Agentless cloud security platform for AWS, Azure, GCP, and Kubernetes
Orca Security operates an agentless scanning platform across major public clouds and Kubernetes, built on a polyglot stack (Python, Go, Rust) that processes continuous data streams via Kafka and real-time pipelines. The organization is shifting toward event-driven architecture while adopting RAG, suggesting evolution toward AI-assisted threat contextualization. Engineering and sales hiring remain active despite decelerating velocity, with a notable security team (6 open roles) alongside product and research functions—reflective of a mature, multi-faceted cloud risk product.
Orca Security is a cloud security posture and workload protection platform founded in 2019 and headquartered in Portland, Oregon. The company serves hundreds of enterprises with agentless scanning and risk remediation across AWS, Azure, Google Cloud, and Kubernetes environments. The platform identifies misconfigurations, compliance violations, and breach signals across multi-region deployments. The tech foundation spans Python, Go, and Rust for backend logic; Kafka, PostgreSQL, and SingleStore for data ingestion and state; Elasticsearch for search and forensics; and AWS/GCP/Azure SDKs for cloud integrations. The organization operates with distributed hiring across eight countries, with sales, engineering, and security as primary functional pillars.
AWS, Azure, Google Cloud, and Kubernetes. The platform also covers container and cloud-native workload security in addition to infrastructure and compliance scanning.
Core languages: Python, Go, Rust. Data layer: PostgreSQL, SingleStore, Elasticsearch, Kafka, Redis. Cloud integrations: AWS, GCP, Azure. Infrastructure: Kubernetes, Terraform, CloudFormation.
Hiring active in United States, Israel, United Kingdom, Japan, Australia, France, Singapore, Netherlands, and India. Sales (18 open), engineering (13), and security (6) are primary hiring areas.
Other companies in the same industry, closest in size