Manual penetration testing and security risk assessment for SaaS applications
Clear Gate performs manual penetration testing and code review for SaaS companies, deliberately avoiding automation in favor of human-led security assessment. The tech stack is lean—Burp Suite, OWASP, and scripting languages (Python, JavaScript, Bash)—reflecting a service-delivery model rather than platform-building. Hiring velocity is accelerating with a 2-to-1 security-to-sales ratio, but internal pain points around project delivery and managing multiple concurrent assessments suggest scaling bottlenecks typical of manual-service teams.
Clear Gate is an Israeli penetration testing and risk assessment firm founded in 2016, serving SaaS companies globally. The company specializes exclusively in manual security testing—penetration tests, code reviews, and application security assessments—rejecting automation-first approaches in favor of human logic and deeper vulnerability discovery. Their service scope covers web applications, mobile apps, APIs, and SaaS infrastructure, with compliance certifications (ISO 27001, SOC2 Type 2) positioning them for regulated-industry clients. The 11–50 person team operates from Petah Tikva with all hiring currently concentrated in Israel.
Manual penetration testing, code review, risk assessment, and application security for SaaS. Specialties include mobile app security, API security, and compliance readiness (ISO 27001, SOC2 Type 2).
Burp Suite, OWASP, Linux, Windows, and custom scripting (Python, Bash, JavaScript). The stack emphasizes manual testing frameworks over fully automated scanning.
Other companies in the same industry, closest in size