Securing businesses since 1998.
Clone Systems is a global Managed Security Service Provider and PCI SSC Approved Scanning Vendor. We protect more than a thousand organizations with 24/7 Security Operations Centers, proprietary SIEM, and AI-assisted operations.
Nearly three decades of security leadership.
Clone Systems was founded in Philadelphia in 1998 as a security technology company. From the beginning our mandate was simple: build technology businesses can use to defend a security posture they actually own, and stand behind it with real people and round-the-clock support.
In 2001 we formalized as a niche Managed Security Service Provider, and in 2004 we activated our first 24/7 PCI-certified data center and US Security Operations Center. In 2007 the PCI Security Standards Council certified us as a global Approved Scanning Vendor, and we have been running quarterly ASV scans for merchants and service providers worldwide ever since.
Today we combine that heritage with a modern platform: proprietary SIEM aligned to MITRE ATT&CK, a unified scanning portal, mobile apps, an AI assistant, and AI-powered SOAR playbooks. Same people. Same standards. Faster, sharper, always-on.
- Compliance you can proveEvery scan, playbook, and portal is built around evidence a QSA or auditor can actually use.
- AI with a human in the loopOur AI assistant accelerates triage and remediation, but a senior analyst signs off on outcomes.
- Straight to the expertsTalk to a certified engineer on the first call. No scripted qualifying rounds, no multi-year lock-in.
A quarter century of shipping security that works.
Every era below is drawn from the actual Clone Systems roadmap. Scroll through the story and each era opens as you reach it.
- 1998 — 2007Founding Era
Founded as a security technology company in Philadelphia, then formalized as a niche MSSP with a dedicated CISSP team, a PCI-certified data center, a 24/7 US-based Security Operations Center, and became a Global PCI SSC Approved Scanning Vendor.
- 1998Clone Systems, Inc. is establishedBuilding security technology businesses could use to strengthen their posture.
- 2001Formal MSSP launchManaged firewall and IDS/IPS services for retailers and banks, run on our own platform.
- 2003CISSP team formedA dedicated Certified Information Systems Security Professionals team with a whatever-it-takes attitude.
- 2004PCI-certified data center & US SOCSelf-contained infrastructure and 24/7/365 monitoring go live.
- 2007Global PCI ASV certificationCertified by the PCI SSC to perform vulnerability scans for merchants and service providers worldwide.
- 2007Recognized IDS/IPS expertiseIndustry recognition for managed detection delivered on our own proprietary platform.
- 1998
- 2008 — 2013Scale & Global Reach
Launched the CloneGuard security suite, opened offices in New York and London, and activated the European Security Operations Center.
- 2008CloneGuard suite launchedNew wave of security products addressing fast-changing customer needs.
- 2009Reseller programWhite-label and reseller program for VARs, QSAs, and other service providers.
- 2010London office opensInternational expansion to serve European customers and resellers.
- 2012Gartner Magic Quadrant recognitionRecognized as a niche pure-play MSSP with strong customer marks for delivery.
- 2013European SOC activated24/7/365 monitoring extended across the EU with regional response coverage.
- 2008
- 2014 — 2019Platform Modernization
Built proprietary SIEM and Log Management, consolidated all scanning services into a single portal, released mobile apps and the Incident Response Platform, and expanded white-label REST APIs.
- 2014Proprietary SIEM & Log ManagementPurpose-built with customers for speed, search, and analyst usability.
- 2017REST APIs for scanningWhite-label resellers can fully embed our scanning platform into their own products.
- 2017NextGen SIEMv1Cloud API integrations, two-phase alerting, and STIX/TAXII custom threat intel.
- 2018Unified scanning portalPCI ASV, vulnerability management, and pentesting consolidated into one interface.
- 2018Mobile scanning appsiOS and Android apps for managing scans from anywhere.
- 2019Incident Response PlatformDirect customer view into the SOC for real-time incident review and response.
- 2014
- 2020 — 2022XDR, SOAR & Cloud
Integrated SOAR into the IRP, launched CloneGuard ONE for SMB XDR coverage, released the EDR agent, added automated dark web scanning, and re-engineered the scanning stack for PCI DSS 4.0.
- 2020SOAR integrated into IRPInteractive customer-facing playbooks streamline SOC investigations.
- 2020SIEM v2.0 releasedEvents aligned to the MITRE ATT&CK framework and multiple compliance standards.
- 2020EDR agent general availabilityMulti-platform endpoint threat protection integrated with our SIEM.
- 2021Automated dark web scanningNew add-on lets clients confirm their data is not being sold on the dark web.
- 2021Multi-tenant SIEM with XDREnterprise-grade SIEM for SMBs, aligned to the most stringent compliance frameworks.
- 2022ASV 4.0 ready architectureDistributed scan workers, authenticated app checks, smarter throttling, and delta rescans.
- 2020
- 2023 — TodayAI-Assisted Security
Stood up a dedicated AI Lab, launched AI Remediation and AI SOC Analyst, shipped AI-powered SOAR with a full audit trail, and relaunched CloneGuard with a rebuilt scanning portal and online checkout.
- 2023Pentest Reporting 2.0Findings mapped to MITRE ATT&CK and CWE, with prioritized remediation and one-click retest.
- 2023AI Lab establishedSafe, private AI projects for log summarization, remediation plans, and analyst assistance.
- 2024SAQs on PCI DSS 4.0.1Aligned to the Council's October 2024 refresh and January 2025 SAQ A updates.
- 2024Correlation packs & playbooksNew detections for AD enumeration, EDR tampering, DNS zone transfers, and DB password spraying.
- 2024AI Remediation & AI SOC Analyst (beta)Internal AI platform converts vulnerability data into step-by-step fix guidance.
- 2025AI-powered SOAR (GA)AI runbooks enrich alerts, propose actions with evidence, and execute low-risk containment with human approval.
- 2025PCI DSS 4.x future-dated controls completeFull platform support for requirements effective March 31, 2025.
- 2026CloneGuard portal relaunchRebuilt scanning portal with 4x the vulnerability detection library, authenticated web app testing, endpoint agents for remote hosts, and a privately hosted AI assistant.
- 2023
Four things every Clone Systems customer gets.
Written in 2006. Still true today. Modernized with AI-assisted operations, XDR coverage, and PCI DSS 4.0.1 tooling.
24/7 Security Operations
Our United States and European Security Operations Centers identify vulnerabilities, monitor threats, and respond in real time, every hour of every day.
Proprietary Technology
Every platform we run is proprietary Clone Systems technology, built and maintained in-house and delivered as a fixed-cost service so there is no capital expense to your team.
Certified Senior Engineers
CISSP-led engineers integrate with your team, strengthen your posture, and stay accountable through every incident, exception, and audit cycle.
Global Security Experience
Insight gathered from securing customers across regulated industries on multiple continents shapes the guidance we bring back to every client.
Two SOCs. One incident response platform.
Clone Systems runs Security Operations Centers in the United States and the European Union, both staffed 24/7/365 by CISSP-led analysts. They share tooling, playbooks, and case history through a single incident response platform, so nothing falls between shifts or between regions.
- Philadelphia, USA — HQ & SOC
- Cyprus, EU — European SOC
- PCI SSC ASV since 2007
- AI-powered SOAR (GA 2025)
Trusted by Leading Organizations
From Fortune 500 enterprises to global retailers, financial institutions, airlines, manufacturers, and healthcare organizations, organizations have trusted Clone Systems to strengthen their security posture since 1998.
Have a question about our company?
Tell us what you are working on. A certified engineer will get back to you with straight answers and no long-term lock-in.