Full-Time
Updated on 9/4/2026
Unified platform for cyber risk management
No salary listed
Austin, TX, USA
In Person
Bachelor's
See people who can refer or advise you
Brinqa provides a unified cyber risk management platform for enterprises to manage the threat exposure lifecycle. Its Brinqa Attack Surface Intelligence Platform centralizes data from 150+ tools into a Cyber Risk Graph, normalizes and enriches it with threat intel and business context, and prioritizes vulnerabilities with automated remediation workflows and reporting. It differentiates itself by offering cross-domain risk visibility tied to business impact and configurable risk models without heavy coding. Its goal is to move organizations from reactive security to proactive risk management, reducing response times and compliance costs.
Company Size
51-200
Company Stage
Growth Equity (Venture Capital)
Total Funding
$110M
Headquarters
Austin, Texas
Founded
2009
See people who can refer or advise you
Help us improve and share your feedback! Did you find this helpful?
Health Insurance
Dental Insurance
Vision Insurance
Life Insurance
Disability Insurance
401(k) Company Match
Unlimited Paid Time Off
Sick Time
Stock Options
Brinqa acquires PlexTrac to expand Unified Exposure Management platform. August 19, 2026 Brinqa has acquired PlexTrac, adding offensive security validation, penetration testing workflows and remediation verification to its enterprise exposure management platform. Financial terms of the transaction were not disclosed. The combination expands Brinqa's ability to manage the cybersecurity exposure lifecycle from identifying and prioritizing vulnerabilities through remediation and post-remediation testing. The company said the acquisition creates the largest standalone vendor in Unified Exposure Management, with more than 3,000 customers across 57 countries, including more than 25% of the Fortune 500. PlexTrac specializes in offensive security validation, workflow management and reporting. Its technology gives Brinqa a way to verify whether identified vulnerabilities are exploitable before remediation and then retest those vulnerabilities after remediation to determine whether corrective measures were effective. That capability addresses an important part of Continuous Threat Exposure Management, or CTEM. While vulnerability and ticketing systems can indicate that remediation work has been completed, Brinqa is seeking to provide security teams with validation that the underlying exposure has actually been eliminated. "We've spent over a decade building the platform enterprise security teams trust to prioritize what to fix first," said Dan Pagel, CEO of Brinqa. "PlexTrac brings real offensive security depth, from practitioners who have spent years proving exactly how attackers get in." The acquisition builds on a period of growth for Brinqa. The company reported a 164% year-over-year increase in new bookings in 2025 and a 32% increase in average selling price for new customers. In 2026, new-logo bookings have more than doubled from the prior-year period, according to the company. Brinqa has also been investing in artificial intelligence capabilities, including MCP interfaces, an AI Attribution Agent and an AI Deduplication Agent. The company's platform consolidates and normalizes security information from multiple sources, adds business and threat intelligence and uses that data to prioritize remediation based on risk. PlexTrac adds another source of validated information to that data infrastructure. Confirmed exploits and remediation results generated through PlexTrac can flow into Brinqa's data layer and Cyber Risk Graph, providing additional context for the company's AI tools and for outside AI models connected through Brinqa's Bring Your Own AI program. For enterprise customers, the strategic value lies in connecting vulnerability prioritization with offensive security testing and verification rather than managing those functions through separate workflows. Brinqa can identify exposures based on their relevance to the business, direct testing resources toward higher-priority risks and incorporate retesting results into the same risk-management environment. "Exposure management only matters if teams can prove the fix worked, and that's the gap Brinqa now closes," said Thomas Krane, managing director at Insight Partners and a member of Brinqa's board. He said validated data is becoming increasingly important as security organizations incorporate AI into their operations. The combination also gives PlexTrac customers access to Brinqa's broader exposure management infrastructure. Penetration testing teams will be able to connect their workflows with Brinqa's prioritization engine, allowing security, IT and offensive security teams to work from a common set of prioritized exposures. PlexTrac's products will continue to be offered as standalone solutions, preserving existing customer workflows while giving customers the option to adopt additional Brinqa capabilities over time. PlexTrac founder and Chief Customer Brand Officer Dan DeCloss will join Brinqa's executive leadership team and board of directors. He will lead the combined company's offensive security practice. "PlexTrac was built by offensive security practitioners, for offensive security practitioners, and that's not changing," DeCloss said. He added that the combination provides a larger platform for applying offensive security expertise as more cybersecurity processes become automated. The acquisition expands Brinqa's position in a cybersecurity market increasingly focused on reducing the volume of vulnerabilities that security teams must investigate and connecting technical exposures to business risk. Rather than treating vulnerability discovery, remediation and penetration testing as separate processes, the combined platform is designed to establish a continuous workflow from discovery through validated remediation. Brinqa serves large enterprises including Nestlé, PhonePe, Cambia Health Solutions, Guidewire and SAP. PlexTrac is used by Fortune 500 companies and security providers including Expedia, Royal Caribbean, Mandiant and Deloitte. Covington & Burling represented Brinqa in the transaction. With PlexTrac incorporated into its platform, Brinqa is positioning the combined business around an integrated exposure management model that pairs risk prioritization and AI-supported analysis with offensive security testing and evidence that remediation measures have been effective.
Brinqa acquires PlexTrac to bring validated remediation to exposure management. Brinqa has announced its acquisition of PlexTra, adding the ability to verify that remediation efforts have actually worked. The combined capabilities uniquely position Brinqa to identify and prioritize the exposures that matter most, drive remediation, and validate that fixes hold, closing the CTEM loop. "We've spent over a decade building the platform enterprise security teams trust to prioritize what to fix first," said Dan Pagel, CEO at Brinqa. "PlexTrac brings real offensive security depth, from practitioners who have spent years proving exactly how attackers get in. Pairing that expertise with our exposure assessment platform gives customers proof they can defend to a board, an auditor, or any AI system acting on that data." A decade of momentum in exposure management. Brinqa has spent more than a decade solving exposure management challenges for the world's largest and most complex organizations, including Nestlé, PhonePe, Cambia Health Solutions, Guidewire, and SAP. That focus paid off in 2025 with 164% year-over-year growth in new bookings, a 32% increase in new-logo average selling price, and inclusion in the inaugural Gartner Magic Quadrant for Exposure Assessment Platforms. Momentum accelerated further in 2026, with new logo bookings more than doubling year-over-year and existing customers expanding their deployments as Brinqa shipped new AI capabilities, including new MCP interfaces, the AI Attribution Agent, and the AI Deduplication Agent. The PlexTrac acquisition builds directly on that trajectory, adding the capability enterprise security teams kept asking for: proof that a fix actually worked. Combined with a robust data foundation, MCP, and Bring Your Own AI, customers can connect that same validated exposure data to the AI models and tools they already use, making high-value exposure intelligence available across teams. "Exposure management only matters if teams can prove the fix worked, and that's the gap Brinqa now closes. We've watched this team build category-defining technology, and this acquisition sharpens their lead at a moment when security organizations are demanding validated, AI-ready data," said Thomas Krane, Managing Director at Insight Partners and member of Brinqa's board of directors. Acquisition highlights. * Brinqa now serves 3,000+ customers across 57 countries, giving PlexTrac's offensive security community direct access to Brinqa's data foundation and AI agents. * Brinqa now fully closes the CTEM loop, from discovery and prioritization through validated proof that a fix worked. * The combined company is now the largest standalone vendor in Unified Exposure Management, bringing together two companies independently recognized in the Gartner Magic Quadrant for Exposure Assessment Platforms. * Every confirmed exploit and fix from PlexTrac flows into Brinqa's data layer, strengthening the Cyber Risk Graph and sharpening every AI agent, whether Brinqa's own or one a customer runs via Brinqa's Bring Your Own AI program. * Dan DeCloss, founder and Chief Customer Brand Officer of PlexTrac, joins Brinqa's executive leadership team and board of directors to lead the combined offensive security practice. What this means for customers. For Brinqa's customers, it means faster confirmation that a fix worked, and evidence to back up what security teams report to auditors, insurers, and the board. A vulnerability marked "closed" in a ticketing system is a status update. A vulnerability confirmed closed through validated retesting is proof. For PlexTrac's customers, it means pentest teams and workflows now plug directly into a CTEM program instead of sitting next to one. Brinqa's prioritization engine focuses pentest resources on the exposures that matter most to the business, and validation now covers both ends of remediation: pre-remediation testing to confirm an exposure is exploitable, and post-remediation retesting to confirm the fix held. Security, IT, and offensive security teams work from one prioritized list. The PlexTrac solutions will continue operating as standalone offerings, giving existing customers the same experience they have today, with the option to extend into Brinqa's broader platform as their programs evolve. "PlexTrac was built by offensive security practitioners, for offensive security practitioners, and that's not changing. Joining Brinqa gives our team a bigger platform to prove that hands-on offensive security expertise still matters, even as more of this work gets automated," said DeCloss. With PlexTrac, Brinqa becomes the operating system for enterprise exposure management: the layer where every decision, every fix, and every proof point comes together. Brinqa was represented by Covington & Burling in the transaction. More about
Brinqa has acquired PlexTrac for an undisclosed sum, adding penetration testing validation to its exposure management platform. The deal creates what the company claims is the largest standalone vendor in unified exposure management, serving more than 3,000 customers across 57 countries, including over 25% of the Fortune 500. PlexTrac's software enables penetration testers to verify exploits and confirm remediation effectiveness. The acquisition closes a gap in Brinqa's offering, which previously collected findings from security tools but lacked verification capabilities. PlexTrac will continue selling its products standalone whilst integrating with Brinqa's broader platform. Both companies share investor Insight Partners, which led Brinqa's $110 million growth round in June 2021 and PlexTrac's $70 million Series B in February 2022. PlexTrac founder Dan DeCloss joins Brinqa's executive team and board.
Executive change: Brinqa appoints David Allen as Chief Technology Officer. Austin, TX - Brinqa has announced the appointment of David Allen as Chief Technology Officer. About Brinqa: Brinqa is an AI-driven exposure management company that helps organizations understand and reduce technology risk by providing a unified, prioritized view of cyber risk across their entire environment. Its platform consolidates and normalizes data from all security tools and data sources, enriches that information with business and threat intelligence, and separates false alarms from real threats so security and IT teams can focus on the work that matters most. Brinqa positions itself as a strategic partner to security teams on the front lines, transforming traditional vulnerability and exposure management into a proactive, enterprise-wide risk management capability that supports decisions organizations can confidently defend. The company emphasizes structure, clarity, and momentum in managing complex attack surfaces, delivering faster remediation, improved security posture, and measurable reductions in business risk through its unified exposure management platform. Founded with the mission of redefining vulnerability and exposure management for modern enterprises, Brinqas AI-powered foundation is built to be trusted by leading organizations and to serve as the single source of truth for human teams and AI agents acting on cyber risk. Brinqa 3700 N Capital of Texas Hwy Suite 350 Austin, TX 78746 Phone: 512-372-1004 LinkedIn: https://www.linkedin.com/company/brinqa/
Brinqa, an enterprise security exposure management platform, reported strong first-half 2026 performance with new customer bookings more than doubling year-over-year. Existing customer deployments expanded fourfold during the period. The Austin-based company launched new AI capabilities including AI Attribution Agent and AI Deduplication Agent, designed to automate ownership identification and eliminate duplicate findings. Brinqa also introduced a Bring Your Own AI model, allowing customers to connect preferred AI models to its platform. The firm rebranded its expert team to Forward Deployed Engineering Team and made four executive appointments across AI, engineering, finance, and product innovation. Ron Dovich was named Chief AI and Automation Officer, David Allen as Chief Technology Officer, and Steve Biagioni as Chief Financial Officer. Brinqa was recognised as a Notable Vendor in Forrester's Proactive Security Platforms Landscape and integrated with Horizon3.ai whilst joining Google Cloud Marketplace.