/Companies

NIMIS Cybersecurity

Techstars '17

Melbourne, AU · Founded 2017 · 2 employees on LinkedIn · 1 known investors

Find your way into NIMIS Cybersecurity

NIMIS Intelligence builds an AI-powered penetration testing platform for web applications and APIs, helping development teams identify and exploit vulnerabilities before attackers. The platform provides continuous, automated testing with coverage across the OWASP Top 10.

Also known as NIMIS AI · NIMIS Intelligence

Investors · 1

Techstarslisted by TechstarsBoulder · $220K

How we know: the Techstars portfolio · a partner's Signal profile · open dataset · Top 3000 Accelerator Startups (no YC) 2026-08 · Not right? Tell us

Company profile

researched Sep 2026

NIMIS Cybersecurity, which presents itself publicly as NIMIS Intelligence, develops an AI-powered penetration testing platform for web applications and APIs. The product is positioned as an alternative to scheduled manual engagements: customers register an application, verify ownership, define in-scope and out-of-scope paths, add API domains and supply test credentials for authenticated areas, then run tests on demand or after each sprint or release rather than on an annual cycle.

The system is described as an autonomous exploitation engine that works through authentication flows, injection paths, access controls, session handling and business logic, with coverage framed around the OWASP Top 10. Findings are validated by exploiting the weakness far enough to demonstrate real impact and then stopping at proof; the company states the system does not exfiltrate data, run denial-of-service attacks, or operate outside the defined scope. Each finding is delivered with severity, the underlying HTTP request and response (copyable as cURL), screenshots captured during exploitation, ordered reproduction steps and remediation guidance, and re-testing is included to confirm fixes.

Delivery is through a web portal (portal.nimisintelligence.com) providing dashboards for applications, tests run, and open versus fixed findings, plus report generation. Outputs include a full technical PDF report for engineering teams and a redacted version intended for auditors, customers and regulators, and findings can be routed into Slack, Teams and Jira.

Business model

NIMIS sells access to a hosted testing platform rather than consulting engagements, contrasting its approach with traditional pentesting priced per engagement and positioning its pricing around expertise rather than billable hours. Prospective customers are directed to book a demo or start a test through the website.

Traction

Listed as a pre-seed stage company with 1-10 employees.

▸Full profile — market position, technology, go-to-market, geography, history

Market position

Positions itself against traditional manual penetration testing engagements on time-to-start (same day versus weeks of scheduling), availability (on demand versus tester capacity), coverage (every app and release versus an annual sample), cost model, included fix verification, and reporting (full plus redacted versus a single report). Listed under AI/ML and cyber security industry categories.

Emphasis on findings proven through actual exploitation rather than theoretical flags, included re-testing to verify remediation, dual full and redacted reporting for technical and audit audiences, and consistent methodology across tests so coverage numbers are comparable.

Technology

An autonomous exploitation system that tests web applications and APIs across authentication flows, injection paths, access controls, session handling and business logic, aligned to the OWASP Top 10. Vulnerabilities are confirmed by observing their actual effect rather than being flagged as theoretical, with evidence captured as HTTP request/response pairs, cURL commands and screenshots. Scope controls include ownership verification (for example via a metadata tag), allow and deny path lists, API domain registration and supplied test accounts for authenticated testing.

Go-to-market

Inbound website motion centered on booking a demo or starting a test immediately, emphasizing same-day start with no procurement or scoping cycle; integrations with Slack, Teams and Jira embed findings into existing engineering workflows.

Organizations running portfolios of web applications and APIs, addressing security and risk teams that must evidence testing coverage, engineering and delivery teams that cannot allow testing to delay releases, and board or assurance functions needing auditable proof of coverage.

Geography

Headquartered in Melbourne, Victoria, Australia, with additional locations listed across Victoria and in Melbourne, Florida, USA.

History

Founded in 2017 and backed by the Techstars accelerator program.

Compiled by commissioned research from 5 cited public sources — announcements, filings, and press listed under research sources below.

Key figures

latest reported
Employee count rangeJan 20261-10
Funding stageJan 2026Pre Seed
HeadcountAug 20262

Company-reported or press-reported figures, each dated to when it was claimed — not independently audited.

▸Research sources · 5

primary sources listed

5 public sources were cited for this profile; the first-party ones are listed here.

Frequently asked questions

What does NIMIS Cybersecurity do?
NIMIS is a Melbourne-based company offering AI-driven, on-demand penetration testing for web applications and APIs.
Who are NIMIS Cybersecurity's investors?
NIMIS Cybersecurity's investors include Techstars.
Where is NIMIS Cybersecurity headquartered?
NIMIS Cybersecurity is headquartered in Melbourne, AU.