
Cyber Insight is revolutionizing the IT security and regulatory markets with an accessible SaaS solution that enables law firms, IT service providers, management consultants, insurance companies and their clients to identify, manage and mitigate risks. Cyber attacks cause a total annual damage of 223 billion euros in the German economy, with 88% of companies being affected by malicious attacks. According to our evaluations, a data protection breach costs small and medium-sized companies an average of around €67,000. The Cyber Insight Platform helps our customers to increase the compliance step by step. Compliance includes both security and data protection standards. The assessment of risks and the derivation of prioritized recommendations for action are based on a multifactorial risk model that takes into account individual vulnerabilities and exogenous factors such as current trends or changes in the legal situation and integrates them automatically into the assessment scheme with the help of AI. The customer thus receives automated security assessments and suggestions for concrete measures, giving them the opportunity to reduce their risk cost-effectively and mitigate damages and penalties before they occur. The goal is to make cyber risks and regulatory compliance measurable and to enable anyone to adequately address these issues who would previously have been exposed to very high risk due to insufficient capitalization or lack of know-how.

Cyber Insight is revolutionizing the IT security and regulatory markets with an accessible SaaS solution that enables law firms, IT service providers, management consultants, insurance companies and their clients to identify, manage and mitigate risks. Cyber attacks cause a total annual damage of 223 billion euros in the German economy, with 88% of companies being affected by malicious attacks. According to our evaluations, a data protection breach costs small and medium-sized companies an average of around €67,000. The Cyber Insight Platform helps our customers to increase the compliance step by step. Compliance includes both security and data protection standards. The assessment of risks and the derivation of prioritized recommendations for action are based on a multifactorial risk model that takes into account individual vulnerabilities and exogenous factors such as current trends or changes in the legal situation and integrates them automatically into the assessment scheme with the help of AI. The customer thus receives automated security assessments and suggestions for concrete measures, giving them the opportunity to reduce their risk cost-effectively and mitigate damages and penalties before they occur. The goal is to make cyber risks and regulatory compliance measurable and to enable anyone to adequately address these issues who would previously have been exposed to very high risk due to insufficient capitalization or lack of know-how.
Location: Leipzig, Germany
Product: ThreatFinder — AI-driven vulnerability prioritization & risk assessment
Stage / Funding: Seed (Crunchbase lists TGFS as investor)
Team size: ~12 employees
Tech / IP: Proprietary exploit prediction model (CIEX); EU-hosted platform
Vulnerability management, threat prioritization, security compliance and data protection for enterprises and professional service providers.
Cybersecurity / SaaS
Crunchbase lists TGFS as a funder/investor.
“TGFS (Technologiegründerfonds Sachsen) and EU grant funding referenced”
| Company |
|---|
Willst du an einer KI-Architektur arbeiten, die Cyber-Risiken messbar reduziert?
Wir suchen einen Security Engineer, der unser Security-Team beim Ausbau von DARA unterstützt. Als proprietäre KI‑Architektur ist DARA der Kern unserer Cyber‑Risk-Plattform. Für diese technische Rolle suchen wir Menschen mit starkem Background in Cybersecurity und Softwareentwicklung. Du sicherst unsere Produkte, begleitest ISO‑Compliance-Prozesse und trägst aktiv zur technischen Weiterentwicklung im Security-Bereich bei.
Aufgaben
Entwicklung und Betrieb interner Security‑Tools und Automatisierungen (z. B. Python/Scripting) für DARA
Unterstützung bei Red‑Teaming, Penetrationstests und Schwachstellen-Assessments
Recherche zu neuen Bedrohungen, Tools und Technologietrends im Security-Kontext
Zusammenarbeit mit dem ISO-Team bei Compliance- und Zertifizierungsprozessen (z. B. ISO 27001)
Erstellung technischer Nachweise und Dokumentation für Zertifizierungsanforderungen
Mitwirkung an Secure‑Architecture-Entscheidungen und eigenständige Security-Tests
Qualifikation
Muss-Qualifikationen:
Programmier‑ oder Scripting-Erfahrung (z. B. Python)
Fundierte Kenntnisse im Secure‑SDLC und/oder Application Security
Praktische Erfahrung mit Offensive Security / Ethical Hacking
Vertrautheit mit Compliance-Standards wie ISO 27001 und SOC 2
Arbeitserfahrung in agilen Entwicklungsumgebungen
Fließende Deutsch‑ und Englischkenntnisse in Wort und Schrift
Nice-to-have:
Netzwerkkenntnisse (z. B. Protokolle, Firewalls, IPS/IDS)
Erfahrung mit Cloud‑Umgebungen (Google Cloud, Azure) und Infrastructure-as-Code
Zertifizierungen wie OSCP, CEH oder CISSP
Benefits
Direkter Impact: gestalte die Security-Toolchain von DARA mit
High-End-Tech-Stack: GPU-Cluster, Multi-Cloud, moderne Infrastruktur
VSOP-Teilnahme, 30 Tage Urlaub
Du möchtest echte Security‑Innovation gestalten? Dann sende uns deinen Lebenslauf – wir freuen uns auf dich!