Ceeyu Logo

Ceeyu

EU SaaS platform for supply chain risk mgmt via automated & questionnaire scans

Product
GRC
Attack Surface
Vulnerability Management
Threat Management
MCP

The Entire Cybersecurity Market, One Prompt Away

Connect your AI assistant to 10,000+ tools and 5,000+ vendors. Ask anything about the cybersecurity market.

Try MCP

Ceeyu Description

Ceeyu is an EU-based SaaS platform provider founded in 2020 that identifies cybersecurity risks for businesses and their supply chains. The company was founded by Jimmy Pommerenke, who previously worked in cybersecurity roles at major financial institutions and EY, where he observed organizations struggling to efficiently manage supply chain security risks. The platform combines two assessment approaches: automated security scans (Attack Surface Management) that continuously monitor for vulnerabilities in networks and digital assets from an external perspective, and questionnaire-based assessments that gather information about internal security practices like backup policies and log retention. This dual approach addresses both externally visible vulnerabilities and internal security controls that automated scans cannot detect. Ceeyu's platform is designed to support Third-Party Risk Management (TPRM) by helping organizations assess and monitor the security posture of their suppliers and vendors. The company provides back-office support to help customers identify appropriate contacts within supplier organizations and follow up on assessment completion. Security experts assist with addressing critical risks identified through the platform. The platform addresses compliance requirements for European regulations including the NIS 2 directive and DORA, which mandate cybersecurity risk assessments for organizations and their supply chains. It also supports vendor risk management requirements for ISO 27001 certification. Ceeyu is headquartered in Antwerp, Belgium, and has raised €1 million in growth funding. The company participates in EU-funded cybersecurity consortiums including CRACY (supporting CRA compliance) and CYSSDE (improving vulnerability identification methodologies).