# Sprocket Security

> Sprocket Security is a Madison, Wisconsin company that turned the once-a-year penetration test into a subscription that runs all year. Its platform pairs automation with human hackers to continuously probe a customer's external and internal attack surface, flag exploitable holes in real time, and re-test fixes for free. Founded by Casey Cammilleri, who started as a lone pentester and built software to clone his own expertise, the company raised an $8M Series A in 2024 and serves finance, healthcare, manufacturing, and software firms.

- **Founded:** 2017
- **Headquarters:** Madison, Wisconsin, United States
- **Founders:** Casey Cammilleri (Founder & CEO)
- **Team size:** ~46 employees (reported 42-50), distributed across three continents
- **Products:** Continuous Penetration Testing (CPT), Attack Surface Management (ASM), Sprocket Platform, Open-source tooling
- **Notable:** Winner, Best Solution in Offensive Security and Trailblazing Penetration Testing - Global InfoSec Awards at RSAC 2026, Winner, 2026 Fortress Cybersecurity Award in Continuous Exposure Management, G2 Fall 2025 recognition for Best Support and Easiest to Do Business With in penetration testing

## Products & services

- **Continuous Penetration Testing (CPT)** — Year-round, expert-driven penetration testing that replaces the annual point-in-time engagement. Combines automation with human testers to surface exploitable risk in real time, delivers step-by-step attack narratives, and includes unlimited retesting of fixes.
- **Attack Surface Management (ASM)** — Continuous monitoring and change detection across domains, applications, APIs, and cloud assets - an attacker's-eye view of a company's external footprint. Offered free and permanently as an on-ramp to continuous testing.
- **Sprocket Platform** — The software layer providing real-time exposure visibility, AI-accelerated testing validated by expert testers, on-demand compliance and executive reporting, and workflow integrations. Available on the AWS Marketplace.
- **Open-source tooling** — Free red-team and recon tools published on GitHub, including gigaproxy, fireproxng, cvetrends, and proxycannon-ng.

## Achievements

- Winner, Best Solution in Offensive Security and Trailblazing Penetration Testing - Global InfoSec Awards at RSAC 2026
- Winner, 2026 Fortress Cybersecurity Award in Continuous Exposure Management
- G2 Fall 2025 recognition for Best Support and Easiest to Do Business With in penetration testing
- Raised $8M Series A led by Blueprint Equity (March 2024)
- CREST-approved and SOC 2 compliant
- Popular open-source tools (gigaproxy, fireproxng, proxycannon-ng) with thousands of combined stars and forks

## Latest updates

- **2026-01** — Appointed Eric Sheridan as Chief Technology Officer to lead engineering and product strategy.
- **2026-01** — Won Best Solution in Offensive Security and Trailblazing Penetration Testing at the RSAC 2026 Global InfoSec Awards, plus a 2026 Fortress Cybersecurity Award.
- **2025-09** — Recognized by G2 (Fall 2025) for Best Support and Easiest to Do Business With in penetration testing.
- **2024-03** — Closed an $8M Series A led by Blueprint Equity with Capital Midwest Fund; Blueprint's John Bonhard joined the board.

## Links

- Website: https://sprocketsecurity.com
- LinkedIn: https://www.linkedin.com/company/sprocket-security
- Twitter/X: https://x.com/SprocketSec
- GitHub: https://github.com/Sprocket-Security

---

Profile page: https://yespress.io/sprocket-security
Published by YesPress — https://yespress.io
Last updated: 2026-08-20
