/Companies

ZecOps

7 known investors

Find your way into ZecOps

Sign up to see every warm intro you have to ZecOps

  • Paths you didn't know you had: your email and LinkedIn already hold routes to the ZecOps team. We find them for you
  • 2nd- and 3rd-degree connections: the friend-of-a-friend routes that take hours to manually find through your inbox or LinkedIn
  • Answers now, not in days: momentum is everything in a raise. Skip asking around whether someone knows someone

Days of research, done the moment you sign in, with every route ranked by how warm it is.

Jamf Mobile Forensics (formerly ZecOps) is a mobile digital forensics and incident response tool that detects and investigates advanced threats such as zero-click attacks, mercenary spyware (e.g. Pegasus, Predator, Graphite) and APTs on iOS and Android devices. It targets organizations protecting high-risk users like government officials, executives and journalists, collecting device telemetry without gathering personal content like messages or photos.

Also known as Jamf Mobile Forensics

Founders & leadership

ZAZuk Avraham
Zuk AvrahamFounderZuk Avraham is a security researcher who founded Zimperium, a mobile threat defense company acquired for $525 million in 2022, and ZecOps, a mobile forensics and incident response firm acquired by Jamf in 2022. He previously worked as a security researcher at the IDF and Samsung Electronics, and presented security research on ARM architecture at major conferences.

Investors · 7

Also in the syndicate · 2

Plug and Play Silicon ValleyWISE Ventures

Funding

SEC filings, press & company announcements

$13.7M disclosed across 2 of 3 rounds · 2018–2019

Source: company announcements and press reports — follow each round's link for the claim.

Company profile

researched Aug 2026

ZecOps, whose website now presents the product as Jamf Mobile Forensics, provides mobile digital forensics and incident response capabilities for iOS and Android devices. The product is positioned to detect and investigate advanced mobile threats including zero-click attacks, mercenary spyware such as Pegasus, Predator and Graphite, advanced persistent threats, and exploits or payloads that evade existing internal security controls.

The platform automates collection and analysis of endpoint telemetry — crash, Wi-Fi manager, kernel and App Store logs, spindumps and IPS files, configuration profiles, processes and threads, installed apps and file names, and developer certificates. Detection combines known CVEs with proprietary behavioral analytics to surface anomalous behavior and indicators of compromise. Additional capabilities include remote DFIR scanning of a device, AI-assisted analysis of device crashes and anomalies, a security operations center view that groups events into unified incidents with severity and status, and incident timeline construction. Administrators and analysts can perform inspections and administrative tasks from macOS and Windows devices, and deployment to corporate-owned and BYOD iOS, iPadOS and Android devices is handled through MDM.

Business model

The product is sold to organizations as a software offering, with a trial available for prospective customers and a contact-sales path; it is presented as an advanced forensic layer that complements the broader Jamf for Mobile management and security suite.

Latest developments

The zecops.com site now operates under the Jamf Mobile Forensics brand, publishing an overview blog on the technology and use cases and a release blog covering the latest features in the product.

▸Full profile — market position, technology, go-to-market

Market position

Marketed as an advanced forensics layer for mobile devices that sits alongside conventional mobile device management and mobile threat defense, addressing nation-state-grade and mercenary spyware attacks that those controls are described as unable to surface.

The product is positioned around privacy-preserving collection — it states it never gathers passwords, photos or videos, text messages including iMessage, emails, contacts, call data, browser history, or in-application and file data — in contrast to manual forensics that can be costly, slow and raise privacy or PII compliance issues. It also claims deeper system access than MDM and mobile threat defense tools provide, faster time-to-detection (minutes rather than weeks), and research support from Jamf Threat Labs, while avoiding the shadow IT and user-experience drawbacks of loaner device programs.

Technology

Automated collection of iOS and Android device telemetry (crash, kernel, Wi-Fi manager and App Store logs, spindumps and IPS files, configuration profiles, processes and threads, installed applications and file names, developer certificates), analyzed with known CVE signatures and proprietary behavioral analytics to identify indicators of compromise. Remote DFIR scanning inspects devices on demand, AI-powered analysis assists investigation of crashes and anomalies, and events are automatically grouped into unified incidents with timelines, severity and status.

Go-to-market

Organizations that need to protect high-risk, high-target users and their devices — including government officials, traveling executives and journalists — and their security research, SOC and forensics teams.

Compiled by commissioned research from 1 cited public sources — announcements, filings, and press listed under research sources below.

In the news

▸Research sources · 1

primary sources listed

1 public sources were cited for this profile; the first-party ones are listed here.

Frequently asked questions

What does ZecOps do?
Mobile digital forensics product, now branded Jamf Mobile Forensics, that detects zero-click attacks and mercenary spyware on iOS and Android.
Who founded ZecOps?
ZecOps was founded by Zuk Avraham.
Who are ZecOps's investors?
ZecOps's investors include Curiosity VC, Evolution Equity Partners, Flucas Ventures, KPN Ventures, Array Ventures Management Llc.
How much funding has ZecOps raised?
ZecOps has disclosed $13.7M raised across 2 of its 3 known rounds.