AI-powered web exposure management for third-party and supply-chain threats
Reflectiz detects hidden web components, malicious scripts, and supply-chain risks before attackers exploit them—positioning the company at the intersection of application security and threat intelligence. The tech stack (Node.js, TypeScript, Chromium, Docker, Kubernetes, GCP/AWS/Azure) reflects a mature scanning platform built for scale. The hiring mix is heavily skewed toward sales (10 roles) with minimal engineering (3), and projects focus equally on technical sales flows and product expansion (threat research, penetration testing, regional growth)—indicating a sales-led company ramping GTM in the Americas while building security products in parallel.
Reflectiz provides continuous web exposure management, scanning live websites to uncover vulnerabilities in first-, third-, and fourth-party code before exploitation occurs. The platform specializes in detecting Magecart attacks, JavaScript-based threats, web skimming, and supply-chain compromise. Founded in 2016 and based in Israel, the company operates as a 11–50-person organization with active hiring across the United States, Israel, and Australia. Current product work spans threat research, penetration testing capabilities, and security assessment tooling, while commercial efforts concentrate on sales acceleration and channel partnerships in the Americas.
Node.js, TypeScript, JavaScript, Chromium, Docker, Kubernetes, PostgreSQL, and cloud infrastructure (GCP, AWS, Azure). The stack also includes Terraform for infrastructure-as-code, Angular for frontend, and OWASP standards compliance.
Ramat Gan, Israel. The company was founded in 2016 and currently hires across the United States, Israel, and Australia.
Other companies in the same industry, closest in size