AI-powered security data lake and threat intelligence platform for SOC operations
Anomali operates a security data lake and threat intelligence platform built to replace legacy SIEM/SOAR/XDR systems. The tech stack reveals a mature cloud-native architecture (Kubernetes, AWS, GCP, OCI, Terraform) paired with security-specific tooling (Splunk, EDR, XDR, RAG). Hiring is heavily sales-focused (9 of 13 open roles), with concurrent investment in channel and MSSP go-to-market strategies—indicating a shift from direct enterprise sales toward ecosystem-driven revenue.
Anomali delivers a security operations platform centered on a cloud-native data lake designed to ingest and analyze security telemetry at scale. The product includes threat intelligence enrichment (ThreatStream), AI-driven automation for triage and response, and analytics dashboards. The company serves global enterprises and government organizations managing complex security environments. Current operational focus spans direct enterprise account expansion, channel partner scaling, and regional market entry, with active projects in GTM consolidation and ecosystem development.
Python, Java, JavaScript for application code; Kubernetes and AWS (EKS, Lambda, RDS) for infrastructure; Terraform for IaC; Splunk for monitoring; testing via Cypress and Playwright; cloud across AWS, GCP, and OCI.
Redwood City, California. The company was founded in 2013 and is privately held with 201–500 employees.
Other companies in the same industry, closest in size
Anomali's technology stack, projects, and hiring signals are inferred from public hiring and company data — career pages, public listings, and company web presence — then clustered and de-duplicated. Figures are estimates that refresh over time. Read our full methodology →
This is not an official vendor or customer list. It is a technology-adoption signal inferred from public data, intended for B2B research.