
Give security leaders complete clarity over their security stack.
Helping them reduce risk, remove waste, and make every security investment count.
Reduce Risk
See exactly what your stack can defend against, where the gaps are, and how coverage maps to the threats and frameworks that matter.
Remove Waste
Surface duplication, unused capability, and abandoned tooling so no budget is spent on capability you already own.
Maximise Security ROI
Turn scattered capability, cost, and deployment data into decisions that maximise every security investment.
Built from a pattern that
kept repeating

Founder & CEO
15+ years across policing cyber strategy, cyber forensics in counterterrorism, and enterprise security, from BT's Computer Emergency Response Team to building high-volume security analytics capability, enterprise customer transformation at Symantec and Broadcom, and independent advisory work across sectors and vendors, with a perspective shaped from C-level to ground level.
ESProfiler was founded by Louis Holt after more than fifteen years across cyber forensics in counterterrorism, policing cyber strategy, and enterprise security. His career has spanned BT's Computer Emergency Response Team, the build-out of high-volume security analytics capability, enterprise customer transformation at Symantec and Broadcom, and independent advisory work across sectors and vendors. That breadth gave him a perspective few security leaders get to see: from C-level strategy through to the realities of ground-level delivery.
Across all of that work, one pattern kept repeating.
“I knew this would happen.”
After incidents, the answer was often already inside the organisation. The capability existed. The insight existed. But it had not reached the right people, at the right level, in time to change the outcome.
The same pattern appeared in security investment decisions. Organisations had bought tools that did not match their actual requirements. Teams were frustrated. Technologies were underused, duplicated, or abandoned. Licences kept renewing, storage costs kept accruing on hardware that was never deployed, and security leaders were left trying to understand whether the stack they had often inherited was really reducing risk.
The problem was rarely negligence. It was complexity.
At enterprise scale, no one person can hold the full picture of a security estate. Capability knowledge is scattered across vendor documentation, RFP responses, spreadsheets, contracts, architecture diagrams, procurement records, and the lived experience of people on the ground. Security leaders need to know what they have, what it does, what it costs, where it overlaps, where the gaps are, and how it maps to the threats and frameworks that matter, but those answers are often fragmented, manual, slow, and hard to produce.
That conviction became the foundation of ESProfiler.
Cybersecurity is the business of revenue protection. Every investment in the security stack should contribute to reducing risk, improving resilience, or enabling the business to operate with confidence. Yet too much time and money is lost simply trying to understand the environment: what tools exist, what capabilities they provide, how they are deployed, and whether they are delivering value.
As a consultant, Louis could help individual organisations build that picture through interviews, analysis, and deep engagement with teams. But the problem was too large, too distributed, and too persistent to solve manually.
How the platform came together
Align to attacker methodology
ESProfiler began with a simple idea: align security technologies to attacker methodology, creating a clear view of what an organisation can actually do against the threats most likely to target it.
Map capability across frameworks
From there, the platform evolved to support broader capability mapping across frameworks such as NIST, ISO, internal taxonomies, and bespoke enterprise models.
Capture commercial knowledge
Not only what a tool claims to do, but what it costs, when key renewal and procurement decisions need to be made, and where value is being created or lost across the stack.
Expert on every tool in the stack
Agents capture deep institutional knowledge on how products are deployed, where the risks and opportunities lie, and how teams use each tool in practice. ESProfiler becomes an expert on every security tool in the stack, capable of deep conversations at a scale not previously possible.
Synthesise insight with AI
Advances in AI made it possible to structure that intelligence, gain insight faster, and work at a depth and scale no individual or team could achieve alone, saving the time previously lost pulling answers together manually.
Become the source of truth
ESProfiler became a nucleus for the security stack: one place to understand capability, cost, coverage, deployment reality, gaps, overlaps, and decision points that the wider organisation can rely on.
Because that intelligence is structured, it becomes a source of truth for people and AI across the wider organisation, enabling better decisions about risk, investment, architecture, procurement, and transformation.
Armed with those answers, security leaders can get ahead of the decisions that matter: reducing risk, eliminating waste, and maximising every security investment.
ESProfiler is shaped by some of the world's largest enterprises across highly regulated sectors. Its purpose is simple: to help security leaders get the most from their security stack, their teams, and their investments.
The People Behind the Platform
Leadership

Louis Holt
CEO & Founder
Over a decade in cybersecurity, from government & counter-terrorism to global enterprises. Deep expertise in major security transformations for Fortune-level organizations.

Joe Pavitt
Chief Product Officer
Record-Breaking Inventor, became the Youngest Ever IBM Master Inventor in the UK at age 26, holding 17 filed patents in bleeding-edge technologies.

John McCann
Chief Revenue Officer
Exited founder with 30+ years cyber sales expertise spanning enterprise vendors, services, and cutting-edge AI/ML security startups.
The People Supporting the Platform
Advisory Board

Sounil Yu
Knostic – Co-Founder/CTO
Author of the critically acclaimed Cyber Defense Matrix, investor and strategist; previous Chief Security Scientist for Bank of America.

Amy Lemberger
Gamma – Strategy & Governance Director
An experienced enterprise security leader. Currently Group Risk & Governance Director at Gamma and ex-Head of Security at BT.

Steve Hall
HSBC – Global Head of Cybersecurity Operations
Recognised cyber security thought leader with industry-leading experience in the mitigation of advanced threats targeting financial institutions.
Recognised by the Best

NCSC for Startups
National Cyber Security Centre
Alumni of the NCSC's competitive For Startups programme, validating ESPROFILER's approach to enterprise security intelligence.

Google for Startups
AI for Cybersecurity
One of a select cohort of startups building at the intersection of AI and enterprise security, supported by Google's specialized programme.

techUK Winner
Cyber Innovation Den
Recognised by techUK's CISO cohort as a standout innovation in the UK cybersecurity ecosystem.