Web application and API security scanning platform with agentic automation
Invicti scans web applications and APIs for vulnerabilities at scale, operating a sales-heavy org (5 of 10 active roles) while building next-generation agentic security tooling in parallel. The hiring velocity is accelerating, and the project list reveals a dual focus: enterprise prospecting and POC execution in growth markets (EMEA, APAC, ME&A), alongside internal R&D on agentic pentesting and MCP integrations — suggesting a shift toward AI-assisted security assessment.
Invicti provides continuous scanning and remediation for web application and API security. The platform serves over 3,500 organizations globally, offering broad coverage of large application portfolios through automation and third-party integrations. Based in Austin, Texas, the company operates across 201–500 employees and is actively hiring in the United States and Malta. Current pain points include alert noise reduction, improving customer adoption, and expanding revenue per existing customer — challenges typical of a scale-stage AppSec vendor managing both acquisition and retention.
Invicti's core stack includes Python, Go, and C# for backend services; Vue for frontend; Kubernetes and Docker for orchestration; AWS for cloud infrastructure; and integrations with Salesforce, Outreach, and 6sense for sales operations. Security tools in use include Burp Suite, Snyk, and Semgrep.
Invicti is headquartered in Austin, Texas. The company is actively recruiting in the United States and Malta.
Other companies in the same industry, closest in size
Invicti's technology stack, projects, and hiring signals are inferred from public hiring and company data — career pages, public listings, and company web presence — then clustered and de-duplicated. Figures are estimates that refresh over time. Read our full methodology →
This is not an official vendor or customer list. It is a technology-adoption signal inferred from public data, intended for B2B research.