Latka logo

Top 3 Dynamic Application Security Testing Software Companies With $5M–$10M Revenue (September 2026)

As of September 2026, Latka tracks 3 dynamic application security testing software companies with $5M–$10M in annual revenue. They have combined revenues of $16.5M and employ 242 people. They serve 2K customers combined.

Every company below sells dynamic application security testing software to other businesses and is ranked by its most recent annual revenue. Revenue, funding, headcount and customer figures come from CEO interviews on the Latka podcast, public company filings, and Latka estimates where a company has not disclosed a number.

What Dynamic Application Security Testing Software Companies do

Dynamic Application Security Testing (DAST) Software is a category of security testing tools designed to identify vulnerabilities in web applications and services while they are running. Unlike static application security testing, DAST assesses applications in real-time from an external perspective, simulating the behavior of potential attackers. This dynamic testing method helps organizations discover issues such as SQL injection, cross-site scripting, and other security weaknesses that could be exploited during operations. DAST tools are primarily used by security professionals and DevSecOps teams to ensure that applications are secured against external threats before they are deployed or while they are live. Common features of DAST software include security scanning, vulnerability detection, and reporting capabilities. These tools often integrate with development pipelines, allowing for continuous security monitoring and compliance throughout the application lifecycle.

Companies
3
Revenue
$16.5M
Funding
-
Employees
242

Filters

Sorting: Highest -> Lowest

Filters

Top Dynamic Application Security Testing Software Companies With $5M–$10M Revenue

Showing 3 of 3 companies ranked by annual revenue.

1Indusface logo
Indusface

Vadodara, India

website security solutions

Revenue
$6M
Customers
2K
Year founded
2012
Team size
162
2vantagepoint.sg logo
vantagepoint.sg

Singapore, Singapore, Singapore

CREST Approved Penetration Testing in SE Asia. Mobile Application Security Testing Web Application Security Testing CLOUD Security Assessments API Security Testing Network Penetration Testing Red Teaming Phishing Campaigns

Revenue
$5.5M
Year founded
2014
Team size
50
3PentesterLab logo
PentesterLab

Victoria, Australia

Learn Web Application Hacking

Revenue
$5M
Year founded
2011
Team size
30

Frequently asked questions about Dynamic Application Security Testing Software Companies With $5M–$10M Revenue

How many dynamic application security testing software companies with $5M–$10M in annual revenue are there?

Latka tracks 3 dynamic application security testing software companies with $5M–$10M in annual revenue. Together they generate $16.5M in annual revenue and employ 242 people.

Which dynamic application security testing software company with $5M–$10M in annual revenue is the largest?

Indusface is the largest, with $6M in annual revenue, founded in 2012.

How much revenue does a typical dynamic application security testing software company with $5M–$10M in annual revenue make?

The average dynamic application security testing software company in this list makes $5.5M a year, across 3 companies with reported revenue. They serve 2K customers combined.

Who are the leading Dynamic Application Security Testing software vendors with $5M–$10M in annual revenue?

Ranked by annual revenue, the leaders are Indusface, vantagepoint.sg and PentesterLab.

Related Security Software categories

Inclusion Criteria

- The software must scan web applications in real-time for security vulnerabilities. - It must simulate attacks from an external perspective without requiring access to the source code. - Capable of identifying a range of vulnerabilities, such as SQL injection, cross-site scripting, and similar exploits. - Features should include automated reporting of discovered vulnerabilities and potential remediation guidance. - Not limited to static testing; must provide active assessment during application runtime.