Building the AI-Native Threat & Exposure Management platform
Mallory unifies live adversary activity with your attack surface to prioritize the exposures real threat actors are targeting right now. We're built by veteran practitioners who've spent decades on the front lines, because defenders deserve AI that acts on intelligence instead of stockpiling it.
Bringing Frontier Intelligence to Proactive Cybersecurity
We built Mallory so a security team can answer “are we exposed?” in minutes, not days, and hunt the next one before it lands.
Frontier models have made analysis cheap. What remains scarce are intelligent systems that can reason over your own environment and act on what they find, at the scale and speed adversaries now move. That's where security operations is headed: the SOC and proactive security working in one closed loop over the same intelligence and the same attack surface, with models driving action across both.
Mallory was built to make that shift real. One graph holds active adversary campaigns alongside your assets, your code, and the people who own them. Models sit at the center, correlating adversary behavior against your exposure, and agents do that work at a scale beyond any team's staffing capacity, the way a senior analyst would.
We started with threat intelligence, because that's the foundation of intelligent action in security. Intelligence alone can't tell you whether you're exposed. Mallory turns “are we exposed to this?” into a verifiable answer, routed to the owner who can fix it ahead of the threat, and what that answer proves feeds back into what the system watches next. Defenders have always held the context advantage: the source, the commits, the inventory, the owners. Mallory is what finally puts frontier intelligence behind it.
“Threat intelligence has suffered too long from disconnected data and broken feedback loops. Security teams spend more time assembling the picture than analyzing it. They need to go from signal to context to action, without requiring a massive intel team.”
— Jonathan Cran, Founder & CEO
Backed by Decibel Partners
“Threat intelligence was built for an era where we would be able to process information at human speed. With the introduction of agents on the adversarial side, we no longer have a data intel problem but rather a context and reasoning problem. Jonathan and the Mallory team are changing that by connecting real-time threat activity to an organization's environment and processing it for relevance at agentic speed.”— Dan Nguyen-Huu, Partner at DecibelWith participation from LiveOak Ventures and senior leaders at Google, Robinhood, Cisco, Fastly, and GreyNoise.
Mallory is the AI-Native Threat and Exposure Management platform, a cybersecurity reasoning system that unifies live adversary activity with each organization's attack surface to prioritize the exposures real threat actors are targeting right now. Founded in 2024 and based in Austin, TX.
What Guides Us
Agency & Ownership
We value agency, ownership, and a bias toward action. Great ideas come from anyone, and everyone is empowered to pursue them.
Practitioner-First
Our customers are leaders in their field. Making the best decisions for them requires deep understanding of how they work and what they need.
Relentless Curiosity
Natural curiosity drives us to challenge the status quo. We explore new ideas, ask hard questions, and build with cutting-edge technology to give defenders the advantage.
Defender's Mindset
We think like practitioners because we're practitioners. Our mission is to give defenders the upper hand.
Radical Candor
Honest, transparent feedback requires both courage and empathy. We speak openly and grow together.
Built to Last
We do the right thing and get the hard things right for our customers, our team, and the long term.
Deep Roots in Security Operations
For two decades, Jonathan has shipped the security capabilities and intelligence that the world's best-defended organizations rely on. A practitioner first, he began as a network administrator, cut his teeth as a pentester at Rapid7, then founded Intrigue, an open source attack surface project that was integrated into Mandiant and grew into Google Threat Intelligence. Everywhere he went, he hit the same wall: security teams buried in narrow tools, stitching context together by hand. He left Google in 2024 to build Mallory and fix it.
Our team brings decades of experience from the companies defining modern cybersecurity.
Help Us Build AI for Defenders
We're always looking for talented people who want to give defenders the advantage.
Join the Team