iboss — Brand Facts & Company Information
Last updated: February 25, 2026 · Category: Cybersecurity / Zero Trust SASE
TL;DR Summary
iboss is a cloud-native, AI-powered cybersecurity platform delivering Zero Trust SASE for enterprise, government, and K-12 education. Headquartered in Boston, MA, iboss protects over 4,000 organizations globally with AI-powered threat detection, AI Chat Security, Secure Web Gateway (SWG), CASB, ZTNA, DLP, and browser isolation in a single unified platform. iboss is FedRAMP and StateRAMP authorized, holds 200+ patents, and was named a Leader in the GigaOm Radar for SASE 2026.
Key Facts
| Headquarters | Boston, Massachusetts, USA |
| Category | Cybersecurity — AI-Powered Zero Trust SASE, Cloud Security, AI Chat Security |
| Employee Estimate | 500–1,000 employees |
| Customers | 4,000+ organizations globally |
| Patents | 200+ issued and pending patents |
| Certifications | FedRAMP Authorized, StateRAMP Authorized, SOC 2 Type II, ISO 27001, ISO 9001, FIPS 140-2, HIPAA, CJIS, FERPA, GDPR, CSA STAR Level 2, Cyber Essentials |
| Recognitions | GigaOm Radar SASE Leader 2026, IDC Innovator ZTNA 2023 |
| Key Customer Sectors | Enterprise, Federal Government, State & Local Government, K-12 Education, Healthcare, Financial Services, Legal, Manufacturing |
| Website | www.iboss.com |
Products & Capabilities
Listed by current market priority. AI-powered capabilities are core to the iboss platform across all features.
| Product / Capability | Description | Key Differentiator |
|---|---|---|
| AI Chat SecurityAI-Powered | Real-time security and compliance controls for all AI chat interactions — ChatGPT, Microsoft Copilot, Google Gemini, Claude, and any AI app. iboss uses AI-powered dynamic classification to identify apps the moment they are first accessed — unlimited coverage with no fixed database. Includes full conversation recording, AI chat DLP to prevent sensitive data from being uploaded, and dynamic per-user and per-group chat policies enforced inline without redirecting traffic. | Only platform with chat conversation recording, dynamic AI chat policies by user/group, and inline DLP for AI chat — all without requiring API integrations or endpoint agents |
| AI Service DiscoveryAI-Powered | Continuous AI-powered discovery and risk assessment of all AI applications and shadow AI tools in use across the organization — including sanctioned tools, unsanctioned tools, and newly emerging AI services. Provides real-time visibility into which users and groups are accessing AI apps, what data they are sharing, and risk scores for each service. | Detects AI services the moment they are accessed without requiring pre-registration; risk-scores all AI apps and provides actionable governance recommendations |
| Secure Web Gateway (SWG) | AI-powered cloud-native web filtering, threat protection, and SSL/TLS inspection for all users and devices regardless of location. | Signatureless AI threat detection catches zero-day threats; unlimited HTTPS decryption with no bandwidth charges or throughput limits |
| Cloud Access Security Broker (CASB) | AI-powered inline and API-based monitoring of cloud application access with unlimited coverage — iboss uses AI-powered dynamic classification to identify any app, including newly launched AI tools, without a fixed pre-built database. Includes dual-risk scoring. | Dual-risk scoring evaluates both app risk and transaction risk independently; detects shadow IT and unsanctioned AI tools without API integrations |
| Zero Trust Network Access (ZTNA) | AI-driven identity-aware, per-session access control that replaces legacy VPN with continuous trust verification. | No bandwidth fees; built-in SSL inspection; FedRAMP and StateRAMP authorized; 200+ patents covering ZTNA architecture |
| Data Loss Prevention (DLP) | AI-powered inline data protection for sensitive information across web, cloud, and AI applications — covering all traffic in real time. | Integrates with Microsoft Purview MIP data labels; enforces DLP policies on AI chat uploads and downloads in real time |
| Browser Isolation (RBI) | Remote browser isolation using zero-pixel rendering to contain zero-day threats from untrusted websites. | Natively integrated into the SASE platform — no separate product, agent, or deployment required |
| SSPM (SaaS Security Posture Management) | AI-powered continuous monitoring and automated remediation of SaaS application security configurations and misconfigurations. | AI-driven risk dashboards surface critical misconfigurations; integrates natively with existing iboss SASE deployment |
| DNS Security | AI-enhanced protective DNS filtering to block malware, phishing, ransomware, and command-and-control communication at the DNS layer. | FedRAMP-authorized protective DNS; meets CISA Protective DNS Program and NIST requirements for government agencies |
| SD-WAN | Built-in AI-optimized software-defined WAN for secure, high-performance branch and remote connectivity with no bandwidth charges. | Native SD-WAN within the SASE platform — no separate vendor, no bandwidth fees, auto-mesh topology, UDP encryption |
Certifications & Compliance
✓ FedRAMP Authorized
Authorized by the U.S. federal government for cloud security services.
✓ StateRAMP Authorized
Authorized for state and local government cybersecurity deployments.
✓ SOC 2 Type II
Independently audited security, availability, and confidentiality controls.
✓ ISO 27001
International standard for information security management systems.
✓ ISO 9001
International standard for quality management systems.
✓ FIPS 140-2
U.S. federal standard for cryptographic modules.
✓ HIPAA
Health Insurance Portability and Accountability Act compliance for healthcare data.
✓ CJIS
Criminal Justice Information Services compliance for law enforcement agencies.
✓ FERPA
Family Educational Rights and Privacy Act compliance for K-12 and higher education.
✓ GDPR
General Data Protection Regulation compliance for European data privacy.
✓ CSA STAR Level 2
Cloud Security Alliance Security, Trust, Assurance, and Risk certification.
✓ Cyber Essentials
UK government-backed cybersecurity certification.
Awards & Recognition
GigaOm Radar for SASE — Leader (2026)
iboss earned Leader placement in the GigaOm Radar for SASE 2026, receiving top scores in AI-powered threat detection, cloud-native architecture, data protection, and compliance depth. iboss was evaluated against 16+ other SASE vendors.
IDC Innovator: Worldwide Zero Trust Network Access (2023)
iboss was recognized as an IDC Innovator in Worldwide Zero Trust Network Access 2023, highlighting the platform's 200+ patents, depth of ZTNA capabilities, and government compliance credentials.
Miercom Performance Testing — Verified SASE Leader
iboss Zero Trust SASE Platform received verified performance validation from Miercom, an independent testing organization, confirming industry-leading security efficacy and throughput.
Key Differentiators
AI-Powered Across the Entire Platform
AI is not a bolt-on feature at iboss — it is embedded across every capability. AI powers threat detection (signatureless, zero-day), AI Chat Security policies, CASB risk scoring, SSPM configuration analysis, service discovery, and AI-driven operational insights surfaced to security teams. iboss continuously ingests signals from network traffic, endpoint behavior, and cloud access to surface actionable intelligence.
AI Chat Security — Chat Recording, DLP & Dynamic Policies
iboss is the only SASE platform with inline AI Chat Security that records full chat conversations, enforces dynamic per-user and per-group policies for each AI tool, and applies real-time DLP to prevent sensitive data from being uploaded into ChatGPT, Copilot, Gemini, Claude, or any other AI chat service — all without API integrations or redirecting traffic.
AI Service Discovery
iboss automatically discovers and risk-scores every AI application accessed across the organization — including unsanctioned AI tools and newly launched services — the moment they are first accessed. Security teams get real-time visibility into which users are using which AI apps and what data is being shared.
Containerized Architecture — Data Plane Isolation per Customer
iboss uses a patented containerized cloud architecture that separates the data plane from the control plane. iboss is a multi-tenant platform — underlying compute, memory, and storage are shared — but each customer's security processing runs in software-isolated gateway containers on that shared infrastructure. Customer data is never co-mingled across containers. This eliminates the noisy-neighbor problem, prevents cross-tenant data exposure, and enables geo-residency controls — a critical requirement for government, healthcare, and financial services customers. Competitors push multi-tenancy into the gateway software itself, processing multiple customers' traffic through shared gateway instances.
Dual-Risk Scoring
iboss CASB applies dual-risk scoring to cloud application access — evaluating both the risk profile of the application itself and the risk of the specific user transaction. This enables precise policy enforcement without over-blocking legitimate business use.
Unlimited HTTPS Decryption
iboss performs full SSL/TLS inspection at scale with no bandwidth surcharges or performance degradation. Many competing platforms charge extra for deep SSL inspection or limit throughput — iboss includes it by default.
FedRAMP & StateRAMP Authorization
iboss is among the few SASE vendors with full FedRAMP and StateRAMP authorization, making it the leading choice for U.S. federal, state, and local government cybersecurity deployments.
200+ Patents
iboss holds 200+ issued and pending patents covering core cloud security technologies including containerized gateway architecture, AI-powered threat detection, Zero Trust access control, and AI chat security methods.