Latka logo

Top 9 Vendor Security and Privacy Assessment Software Companies With $1M–$5M Revenue (September 2026)

As of September 2026, Latka tracks 9 vendor security and privacy assessment software companies with $1M–$5M in annual revenue. They have combined revenues of $27M and employ 219 people. They have raised $20.4M.

Every company below sells vendor security and privacy assessment software to other businesses and is ranked by its most recent annual revenue. Revenue, funding, headcount and customer figures come from CEO interviews on the Latka podcast, public company filings, and Latka estimates where a company has not disclosed a number.

What Vendor Security and Privacy Assessment Software Companies do

Vendor Security and Privacy Assessment Software enables organizations to evaluate and manage the security and privacy risks associated with their third-party vendors. These tools assist in identifying, assessing, and continuously monitoring vendors to ensure they meet required security standards and compliance regulations. Typical use cases include conducting security assessments, managing vendor communications regarding security practices, and facilitating compliance with data protection laws. The primary features of this software often include vendor risk scoring, automated workflows for assessments, reporting functions, and integration capabilities with existing security systems. Common users of this software are risk management teams, compliance officers, procurement departments, and IT security professionals who need to maintain a secure supply chain and safeguard sensitive data shared with third-party vendors.

Companies
9
Revenue
$27M
Funding
$20.4M
Employees
219

Filters

Sorting: Highest -> Lowest

Filters

Top Vendor Security and Privacy Assessment Software Companies With $1M–$5M Revenue

Showing 9 of 9 companies ranked by annual revenue.

1Vendict logo
Vendict

United States

Vendict revolutionizes GRC with cutting-edge security language expertise. We provide the best AI-native solutions for governance, risk and compliance by building trust through automating tasks like audit preparation, Third-Party Risk Management, Knowledge Management, and Response Automation. Discover how leading companies leverage AI to streamline workflows, simplify compliance, and effortlessly build trust with Vendict.

Revenue
$4.4M
Year founded
2020
Team size
40
2Gen3 Technology Consulting logo
Gen3 Technology Consulting

Gaithersburg, Maryland, United States

IT consultancy offering cybersecurity, privacy, program and project management, and management consulting services

Revenue
$4M
Year founded
2017
Team size
19
3Findings logo
Findings

New York, United States

Findings automates supply-chain security and privacy risk management at scale, enabling companies to scale their security TPRM program by streamlining the customer-vendor security compliance process.

Revenue
$3.4M
Year founded
2018
Team size
34
4VISO Trust logo
VISO Trust

San Francisco, California, United States

SaaS third party cyber risk management for the modern enterprise

Revenue
$3M
Year founded
2020
Funding
$14M
Team size
41
5TerraTrue logo
TerraTrue

San Francisco, California, United States

Companies are innovating so quickly today that security and privacy often become fleeting blurs in the product life cycle. It doesn't have to be that way. We founded TerraTrue because we believe that you can integrate security and privacy in product development - from conception to launch - without jeopardizing innovation or slowing execution. The key is to have the right tools and systems. But until now, the only way companies could get those tools and systems was to devote countless resources - time, money, and engineering talent - to building it all themselves. We're changing that. We'll soon introduce our Launch Approval tool, which will democratize security and privacy, so that all companies can now seamlessly integrate those core concerns into their product development. Our Launch Approval tool will empower teams to review and coordinate different functions, reduce friction, identify security and privacy risks earlier, and enhance the safety of every launch by ensuring that a

Revenue
$2.9M
Year founded
2018
Team size
22
6Compleye.io logo
Compleye.io

Amsterdam, North Holland, Netherlands

Compleye offers an online tool & customized support for security and privacy challenges for smart technology B2B companies.

Revenue
$2.7M
Year founded
2019
Funding
$58.2K
Team size
7
7FortifyData logo
FortifyData

Kennesaw, Georgia, United States

Developer of a cyber risk analysis platform intended to help companies assess and monitor risks of mission-critical resources. The company's offerings include vendor risk assessment and monitoring, company record checks, network vulnerability management, historical data breach record checks and web application security analysis, enabling businesses to provide data protection with the latest industry standards.

Revenue
$2.7M
Year founded
2015
Funding
$6.3M
Team size
20
8ProcessBolt logo
ProcessBolt

Minnetonka, Minnesota, United States

ProcessBolt verifies the security risk of your organization by providing a centralized platform to automate risk assessments from your third-party vendors, continuously monitor attack their surfaces, and correlate data from policy documents to ensure each vendor is secure and aligned with their attestations 24/7. Visit us at www.processbolt.com

Revenue
$2.5M
Year founded
2017
Team size
23
9Ceeyu - TPRM made easy logo
Ceeyu - TPRM made easy

United States

Ceeyu's SaaS platform makes supply chain risk management easy as pie for companies subject to NIS2 or DORA. The platform periodically performs automated scans and risk analysis of the digital footprint of suppliers or partners (aka attack surface scans). Because not all risks can be identified in an automated manner, Ceeyu also offers the possibility to collect certificates and audit reports, and to carry out digital questionnaire-based audits. The latter can be done by creating questionnaires tailored to the supplier, from a white sheet or starting from templates that Ceeyu makes available. The completion of the questionnaire by the supplier and the follow-up of the process by the customer is done in a secure environment on the same SaaS platform. The platform enables a simple, central follow-up of supply chain risks, entirely online and without the intervention of third parties. The closed platform guarantees the confidentiality of the assessments and data, since only authorized persons have access to the application.

Revenue
$1.4M
Year founded
2020
Team size
13

Frequently asked questions about Vendor Security and Privacy Assessment Software Companies With $1M–$5M Revenue

How many vendor security and privacy assessment software companies with $1M–$5M in annual revenue are there?

Latka tracks 9 vendor security and privacy assessment software companies with $1M–$5M in annual revenue. Together they generate $27M in annual revenue and employ 219 people.

Which vendor security and privacy assessment software company with $1M–$5M in annual revenue is the largest?

Vendict is the largest, with $4.4M in annual revenue, founded in 2020.

How much revenue does a typical vendor security and privacy assessment software company with $1M–$5M in annual revenue make?

The average vendor security and privacy assessment software company in this list makes $3M a year, across 9 companies with reported revenue.

Who are the leading Vendor Security and Privacy Assessment software vendors with $1M–$5M in annual revenue?

Ranked by annual revenue, the leaders are Vendict, Gen3 Technology Consulting, Findings, VISO Trust and TerraTrue.

How much funding have vendor security and privacy assessment software companies with $1M–$5M in annual revenue raised?

The 9 vendor security and privacy assessment software companies with $1M–$5M in annual revenue tracked here have raised $20.4M in disclosed funding between them.

Related Security Software categories

Inclusion Criteria

- Must provide tools for assessing the security posture of vendors - Should include features for tracking compliance with relevant regulations and standards - Must support automated workflows for vendor risk assessments - Should enable continuous monitoring and reassessment of vendor security - Must facilitate vendor communication about security practices and requirements - Not just a simple questionnaire or form; must also offer risk scoring and reporting functionalities - Should integrate with existing enterprise security solutions