Black Kite
UnclaimedAI-native TPCRM platform enabling visibility into extended vendor risk and quantification at scale.
Overview
Black Kite is a leading AI-native platform for third-party cyber risk management that helps organizations gain continuous visibility into their vendor ecosystem, quantify risk in financial terms, and coordinate response across direct and nth-party relationships. The company emphasizes collective resilience, early warning, and data-driven decision making to empower security and business leaders to manage cyber risk at scale.
Mission statement
Our mission: To improve the health and safety of the entire planet’s cyber ecosystem.
One of 135 AI agents in Cybersecurity · Read recently by OpenAI, Perplexity, Meta, Amazon
What we offer
Black Kite Platform
Gain continuous visibility and manage cyber risk across your entire vendor ecosystem.
Pricing not published
blackkite.com/platformBlack Kite Extend
Gain comprehensive visibility into your entire supply chain risk with Black Kite Extend.
Pricing not published
blackkite.com/platform/extendBlack Kite Assess
Streamlines vendor assessments with automated, AI-driven insights.
Pricing not published
blackkite.com/platform/assessBlack Kite Product Analysis
Gain deep insights into software supply chain risks for informed decision-making.
Pricing not published
blackkite.com/platform/product-analysisBlack Kite AI
Enhances third-party cyber risk management with AI-driven insights and automation.
Pricing not published
blackkite.com/aiRansomware Threat Intelligence
Gain critical insights to protect your organization from evolving ransomware threats.
Pricing not published
blackkite.com/solutions/ransomware-threat-intelligenceCyber Risk Quantification
Empower organizations to quantify cyber risks in financial terms for informed decision-making.
Pricing not published
blackkite.com/solutions/cyber-risk-quantificationSupply Chain Cyber Risk Management
Enhances supply chain resilience by managing cyber risks and vulnerabilities beyond direct suppliers.
Pricing not published
blackkite.com/solutions/supply-chain-cyber-risk-managementMarket segments
Market size by segment
Growth potential (CAGR)
Third-party risk monitoring
Continuous vendor risk visibility and real-time signals combined with vendor engagement to detect, prioritize, and remediate third-party cyber risk.
Products: Black Kite Platform, Black Kite Extend, Black Kite AI
Compliance automation and vendor risk management
Automated regulatory and security policy checks, continuous compliance monitoring, and security questionnaire automation for vendor and regulatory workflows.
Products: Black Kite Assess, Black Kite AI, Black Kite Platform
Cyber risk quantification
Analytics that quantify exposure and translate technical findings into business-facing risk metrics to inform leadership and investment decisions.
Products: Cyber Risk Quantification, Black Kite Platform
Supply chain cyber risk management
Capabilities that identify hidden supplier relationships, concentration and geopolitical risks, and provide nth- and fourth-party visibility to reduce supply chain exposures.
Products: Supply Chain Cyber Risk Management, Black Kite Extend, Black Kite Platform, Ransomware Threat Intelligence
Software supply chain security and SBOM generation
Generation of SBOMs and management of third-party/component risk to support vulnerability tracking, compliance, and secure component lifecycle management.
Products: Black Kite Product Analysis
More information about our offering
Black Kite Platform
A complete platform for third-party cyber risk management built on decision-grade third-party risk intelligence. It delivers continuous vendor risk visibility, AI-powered assessments, nth-party visibility, risk quantification, and seamless integrations to manage cyber risk at scale.
Pricing not published
- Reduce Assessment TimeAccelerate vendor assessment processes, ensuring timely insights and improved compliance through streamlined document handling.
- Translate Risk to Financial TermsProvide clear financial contexts for risk decisions, facilitating communication with stakeholders and enhancing strategic planning.
- Detect Changes InstantlyAssess vendor risk in real-time to act swiftly on emerging threats and protect your organization.
- Automate Critical WorkflowsEnhance operational efficiency by automating core TPCRM workflows, facilitating faster decision-making and more accurate risk assessments.
- Mitigate Business ImpactQuickly act on cybersecurity threats affecting vendors, minimizing potential disruptions and financial losses.
- Identify Hidden RisksGain insights into deeper supply chain relationships, allowing proactive measures against potential vulnerabilities.
- Enhance Vendor EngagementFacilitate better communication and response from vendors to identified risks, ensuring quick remediation and engagement.
- Seamless Operational IntegrationEnsure compatibility with existing systems, enhancing operational workflows and expanding risk management capabilities.
- Facilitate Vendor CollaborationStreamline communication and action plans with vendors to promptly address identified risks.
- Prioritize Risks AutomaticallyBy automating the prioritization process, teams can concentrate efforts where they're needed most.
Black Kite Extend
Nth-party visibility module that extends risk monitoring beyond direct vendors to include 4th, 5th, and deeper relationships.
Pricing not published
- Identify Hidden RisksHelp organizations recognize and manage risks from 4th, 5th, and beyond in real-time, ensuring more robust supply chain security.
- Detect Downstream RisksUncover vulnerabilities in your supply chain by identifying dependencies on upstream vendors, thus averting potential disruptions.
- Manage Vendor ReliancePrevent supply chain crises by understanding which vendors represent single points of failure in your operations.
- Identify Geopolitical ThreatsTake proactive steps to reduce exposure by monitoring geopolitical factors affecting partner vendors.
Black Kite Assess
AI-powered cyber assessments that automate vendor document parsing, evidence extraction, and cross-framework control mapping for rapid risk evaluation.
Pricing not published
- Accelerates Risk EvaluationAI-driven evaluations drastically reduce time for risk assessments, allowing teams to focus on actionable insights rather than manual processes.
- Facilitates Compliance StandardizationAligns vendor assessments with relevant compliance frameworks, simplifying regulatory adherence and reporting.
- Enhances Evidence GatheringExtracts critical information from vendor documentation efficiently, ensuring comprehensive assessments and reducing manual errors.
- Improves Compliance TrackingTargets engagement with vendors based only on verified gaps, optimizing due diligence processes.
- Streamlines AuditsDelivers comprehensive, defensible reports that support stakeholder communications and verification during audits.
Black Kite Product Analysis
Product-level intelligence to identify risk in software supply chains, combining CVE, SBOM, and software hierarchy analysis.
Pricing not published
- Identifies Critical Software RisksProvides a detailed understanding of vulnerabilities associated with each software product, allowing organizations to prioritize security measures.
- Enhances SaaS Security PostureEnables teams to understand risks tied to SaaS applications, facilitating better vendor management and risk assessments.
- Reveals Hidden VulnerabilitiesHelps organizations detect and address vulnerabilities in third-party software, enhancing overall software security.
Black Kite AI
AI-powered capabilities embedded in the platform, including autonomous agents and blueprints to accelerate TPCRM workflows.
Pricing not published
- Streamlines Risk AssessmentsAutomates complex risk workflows and reporting, enabling teams to focus on high-impact tasks.
- Speeds Up EvaluationsCuts assessment time from days to minutes, enabling rapid vendor evaluations and decision-making.
- Increases Trust in InsightsProvides transparency in decision-making, ensuring users understand the underlying data and rationale.
- Improves Workflow EfficiencyFacilitates quick and effective investigations with templates designed for specific scenarios.
- Enhances FlexibilityEmpowers organizations to align assessments with their unique risk tolerances and compliance requirements.
Ransomware Threat Intelligence
Threat intelligence focused on ransomware threats, indicators, and adversary activity to inform risk decisions.
Pricing not published
- Enhances Risk AwarenessProvides detailed insights and trends on ransomware threats, enabling organizations to predict and mitigate risks effectively.
- Predicts Attack LikelihoodAssesses vendors' susceptibility to ransomware attacks, allowing teams to focus resources on high-risk suppliers.
- Identifies Active ThreatsTracks ransomware groups' activities and tactics, providing organizations with actionable intelligence to enhance defenses.
- Anticipates Future AttacksEnables organizations to take proactive measures based on predictive analytics, reducing vulnerability exposures.
- Enables Timely ResponsesAlerts users about emerging threats or vulnerabilities in their vendor ecosystem, facilitating rapid risk mitigation.
Cyber Risk Quantification
Open FAIR-based cyber risk quantification to translate technical findings into financial impact for leadership decisions.
Pricing not published
- Supports Governance with Financial InsightsProvides clear financial implications of cyber risks to facilitate informed discussions among executives and board members.
- Automates Risk QuantificationLeverages the Open FAIR™ methodology for precise cyber risk assessment linked to potential financial losses.
- Articulates Risk in Business TermsHelps organizations easily understand the financial risks associated with cybersecurity incidents.
- Provides Up-to-Date Risk VisibilityUtilizes live threat intelligence to keep organizations informed on risk landscape changes and vendor vulnerabilities.
- Evaluates Individual Vendor RisksTranslates vendor-specific vulnerabilities into estimated financial consequences, aiding risk prioritization.
- Facilitates Informed Strategic PlanningAllows organizations to simulate potential risks and develop tailored response strategies.
Supply Chain Cyber Risk Management
End-to-end solution to uncover and manage risks across the extended supply chain, including nth-party exposure and concentration risks.
Pricing not published
- Identify Vulnerabilities Across SuppliersAssessing concentration risks helps organizations mitigate the impact of a single point of failure in their supply chain, ensuring operational continuity.
- Uncover Hidden DependenciesMapping nth-party relationships allows organizations to proactively manage risks that could cascade through the supply chain.
- Predict Ransomware ThreatsThis predictive tool guides organizations in prioritizing vendor engagement and remediation before an attack occurs.
- Stay Ahead of RisksOngoing risk monitoring ensures executives are alerted to emerging threats immediately, facilitating prompt action.
- Integrate External Risk SignalsUsing external threat intelligence enhances the understanding of vulnerabilities, enabling timely and effective responses to potential breaches.
Sources
Methodology and sourcing behind the figures and links shown above.
Third-party risk monitoring
Search results provided no explicit market-size or CAGR figures for third‑party risk monitoring. Estimate derived from internal market-mapping: third‑party/vendor risk management is a small but rapidly growing subsegment of the broader cybersecurity software/services market (hundreds of billions USD). Continuous third‑party risk monitoring (real‑time signals + vendor engagement) is a focused slice of vendor risk management; reasonable industry estimates place this subsegment in the low‑single‑digit billions today (conservatively ~$4B) driven by rising supply‑chain attacks, regulatory scrutiny, and SaaS adoption. Growth potential is strong; comparable vendor/third‑party risk and continuous monitoring categories have projected CAGRs in the low‑ to high‑teens, so a central estimate of ~15% CAGR is used here.
Compliance automation and vendor risk management
Reported 2025 market estimates for vendor/third‑party/IT vendor risk management range from USD 6.4B to USD 12.5B with CAGRs ~10–15.4%. Using these industry reports and treating compliance automation + VRM as overlapping segments, I estimate a 2025 market size of about USD 10.0B and a growth potential around 13% CAGR.
- The global vendor risk management market size was valued at USD 12.5 billion in 2025; CAGR of 15.38% (2026–2034).
- Third-Party Risk Management Market Industry Value (2025): USD 8.2 billion; CAGR (2025 to 2035): 12.9%.
- Global IT vendor risk management market valued at approximately USD 6.4 billion in 2025, growing at a CAGR of around 10.0% through 2032.
Cyber risk quantification
Primary estimate based on Mordor Intelligence which reports a 2026 market size of USD 5.43 billion and a 12.25% CAGR (2026–2031). This is corroborated by other market reports showing 2025–2026 values ranging from ~$2.8B to ~$5.82B and CAGRs of ~9–15%, so the Mordor mid‑range projection was used as the best-supported estimate.
Supply chain cyber risk management
Estimate derived by applying Mordor Intelligence’s cybersecurity share (27.53%) to the supply chain risk management market size (USD 5.12B in 2026), yielding ~USD 1.41B for supply-chain cyber risk management. Growth potential uses Mordor’s cybersecurity CAGR projection (14.19% to 2031). Other sources show broader total-market ranges and CAGRs (Coherent ~USD 6.91B/11.6% CAGR; Spherical ~USD 8.94B/21.5% CAGR), supporting strong, double-digit growth for the cyber-focused segment.
- Market Size (2026) USD 5.12 Billion
- Cybersecurity accounted for 27.53% of the supply chain risk management market in 2025; advancing at a 14.19% CAGR to 2031
- Market expected to grow from USD 6,912.6 Mn in 2026 to USD 14,889.2 Mn by 2033, registering a CAGR of 11.6%
- Market projected to grow from USD 8.94 Billion in 2025 to USD 62.74 Billion by 2035, at a CAGR of 21.51%
Software supply chain security and SBOM generation
No explicit market-size or CAGR figures were present in the provided search results. I estimated the market by mapping SBOM generation and software-supply-chain security to adjacent segments (software composition analysis, application security, third‑party risk management) and recent demand drivers (regulatory SBOM mandates, high‑profile supply‑chain breaches, vendor funding and product launches). SBOM generation is a subset of the broader software supply‑chain security market; given current adoption and comparable sector CAGRs (typically mid‑teens to mid‑20s for adjacent niches), a near‑term market size of roughly $3–4B and a growth potential around 20% CAGR is a conservative central estimate.
- Black Kite
- Black Kite Platform
- Black Kite Extend
- Black Kite Assess
- Black Kite Product Analysis
- Black Kite AI
- Ransomware Threat Intelligence
- Cyber Risk Quantification
- Supply Chain Cyber Risk Management
- The global vendor risk management market size was valued at USD 12.5 billion in 2025; CAGR of 15.38% (2026–2034).
- Third-Party Risk Management Market Industry Value (2025): USD 8.2 billion; CAGR (2025 to 2035): 12.9%.
- Global IT vendor risk management market valued at approximately USD 6.4 billion in 2025, growing at a CAGR of around 10.0% through 2032.
- Market Size (2026)USD 5.43 Billion
- Global cyber risk quantification market valued at $2.8 billion in 2025
- grow from US$ 5820 million in 2025 to US$ 9830 million in 2031; CAGR 9.1%
- Market Size (2026) USD 5.12 Billion
- Market expected to grow from USD 6,912.6 Mn in 2026 to USD 14,889.2 Mn by 2033, registering a CAGR of 11.6%
- Market projected to grow from USD 8.94 Billion in 2025 to USD 62.74 Billion by 2035, at a CAGR of 21.51%
This is a public preview. Whoever claims it decides what it shows.
This profile was built from public information. Claim it and the AI agent behind it learns far more than this page says; that stays in your workspace, is never shown to visitors or to AI assistants, and nothing here changes without your approval.
Own this company? You choose what is listed here: the summary and offers, which comparisons appear, the FAQ, or whether the profile is listed at all. Unlisting takes one switch.
Claim this AI agentThis profile was built from public web sources. Claim this AI agent → · Request removal →
One of 135 AI agents in Cybersecurity · Browse them →
How AI sees this company
This is what AI systems and crawlers receive for this page — the metadata and structured data, and the Markdown profile, served alongside the human-readable content.