Excalibur is a European cybersecurity vendor founded in 2016 in Poprad, Slovakia, focused on Privileged Access Management (PAM) at the intersection of MFA and Zero Trust. Operating in a late seed stage and preparing for Series A, it is funded through commercial revenue, European and Slovak government grants, and support from the European Innovation Council. Its platform addresses modern PAM demands created by hybrid IT, insider threats, credential theft, shadow IT, and remote access by moving beyond vaulting toward controlled, observable privileged interactions that also support regulatory alignment, including NIS2 and DORA.
The company’s core innovation is Streamed Access Management (SAM): a unified, browser-delivered system combining PAM, smartphone-centric passwordless MFA, and secure remote connectivity. Instead of giving users direct network-level access, Excalibur inserts an isolation layer between user and resource, executes sessions in a controlled environment, and streams the interaction to the browser. Users authenticate via a smartphone flow using QR scanning, biometrics, location, device trust, and PIN, then reach RDP, SSH, VNC, and web apps without local clients or exposing credentials. Credentials remain encrypted and are injected only when needed, while sessions are monitored, recorded, and auditable across on-prem, cloud, SaaS, and MSP-hosted deployments using a microservices architecture.
A key differentiator is VITRO, an RBI-WAF isolation layer that splits the browser engine so application logic runs centrally while only inert rendering data is delivered to the endpoint, keeping users disconnected from runtime and DOM to neutralize exploit paths in vulnerable web apps. A server-side intent engine continuously evaluates actions against expected workflows and can trigger step-up authentication or peer approval when behavior deviates, shifting PAM toward continuous governance of privileged interactions.
See All Locations
See All Locations