

Uptycs
By Uptycs, Inc.
Uptycs is a leading cybersecurity firm headquartered in Waltham, Massachusetts, that has pioneered the 'security-as-data' philosophy. Founded in 2016, the company addresses the critical visibility gaps in modern enterprise environments caused by the shift to cloud-native architectures. By leveraging the power of osquery—an open-source project that exposes operating system telemetry as a relational database—Uptycs has built a high-scale analytics platform that unifies security across the entire hybrid attack surface. The company positions itself as a consolidator in a crowded market, allowing organizations to replace multiple standalone tools for CSPM, CWPP, and EDR with a single, high-fidelity solution. Uptycs has gained significant traction among Fortune 500 companies and tech-forward enterprises that require deep observability into their CI/CD pipelines, Kubernetes clusters, and global endpoint fleets. Its strategic vision centers on 'shifting security up'—not just left into development, but up into the decision-making process by providing structured, verifiable data for risk management and incident response.
Uptycs was founded in 2016 by a team of seasoned technology leaders: Ganesh Pai (CEO), Milan Shah (CTO), Uma Reddy (EVP of Product and Technology), and Mike Hluchyj. The founders brought extensive experience from high-growth technology companies like Akamai, Verivue, and Cisco. The core vision was born from the observation that as infrastructure moved from static servers to dynamic cloud workloads and containers, existing security tools were unable to provide the necessary scale and depth of visibility. They decided to build a platform from first principles, choosing to normalize telemetry at the source and store it in a unified data model. This approach allowed them to bypass the ETL (Extract, Transform, Load) bottleneck that plagues traditional SIEMs. The name 'Uptycs' reflects their focus on 'optics' or visibility—specifically, providing 'upwards' visibility into the security posture of modern digital assets. From its early days, the company has been a major contributor to the open-source community, particularly around the osquery project, which serves as the foundational sensor technology for their enterprise platform.
Uptycs has raised a total of $93 million in venture capital funding over four major rounds, reflecting strong investor confidence in its unified security analytics approach. The journey began with a Seed round in April 2016, led by Genacast Ventures and Comcast Ventures. This was followed by a $10 million Series A in June 2018, led by ForgePoint Capital with participation from Comcast Ventures. In June 2020, at the height of the digital transformation acceleration driven by remote work, Uptycs secured $30 million in Series B funding led by Sapphire Ventures. The company's latest and largest round was a $50 million Series C announced in May 2021, led by Norwest Venture Partners, with participation from existing investors Sapphire Ventures and new strategic partner ServiceNow Ventures. This funding has been instrumental in scaling the company's global operations, particularly its expansion into the Indian market, and fueling R&D for advanced features like the Juno AI verifiable security assistant and eBPF-based runtime protection. Notable board members include Jai Das (Sapphire Ventures) and Dave Zilberman (Norwest Ventures).
Uptycs offers a highly modular platform that unifies several critical cybersecurity categories into three primary solution packages: Discover, Audit, and Secure. The 'Discover' package provides real-time unified asset inventory across hybrid clouds, Kubernetes, and endpoints, featuring automated discovery and visual relationship mapping. The 'Audit' package targets Governance, Risk, and Compliance (GRC) teams, offering continuous vulnerability scanning, compliance monitoring for over 25 frameworks (such as SOC 2, HIPAA, and CIS benchmarks), and risk prioritization. The 'Secure' package is the flagship offering for Security Operations Centers (SOCs), providing advanced runtime protection using eBPF, Cloud Detection and Response (CDR), and incident forensics. Beyond these packages, Uptycs provides 'Uptycs Nexus' for affordable open-source osquery fleet management and several specialized modules for Software Supply Chain Security, Cloud Identity Entitlement Management (CIEM), and File Integrity Monitoring (FIM). Each offering is powered by the same underlying 'Detection Cloud' and unified data model, ensuring that as a customer moves from simple asset inventory to advanced threat hunting, they do not need to deploy new agents or re-learn a new interface.
While headquartered in Waltham, MA, Uptycs has pursued an aggressive global expansion strategy to support its international client base. A major component of this expansion is its strong presence in India, where it operates under Uptycs India Pvt. Ltd. with significant offices in Bengaluru, Pune, and Hyderabad. These locations serve as critical hubs for infrastructure engineering, customer success, and security research. In 2024, Uptycs launched its 'Upward™' Channel Partner Program to drive global market penetration through a network of Value-Added Resellers (VARs) and Managed Security Service Providers (MSSPs). This includes strategic partnerships in key European markets, such as its collaboration with Kite to enhance cloud security presence in the United Kingdom. While the company has not yet established a physical headquarters in the GCC region, it serves Middle Eastern clients through its global partner ecosystem and remote sales teams, aligning its security capabilities with regional digital transformation initiatives like Saudi Vision 2030 and UAE's AI strategies. The platform's support for multi-cloud residency also allows it to cater to organizations with strict regional data sovereignty requirements.
Uptycs has maintained a rapid innovation cadence, with several major feature launches over the last 18 months. The most significant is 'Juno AI,' the industry's first verifiable AI Security Analyst launched in November 2025. Juno uses agentic reasoning over structured security ontology to perform natural-language investigations, providing analysts with evidence-backed conclusions that eliminate 'hallucinations.' Another major addition is the 'Blast Radius Mitigation' framework, which provides a five-step structured sequence for detecting, assessing, containing, and remediating cloud threats at runtime. Uptycs has also significantly deepened its 'Shift-Left' capabilities by introducing Software Supply Chain Security modules that trace runtime threats back to specific code commits in GitHub or GitLab. Enhancements to its eBPF sensor have added 'Protect' capabilities, allowing the platform to automatically kill malicious processes like cryptominers or ransomware in real-time. Finally, the platform's UI was recently reimagined to provide a more intuitive 'Security Graph' visualization, making it easier for analysts to understand complex attack paths and relationships between identities and cloud assets.
The culture at Uptycs is built on a foundation of 'Security Engineering' and transparency. The company adheres to Agile principles for its development lifecycle, emphasizing rapid iteration and security-by-design. Employees are encouraged to contribute to the open-source community, reflecting the company's origins with osquery. The work environment is described as fast-paced and mission-driven, with a focus on solving the 'hard' technical problems of security at scale. Values like 'Observe, Analyze, Contextualize' are not just product steps but core operating philosophies. Uptycs prioritizes continuous learning, with all personnel undergoing annual security awareness training. The company leverages its own platform for its internal security operations, fostering a 'dogfooding' culture where engineers and analysts are the first users of new features. With a global workforce spread across the US and India, Uptycs supports a hybrid work environment and emphasizes clear communication and data-driven decision-making. Leadership, led by founder Ganesh Pai, is known for being accessible and technically involved, maintaining a 'founder-led' energy even as the company scales to over 120 employees.
Uptycs is deeply embedded in the open-source security ecosystem, most notably as a primary contributor and steward of the osquery community. The company provides numerous open-source tools and connectors, such as 'kubequery' for Kubernetes observability and 'cloudquery' for cloud infrastructure visibility, which allow developers to extract security data using SQL. Uptycs also hosts regular 'Uptycs Live' webinars and academy sessions to educate security professionals on topics like Attack Path Mapping, Linux EDR, and CNAPP best practices. The company actively participates in industry evaluations, such as the MITRE ATT&CK Evaluations for Enterprise, where it consistently showcases high-fidelity detection capabilities. For its enterprise users, Uptycs offers a robust community of practice through dedicated customer success managers and technical forums. The company's 'Upward' partner program also fosters a community of MSSPs and security consultants who share best practices for deploying unified security at scale. By bridging the gap between open-source enthusiasts and enterprise security leaders, Uptycs has created a unique ecosystem that prioritizes telemetry standards and collective defense.