Indegy
Last updated: Jul 31, 2026
Indegy developed OT/ICS security technology for industrial asset visibility, safe device assessment, configuration monitoring, and threat detection. Tenable acquired the company in December 2019; its capabilities now underpin Tenable's OT security and exposure-management products rather than an independent Indegy business.
Visit WebsiteCompany Overview
Indegy was an industrial cybersecurity company founded in 2014 around a difficult operational problem: security teams cannot protect industrial control systems if they do not know which PLCs, RTUs, HMIs, engineering workstations, network devices, and other assets are present, how those assets depend on one another, and what constitutes a dangerous change. Its product approach combined passive network monitoring with OT-aware asset identification and safe active interrogation. This is materially different from simply importing an IT vulnerability scanner into a plant, because industrial protocols, vendor-specific device behavior, firmware, backplane components, and process sensitivity all affect what can be queried safely. Tenable described Indegy as bringing asset inventory, configuration management, threat detection, vulnerability assessment, and a patented non-intrusive active-analysis approach into its platform.
The customer problem is shared by manufacturers, energy operators, water utilities, pharmaceutical plants, transportation operators, and other organizations with cyber-physical production environments. OT networks are often heterogeneous, contain long-lived equipment, and have uptime and safety constraints that make intrusive scanning or rapid patching unacceptable. Current Tenable positioning emphasizes visibility into dormant PLCs, shadow IT, unmanaged IoT, firmware, lifecycle data, known vulnerabilities, configuration changes, anomalies, communication paths, and IT/OT exposure. That product framing indicates a shift from a standalone Indegy suite toward a broader exposure-management workflow in which plant data is correlated with enterprise vulnerability intelligence and remediation prioritization. The commercial value is therefore less about a single detection feature than about reducing uncertainty and helping security, operations, and executive teams agree on which exposures threaten uptime or physical safety.
The competitive field remains strong. Claroty, Nozomi Networks, Dragos, Armis, Microsoft Defender for IoT, and Forescout all offer overlapping combinations of asset discovery, network monitoring, vulnerability context, anomaly detection, and integrations. Indegy's defensible contribution was its OT-specific device semantics and the combination of passive visibility with safe active analysis, while Tenable supplied an established vulnerability-management channel, risk-prioritization layer, and enterprise platform. That combination can shorten the path from discovery to a ranked remediation queue, but it does not eliminate the need for protocol coverage, site-specific tuning, systems-integrator expertise, and careful validation before deployment. Buyers may also prefer a specialist platform with deeper incident-response or threat-intelligence features, or a broader security vendor that already owns adjacent IT, cloud, and identity workflows.
The strongest commercialization signal is the acquisition itself. Tenable announced on December 2, 2019 that it acquired Indegy for $78 million in cash and stated that Indegy's financial results were immaterial to Tenable's fourth-quarter 2019 results. Tenable's contemporaneous materials called the product Tenable.ot, powered by Indegy, and described integration with Tenable.sc, Tenable.io, and Tenable Lumin. The current product surface is Tenable One OT Exposure, which presents the acquired capabilities as part of a mature, maintained OT/IT exposure platform. This supports a conclusion of product validation and strategic fit, but it does not provide current standalone revenue, headcount, retention, or roadmap evidence for Indegy as a separate company.
The national-security relevance is credible but should be stated narrowly. Asset inventory, controller integrity monitoring, segmentation visibility, vulnerability prioritization, and anomaly detection are foundational to resilience in electricity, water, fuel, transportation, communications, and defense-manufacturing environments. They can support both civilian critical infrastructure and defense industrial operations because the underlying problem is protection of cyber-physical processes, not a military-specific mission system. However, no public evidence in the reviewed sources establishes a particular defense contract, deployment, accreditation, or operational use by a government customer. The strategic case therefore rests on dual-use applicability and the importance of OT resilience, while diligence should separately confirm deployment constraints, product support, data-handling requirements, and the extent to which Tenable continues to invest in the acquired technology.
Dual-Use Assessment
Indegy's OT/ICS asset intelligence, safe device interrogation, configuration-change monitoring, network visibility, and vulnerability prioritization have substantive commercial and security applications. They can help protect power, water, manufacturing, transportation, logistics, and defense-industrial facilities where cyber incidents can affect physical processes, safety, or availability. The dual-use case is credible at the technology level, but the reviewed public sources do not establish a specific defense contract, military deployment, or government accreditation; those claims require separate diligence.
Strategic Fit Assessment
Indegy is not a live direct diligence target because Tenable acquired it in 2019 and integrated its technology into a mature public-company product portfolio. Its value to this database is as a validated OT-security capability and acquisition case: safe industrial discovery, device semantics, and risk prioritization can attract strategic buyers when they fit existing enterprise workflows. Current standalone financial performance, staffing, ownership, and liquidity are not applicable or publicly confirmed.
Strategic Value to U.S.-Israel Alliance
High as an acquired technology reference. Industrial asset visibility and integrity monitoring address a core resilience gap across critical infrastructure and defense production, while Tenable's platform can connect OT findings to broader cyber-risk decisions. The strategic value is tempered by limited public visibility into the standalone roadmap, current Indegy team, and the degree to which the original technology remains distinct within Tenable One OT Exposure.
Key Technologies
- Passive OT network monitoring for industrial protocols
- Vendor-aware PLC, RTU, DCS, and HMI asset fingerprinting
- Patented safe active querying of industrial devices
- Firmware, backplane, lifecycle, and vulnerability intelligence
- Configuration-change and integrity monitoring
- OT network dependency and communication-path mapping
- Risk-based prioritization of industrial exposures
Use Cases & Applications
- Continuous discovery of OT, IoT, and unmanaged industrial assets
- Detecting unauthorized changes to PLC logic or device configuration
- Prioritizing vulnerabilities by exploitability, asset criticality, and physical impact
- Monitoring SCADA, DCS, manufacturing, energy, and water networks
- Supporting incident response and segmentation analysis in industrial environments
- Connecting OT exposure data to enterprise vulnerability and SIEM/SOAR workflows
- Protecting defense manufacturing and other critical-infrastructure operations
- Supporting compliance evidence for OT security programs
Sources and verification
This profile is based on public-source research, Claw & Talon curation, and editorial judgment. Inclusion does not imply endorsement, partnership, investment, or a recommendation to transact. Readers should still confirm current status, customers, funding, and product claims before relying on this profile. The editorial policy explains how profiles are researched, where automated drafting is used, and how corrections work.
This record lists 5 public references used for company identity, status, positioning, or material-claim review.
Public sources
The links below are visible public references used for source discipline around company identity, status, funding, customer, acquisition, public-company, or other material claims where available.
- Tenable investor relations, "Tenable Acquires Operational Technology Security Leader Indegy" (December 2, 2019), Tenable investor relations, "Tenable Acquires Operational Technology Security Leader Indegy" (December 2, 2019),
- Tenable, "Tenable One OT Exposure", current product page, Tenable, "Tenable One OT Exposure", current product page,
- U.S. Securities and Exchange Commission, Tenable 2019 Form 10-K, acquisition and purchase-price disclosures, U.S. Securities and Exchange Commission, Tenable 2019 Form 10-K, acquisition and purchase-price disclosures,
- Tenable, "Tenable Corporate Fact Sheet" (2020), identifying Tenable.ot as powered by Indegy, Tenable, "Tenable Corporate Fact Sheet" (2020), identifying Tenable.ot as powered by Indegy,
- LinkedIn, Indegy company profile, founded 2014 and historical company-size listing, LinkedIn, Indegy company profile, founded 2014 and historical company-size listing,
- Profile update timestamp Last updated in the Claw & Talon database on Jul 31, 2026.
Investor Lens
What this entry is
Acquired asset
Why it may matter
Indegy may matter as a Cybersecurity entry with not currently an investable standalone company for Israeli technology research.
How an independent investor should read this
Not currently an investable standalone company. Read this profile as a starting point for independent verification, not as a recommendation or suitability assessment.
Evidence to verify
- Verify current status
- Verify technical claims
- Verify regulatory/export-control issues
Main investor questions
- Is this entry a benchmark, buyer, ecosystem node, acquired asset, or strategic reference rather than a live startup opportunity?
- What does this reference clarify about buyers, sector structure, public-market context, or strategic demand?
- Does the dual-use claim map to actual commercial and government/defense/resilience buyer evidence?
- What evidence would change the thesis or show that the profile is stale?
What not to infer
- Inclusion does not imply endorsement.
- Inclusion does not imply allocation availability or current fundraising.
- Scores do not indicate investment suitability or expected returns.
- Strategic importance does not automatically imply venture return potential.
Diligence questions
- What evidence verifies Indegy's current customer traction, deployment status, and revenue concentration?
- Which technical claims are independently demonstrable today, and which remain roadmap or pilot-stage assertions?
- Where does the product create real defense, intelligence, critical-infrastructure, or emergency-response value beyond ordinary commercial adoption?
- How does the platform integrate into existing SOC, cloud, identity, or compliance workflows without adding operational burden?
- Is the company a live venture opportunity, a mature strategic reference, an acquired asset, or primarily a market-mapping entry?
Related sector
See the Cybersecurity sector page for market context, related subcategories, and other Israeli companies in this part of the database.
Related companies
Need a diligence readout?
Use the profile and related checklists as a starting point. If the decision needs more context, request a company screen, founder-call prep, diligence memo, or sector readout.