Rithum has been in the commerce infrastructure game since 1997, which means it has spent nearly three decades accumulating attack surface and customer trust in equal measure. The platform serves over 40,000 brands, retailers, and suppliers globally, providing end-to-end tooling for marketplace listings, inventory management, retail media advertising, and shipping optimization. That's a lot of transactional data flowing through one system - payment flows, inventory records, advertising spend, and logistics data all under one roof.
For security practitioners, the threat model here is straightforward: you're protecting a multi-tenant commerce platform where a breach doesn't just expose one retailer's data but potentially cascades across thousands of connected brands and suppliers. The platform's scope - marketplace integrations, ad networks, shipping APIs - means defenders are dealing with a broad external attack surface and numerous third-party integrations. Retail media advertising adds another layer, with ad-tech supply chain risks baked into the product itself.
The company operates globally, and its longevity suggests a mature (read: legacy-aware) codebase with all the modernization challenges that implies. Teams working here will likely face the kind of problems that come from scaling a platform across 28 years of commerce evolution: securing older services while building new ones, managing complex access controls across diverse customer types, and hardening data pipelines that aggregate sensitive commercial information from tens of thousands of businesses.






