Introducing G2.ai, the future of software buying.Try now

Best Breach and Attack Simulation (BAS) Software for Medium-Sized Businesses

Brandon Summers-Miller
BS
Researched and written by Brandon Summers-Miller

Products classified in the overall Breach and Attack Simulation (BAS) category are similar in many regards and help companies of all sizes solve their business problems. However, medium-sized business features, pricing, setup, and installation differ from businesses of other sizes, which is why we match buyers to the right Medium-Sized Business Breach and Attack Simulation (BAS) to fit their needs. Compare product ratings based on reviews from enterprise users or connect with one of G2's buying advisors to find the right solutions within the Medium-Sized Business Breach and Attack Simulation (BAS) category.

In addition to qualifying for inclusion in the Breach and Attack Simulation (BAS) Software category, to qualify for inclusion in the Medium-Sized Business Breach and Attack Simulation (BAS) Software category, a product must have at least 10 reviews left by a reviewer from a medium-sized business.

Show More
Show Less

G2 takes pride in showing unbiased reviews on user satisfaction in our ratings and reports. We do not allow paid placements in any of our ratings, rankings, or reports. Learn about our scoring methodologies.

Coming Soon
Get Trending Breach and Attack Simulation (BAS) Products in Your Inbox

A weekly snapshot of rising stars, new launches, and what everyone's buzzing about.

Sample Trending Products Newsletter
1 filter applied
Clear All
6 Listings in Breach and Attack Simulation (BAS) Available
(216)4.9 out of 5
Optimized for quick response
3rd Easiest To Use in Breach and Attack Simulation (BAS) software
Save to My Lists
  • Overview
    Expand/Collapse Overview
  • Product Description
    How are these determined?Information
    This description is provided by the seller.

    Picus Security is the pioneer of Breach and Attack Simulation (BAS) and Adversarial Exposure Validation (AEV). The Picus Security Validation Platform unifies exposure assessment, security control v

    Users
    • Cyber Security Specialist
    • Cyber Security Engineer
    Industries
    • Information Technology and Services
    • Computer & Network Security
    Market Segment
    • 39% Enterprise
    • 37% Mid-Market
  • Seller Details
    Expand/Collapse Seller Details
  • Seller Details
    Company Website
    Year Founded
    2013
    HQ Location
    San Francisco, California
    Twitter
    @PicusSecurity
    2,888 Twitter followers
    LinkedIn® Page
    www.linkedin.com
    294 employees on LinkedIn®
Product Description
How are these determined?Information
This description is provided by the seller.

Picus Security is the pioneer of Breach and Attack Simulation (BAS) and Adversarial Exposure Validation (AEV). The Picus Security Validation Platform unifies exposure assessment, security control v

Users
  • Cyber Security Specialist
  • Cyber Security Engineer
Industries
  • Information Technology and Services
  • Computer & Network Security
Market Segment
  • 39% Enterprise
  • 37% Mid-Market
Seller Details
Company Website
Year Founded
2013
HQ Location
San Francisco, California
Twitter
@PicusSecurity
2,888 Twitter followers
LinkedIn® Page
www.linkedin.com
294 employees on LinkedIn®
(169)4.9 out of 5
Optimized for quick response
1st Easiest To Use in Breach and Attack Simulation (BAS) software
Save to My Lists
  • Overview
    Expand/Collapse Overview
  • Product Description
    How are these determined?Information
    This description is provided by the seller.

    Cymulate is a leading on-prem and cloud-based Security Validation and Exposure Management Platform leveraging the industry's most comprehensive and user-friendly Breach and Attack Simulation technolog

    Users
    • Security Analyst
    • Cyber Security Engineer
    Industries
    • Financial Services
    • Banking
    Market Segment
    • 56% Enterprise
    • 43% Mid-Market
  • Pros and Cons
    Expand/Collapse Pros and Cons
  • Cymulate Pros and Cons
    How are these determined?Information
    Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
    Pros
    Ease of Use
    73
    Security
    41
    Vulnerability Identification
    40
    Features
    39
    Customer Support
    33
    Cons
    Improvement Needed
    12
    Integration Issues
    10
    Reporting Issues
    8
    Complexity
    6
    Inefficient Alert System
    6
  • Seller Details
    Expand/Collapse Seller Details
  • Seller Details
    Seller
    Cymulate
    Company Website
    Year Founded
    2016
    HQ Location
    Holon, Israel
    Twitter
    @CymulateLtd
    1,087 Twitter followers
    LinkedIn® Page
    www.linkedin.com
    278 employees on LinkedIn®
Product Description
How are these determined?Information
This description is provided by the seller.

Cymulate is a leading on-prem and cloud-based Security Validation and Exposure Management Platform leveraging the industry's most comprehensive and user-friendly Breach and Attack Simulation technolog

Users
  • Security Analyst
  • Cyber Security Engineer
Industries
  • Financial Services
  • Banking
Market Segment
  • 56% Enterprise
  • 43% Mid-Market
Cymulate Pros and Cons
How are these determined?Information
Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
Pros
Ease of Use
73
Security
41
Vulnerability Identification
40
Features
39
Customer Support
33
Cons
Improvement Needed
12
Integration Issues
10
Reporting Issues
8
Complexity
6
Inefficient Alert System
6
Seller Details
Seller
Cymulate
Company Website
Year Founded
2016
HQ Location
Holon, Israel
Twitter
@CymulateLtd
1,087 Twitter followers
LinkedIn® Page
www.linkedin.com
278 employees on LinkedIn®

This is how G2 Deals can help you:

  • Easily shop for curated – and trusted – software
  • Own your own software buying journey
  • Discover exclusive deals on software
(68)4.9 out of 5
2nd Easiest To Use in Breach and Attack Simulation (BAS) software
Save to My Lists
  • Overview
    Expand/Collapse Overview
  • Product Description
    How are these determined?Information
    This description is provided by the seller.

    Adaptive Security is OpenAI’s investment for AI cyber threats. The company was founded in 2024 by serial entrepreneurs Brian Long and Andrew Jones. Adaptive has raised $50M+ from investors like OpenAI

    Users
    No information available
    Industries
    • Computer Software
    • Financial Services
    Market Segment
    • 66% Mid-Market
    • 21% Enterprise
  • Pros and Cons
    Expand/Collapse Pros and Cons
  • Adaptive Security Pros and Cons
    How are these determined?Information
    Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
    Pros
    Training
    21
    Ease of Use
    18
    Customer Support
    13
    Easy Implementation
    11
    Awareness Increase
    9
    Cons
    Limited Customization
    5
    Group Management
    3
    Inadequate Reporting
    2
    Integration Issues
    2
    Learning Curve
    2
  • Seller Details
    Expand/Collapse Seller Details
  • Seller Details
    Company Website
    Year Founded
    2024
    HQ Location
    New York, US
    LinkedIn® Page
    www.linkedin.com
    139 employees on LinkedIn®
Product Description
How are these determined?Information
This description is provided by the seller.

Adaptive Security is OpenAI’s investment for AI cyber threats. The company was founded in 2024 by serial entrepreneurs Brian Long and Andrew Jones. Adaptive has raised $50M+ from investors like OpenAI

Users
No information available
Industries
  • Computer Software
  • Financial Services
Market Segment
  • 66% Mid-Market
  • 21% Enterprise
Adaptive Security Pros and Cons
How are these determined?Information
Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
Pros
Training
21
Ease of Use
18
Customer Support
13
Easy Implementation
11
Awareness Increase
9
Cons
Limited Customization
5
Group Management
3
Inadequate Reporting
2
Integration Issues
2
Learning Curve
2
Seller Details
Company Website
Year Founded
2024
HQ Location
New York, US
LinkedIn® Page
www.linkedin.com
139 employees on LinkedIn®
(143)4.5 out of 5
Optimized for quick response
9th Easiest To Use in Breach and Attack Simulation (BAS) software
Save to My Lists
  • Overview
    Expand/Collapse Overview
  • Product Description
    How are these determined?Information
    This description is provided by the seller.

    Pentera is the category leader for Automated Security Validation, allowing every organization to test with ease the integrity of all cybersecurity layers, unfolding true, current security exposures at

    Users
    No information available
    Industries
    • Information Technology and Services
    • Banking
    Market Segment
    • 50% Enterprise
    • 40% Mid-Market
  • Pros and Cons
    Expand/Collapse Pros and Cons
  • Pentera Pros and Cons
    How are these determined?Information
    Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
    Pros
    Ease of Use
    9
    Vulnerability Identification
    8
    Automation
    7
    Customer Support
    7
    Security
    6
    Cons
    Inadequate Reporting
    3
    Access Control
    2
    False Positives
    2
    Limited Reporting
    2
    Missing Features
    2
  • Seller Details
    Expand/Collapse Seller Details
  • Seller Details
    Seller
    Pentera
    Company Website
    Year Founded
    2015
    HQ Location
    Boston, MA
    Twitter
    @penterasec
    3,402 Twitter followers
    LinkedIn® Page
    www.linkedin.com
    428 employees on LinkedIn®
Product Description
How are these determined?Information
This description is provided by the seller.

Pentera is the category leader for Automated Security Validation, allowing every organization to test with ease the integrity of all cybersecurity layers, unfolding true, current security exposures at

Users
No information available
Industries
  • Information Technology and Services
  • Banking
Market Segment
  • 50% Enterprise
  • 40% Mid-Market
Pentera Pros and Cons
How are these determined?Information
Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
Pros
Ease of Use
9
Vulnerability Identification
8
Automation
7
Customer Support
7
Security
6
Cons
Inadequate Reporting
3
Access Control
2
False Positives
2
Limited Reporting
2
Missing Features
2
Seller Details
Seller
Pentera
Company Website
Year Founded
2015
HQ Location
Boston, MA
Twitter
@penterasec
3,402 Twitter followers
LinkedIn® Page
www.linkedin.com
428 employees on LinkedIn®
(22)4.3 out of 5
5th Easiest To Use in Breach and Attack Simulation (BAS) software
Save to My Lists
  • Overview
    Expand/Collapse Overview
  • Product Description
    How are these determined?Information
    This description is provided by the seller.

    Sophos PhishThreat provides you with the flexibility and customization that your organization needs to facilitate a positive security awareness culture. Phish Threat educates and tests your end users

    Users
    No information available
    Industries
    • Computer & Network Security
    Market Segment
    • 59% Mid-Market
    • 27% Small-Business
  • Seller Details
    Expand/Collapse Seller Details
  • Seller Details
    Seller
    Sophos
    Year Founded
    1985
    HQ Location
    Oxfordshire
    Twitter
    @Sophos
    36,789 Twitter followers
    LinkedIn® Page
    www.linkedin.com
    5,464 employees on LinkedIn®
    Ownership
    LSE:SOPH
Product Description
How are these determined?Information
This description is provided by the seller.

Sophos PhishThreat provides you with the flexibility and customization that your organization needs to facilitate a positive security awareness culture. Phish Threat educates and tests your end users

Users
No information available
Industries
  • Computer & Network Security
Market Segment
  • 59% Mid-Market
  • 27% Small-Business
Seller Details
Seller
Sophos
Year Founded
1985
HQ Location
Oxfordshire
Twitter
@Sophos
36,789 Twitter followers
LinkedIn® Page
www.linkedin.com
5,464 employees on LinkedIn®
Ownership
LSE:SOPH
(93)4.5 out of 5
8th Easiest To Use in Breach and Attack Simulation (BAS) software
Save to My Lists
  • Overview
    Expand/Collapse Overview
  • Product Description
    How are these determined?Information
    This description is provided by the seller.

    RidgeBot® is a sophisticated AI-powered automated penetration testing solution designed to assist organizations in evaluating their cybersecurity posture and controls. By simulating real-world attacks

    Users
    No information available
    Industries
    • Computer & Network Security
    • Information Technology and Services
    Market Segment
    • 51% Small-Business
    • 46% Mid-Market
  • Pros and Cons
    Expand/Collapse Pros and Cons
  • RidgeBot Pros and Cons
    How are these determined?Information
    Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
    Pros
    Automation
    19
    Ease of Use
    19
    Pentesting Efficiency
    15
    Vulnerability Identification
    14
    Automation Testing
    11
    Cons
    Complex Setup
    6
    Complexity
    5
    Missing Features
    5
    Difficult Setup
    4
    Expensive
    4
  • Seller Details
    Expand/Collapse Seller Details
  • Seller Details
    Company Website
    Year Founded
    2020
    HQ Location
    Santa Clara, California
    Twitter
    @RidgeSecurityAI
    1,281 Twitter followers
    LinkedIn® Page
    www.linkedin.com
    45 employees on LinkedIn®
Product Description
How are these determined?Information
This description is provided by the seller.

RidgeBot® is a sophisticated AI-powered automated penetration testing solution designed to assist organizations in evaluating their cybersecurity posture and controls. By simulating real-world attacks

Users
No information available
Industries
  • Computer & Network Security
  • Information Technology and Services
Market Segment
  • 51% Small-Business
  • 46% Mid-Market
RidgeBot Pros and Cons
How are these determined?Information
Pros and Cons are compiled from review feedback and grouped into themes to provide an easy-to-understand summary of user reviews.
Pros
Automation
19
Ease of Use
19
Pentesting Efficiency
15
Vulnerability Identification
14
Automation Testing
11
Cons
Complex Setup
6
Complexity
5
Missing Features
5
Difficult Setup
4
Expensive
4
Seller Details
Company Website
Year Founded
2020
HQ Location
Santa Clara, California
Twitter
@RidgeSecurityAI
1,281 Twitter followers
LinkedIn® Page
www.linkedin.com
45 employees on LinkedIn®