Tenchi Security builds Zanshin, a Third-Party Cyber Risk Management platform that targets a specific and persistent attack surface: your vendors' cloud infrastructure. The product combines external attack surface monitoring with automated, non-intrusive assessments of security controls across IaaS, PaaS, and SaaS environments. The threat model is direct - third and Nth parties represent an expanding, poorly understood perimeter, and Zanshin attempts to map it systematically.
The technical stack operates across cloud security, attack surface monitoring, and risk assessment domains, linking outside-in visibility with inside-out data collection. The goal is continuous monitoring rather than point-in-time questionnaires, which means the engineering challenges involve scalable scanning, data correlation, and control validation across diverse cloud architectures. The platform serves industries where supply chain compromise carries material consequences: banking, enterprise, and broader supply chain security.
The team includes security veterans from Apple, Google, and Verizon, bringing over 25 years of combined experience in the space. Tenchi Security is building for a problem that scales with every new SaaS dependency and cloud integration - an attack surface most organizations still measure with spreadsheets and annual attestations.






