discuss opportunities in dual-use technology.