Best Cyber Risk Quantification (CRQ) Tools - Page 2

How Many Cyber Risk Quantification (CRQ) Tools Products Does G2 Track?

Total Products under this Category: 28

Category Stats (Oct 2026)

  • Average Rating: 4.85/5 (↑0.15 vs Sep 2026) The average rating of products in this category, based on all submitted ratings

Last updated: October 06, 2026

How Does G2 Rank Cyber Risk Quantification (CRQ) Tools Products?

Why You Can Trust G2's Software Rankings:

  • 30 Analysts and Data Experts
  • 0+ Authentic Reviews
  • 28+ Products
  • Unbiased Rankings

G2's software rankings are built on verified user reviews, rigorous moderation, and a consistent research methodology maintained by a team of analysts and data experts. Each product is measured using the same transparent criteria, with no paid placement or vendor influence. While reviews reflect real user experiences, which can be subjective, they offer valuable insight into how software performs in the hands of professionals. Together, these inputs power the G2 Score, a standardized way to compare tools within every category.

IFRS 17 Solution

iBOS IFRS 17 Solution is a high-performance calculation engine and compliance platform designed for insurers and Takaful operators. It automates complex actuarial calculations, Contractual Service Margin (CSM) runs, and dual-fund accounting (Participant Risk Funds vs. Shareholder Funds) across GMM, PAA, and VFA measurement models. The iBOS seamlessly integrates with existing policy administration systems to deliver end-to-end data traceability and audit-ready disclosure statements.

Who Is the Company Behind IFRS 17 Solution?

  • Seller: The iBOS
  • Year Founded: 2018
  • HQ Location: Dubai, Dubai, United Arab Emirates
  • LinkedIn® Page: www.linkedin.com
    46 employees on LinkedIn®

Insomnia

Insomnia is an autonomous AI pentesting and offensive security platform from CQR Cybersecurity. Point it at a target and its AI red team runs recon, vulnerability scanning, OSINT, CVE validation, exploitation and privilege escalation across web apps, APIs, networks, cloud and Active Directory, then writes a client-ready PDF, DOCX or HTML report with CVSS scoring and fixes. It brings 275+ security modules into one tool: SAST and DAST, secret detection with live key validation, dependency and CVE scanning, API and GraphQL testing, wireless audit, Active Directory auditing with BloodHound, an HTTP interception proxy and a CI/CD pipeline builder. It also ships Insomnia OS, a Debian-based offensive OS. There is a free Community Edition and a free SAST engine (pip, npm, Docker, Homebrew, plus VS Code and JetBrains plugins). Paid Advanced and Pro plans add full AI automation, the 30,000+ CVE database, exploitation tooling, OSINT and mobile analysis. It runs as a web dashboard, CLI, IDE plugins, or self-hosted and air-gapped.

Who Is the Company Behind Insomnia?

IntelligenceX

IntelligenceX delivers cybersecurity, cloud security, DevSecOps, AI engineering, and regulatory compliance solutions.

Who Is the Company Behind IntelligenceX?

  • Seller: IntelligenceX
  • Year Founded: 2025
  • HQ Location: 167–169 Great Portland Street, Fifth Floor, London, W1W 5PF, United Kingdom
  • LinkedIn® Page: www.linkedin.com
    23 employees on LinkedIn®

AI can help you find the answers. G2 helps you trust them.

Connect G2 to Claude or ChatGPT for answers grounded in G2's trusted reviews, comparisons, and pricing from real user insights.

How it works

Kovrr's Cyber Risk Quantification Platform

Kovrr's CRQ platform translates complex cybersecurity data into financial and operational exposure figures that CISOs, CROs, boards, investors, and insurers can act on. Over 100 data sources feed millions of data points daily into insurance-grade loss models. Proprietary claims data from carrier partnerships dating back to 2017 gives Kovrr modeling depth that public breach data and self-reported inputs cannot match. Models are continuously updated, and the event catalog spans hundreds of thousands of scenarios informed by real-world incidents and adjusted for today's threat landscape.

Who Is the Company Behind Kovrr's Cyber Risk Quantification Platform?

  • Seller: Kovrr
  • Year Founded: 2017
  • HQ Location: Tel Aviv, IL
  • Twitter: @kovrrIns
    440 Twitter followers
  • LinkedIn® Page: www.linkedin.com
    35 employees on LinkedIn®

Liberty91

Liberty91 exists to drastically reduce the time you spend on threat intelligence and security research. So it reads the events for you, works out what they mean, and writes them up against the assets and supply chain of your organisation. The agents apply the same tradecraft expert analysts would use, which is how they rapidly identify and prioritise critical threats and you can respond instantly. Your own time goes back to the work that needs a human, instead of the grind.

Who Is the Company Behind Liberty91?

  • Seller: Liberty91
  • Year Founded: 2023
  • HQ Location: Abu Dhabi, Abu Dhabi Emirate, United Arab Emirates
  • LinkedIn® Page: www.linkedin.com
    2 employees on LinkedIn®

LuksMentis

LuksMentis: Cyber Threat News LuksMentis is a curated cyber threat intelligence service built for executives, CISOs and security teams who need to stay informed without spending their day on it. It aggregates 1,000+ sources (national CERTs, CISA, ENISA, vendor advisories, specialist media and ransomware leak sites) and turns them into a 5-minute daily brief, available in English and French on iOS, Android and the web. What you get : • Daily brief: the essentials of cyber news, sorted and qualified by threat type and severity. • Vulnerability tracking: critical CVEs with CVSS severity, known exploitation (CISA KEV catalog and ENISA database), zero-day flag, ransomware use, CISA remediation due date and EPSS exploitation probability. • Custom alerts: push notifications on the companies, keywords and sectors you follow. • 30-day indicators: ransomware claims, active groups, countries and sectors hit, data breach trend. • Keyword search across articles and CVEs. • Publications: in-depth analyses readable in the app and on the blog. For organisations and security teams The Professional plan adds a monthly strategic report: key events, threat level trend and recommendations mapped to the ISO 27001, NIS 2 and DORA frameworks, delivered as ready-to-present slides (PPTX) and PDF. It also extends search to 5 years of history and doubles the number of custom alerts. Pricing • Free: newsletter with a daily news brief, and public publications. • Premium, for individuals: 3.99 EUR per month or 39.99 EUR per year. • Professional, for organisations: 84 EUR per month (excl. VAT). LuksMentis is designed and operated in France. Sources are always cited and one tap away, so every item can be verified at its origin.

Who Is the Company Behind LuksMentis?

Who Uses This Product?

  • Company Size: 100% Large

What Are Recent G2 Reviews of LuksMentis?

Resiliate

Resiliate is a digital supply chain risk and resilience platform that helps organizations identify, map, monitor, and manage risks across their vendor ecosystem. Resiliate connects businesses, vendors, sub-vendors, customers, and other dependencies into a continuously evolving network, giving organizations visibility into how companies and services are connected across their digital supply chain. Instead of relying only on static questionnaires and periodic assessments, Resiliate continuously monitors this network using OSINT and AI. It detects changes, emerging risks, and disruptions across the ecosystem and notifies teams when relevant events may affect their organization or critical dependencies. Resiliate combines vendor discovery, dependency mapping, network intelligence, real-time disruption monitoring, and risk analysis in one platform. This gives security, compliance, and resilience teams a continuously updated view of the businesses and services their organization depends on. The platform can also support requirements related to frameworks and regulations such as NIS2, DORA, and the EU Cyber Resilience Act by improving visibility into third-party and digital supply chain risks. Key capabilities include vendor and sub-vendor discovery, business network mapping, dependency intelligence, real-time disruption monitoring, supply chain change notifications, AI-assisted risk analysis, and disruption prediction.

Who Is the Company Behind Resiliate?

  • Seller: Resiliate
  • Year Founded: 2025
  • HQ Location: Copenhagen, DK
  • LinkedIn® Page: www.linkedin.com
    4 employees on LinkedIn®

RiskLens by Security Exceptions

In today's complex digital landscape, managing security risks and exceptions across multiple systems has become increasingly challenging. That's where our Security Risk and Exception Manager comes in. Main Functions: - Centralize security assessments and streamline workflows - Identify and mitigate security process gaps across your systems - Track and manage unauthorized system usage - Monitor and control sensitive data access - Manage process exceptions and implementation deviations - Standardize security protocols across your organization - Gain visibility into high-risk systems and processes - Improve organization-wide security communication By leveraging Security Risk and Exception Manager, you're not just protecting your data – you're fostering a culture of continued security awareness and proactive security management. Embrace the power of Security Risk and Exception Manager with confidence, knowing that your digital assets are fortified against evolving threats.

Who Is the Company Behind RiskLens by Security Exceptions?

safe4sure

Safe4Sure is an AI-powered school MDM and student wellbeing platform designed to protect devices and ensure safe digital learning.

Who Is the Company Behind safe4sure?

SAFE CTEM AI Co-Worker

Safe Security builds a cyber risk quantification and management platform to secure, continuously monitor, and proactively respond to cyber threats, allowing businesses to mitigate cyber risks through a prioritized set of actionable insights.

Who Is the Company Behind SAFE CTEM AI Co-Worker?

  • Seller: Safe Security
  • Year Founded: 2012
  • HQ Location: Palo Alto, US
  • Twitter: @safecrq
    3,248 Twitter followers
  • LinkedIn® Page: www.linkedin.com
    1,258 employees on LinkedIn®

Security Reporter

Security Reporter is a self-hosted platform for penetration testing and security assessment teams to manage assessments, document findings, collaborate, and produce professional client-ready reports. It provides a structured workflow for the complete assessment lifecycle, including reusable finding templates, customizable report structures, review and approval workflows, remediation tracking, retesting, client collaboration, and PDF report generation. Teams can standardize how findings are documented and reviewed while reducing repetitive reporting work. Security Reporter supports multilingual reporting, custom methodologies and risk-rating models, SSO, role-based access control, API and webhook integrations, and integrations with more than 140 security tools. Its API and MCP support also enable automation and AI-assisted workflows for tasks such as creating, reviewing, and managing assessment content. The platform is designed for cybersecurity consultancies, MSSPs, and enterprise security teams that want to keep assessment data and reporting workflows under their own control. Security Reporter can be deployed on customer-managed infrastructure or cloud environments, providing control over data storage, access, logging, and retention.

Who Is the Company Behind Security Reporter?

Squalify-Cyber Risk Quantification

The solution leverages best-in-case cyber insurance data and expertise, translating cyber risk into a business case with realistic financial risk metrics, thus allowing companies to validate IT security budgets, and strategically prioritize investment based on risk reduction effects.

Who Is the Company Behind Squalify-Cyber Risk Quantification?

  • Seller: Squalify
  • Year Founded: 2021
  • HQ Location: 81671 München, DE
  • LinkedIn® Page: www.linkedin.com
    27 employees on LinkedIn®

Transaction Trust Monitoring

Fast, intelligent, always-on transaction monitoring, built for compliance and trust. Shufti's Transaction Trust Monitoring assesses every transaction for AML and fraud risk before settlement, in under 500 milliseconds. Score each transaction against 1,600+ enriched data points spanning customer profile, device, payment rails, velocity, geography, and jurisdiction. Integrate once, and every alert arrives with the evidence already attached, so analysts move from detection to defensible action without rebuilding context. Sanctions hits, blocked countries, and known bad actors stop transactions on the spot. Ring detection surfaces coordinated activity across accounts linked by shared emails, phones, IPs, or payment identifiers. Behavioural baselining compares each transaction against the customer's own established profile, cutting false positives by 60% without hiding real risk. Fraud and AML signals resolve into a single FRAML composite risk score, so structuring, mule activity, sanctions exposure, and beneficiary risk sit in one view. Meet SAR, STR, CTR, and goAML obligations, and stay AML-compliant across every market you operate in.

Who Is the Company Behind Transaction Trust Monitoring?

Brandon Summers-Miller
BS
Researched and written by Brandon Summers-Miller
Updated August 26, 2026