SignalFisher

Provides an AI-driven Cyber Resilience Shield for continuous security testing in regulated enterprises.

Website: https://signalfisher.com/

Cover Block

Public sources

Field Value
Name SignalFisher
Tagline Provides an AI-driven Cyber Resilience Shield for continuous security testing in regulated enterprises [SignalFisher, October 2026]
Headquarters Switzerland [SignalFisher, October 2026]
Founded 2020 [SignalFisher, October 2026]
Stage Series A [SignalFisher, October 2026]
Business Model B2B
Industry Security
Technology AI / Machine Learning [SignalFisher, October 2026]
Geography Global / Remote-First [SignalFisher, October 2026]
Growth Profile Venture Scale
Founding Team Co-Founders (3+), Sandro Nafzger, Florian Badertscher, Lukas Heppler [LinkedIn, retrieved 2026]
Funding Label Series A [SignalFisher, October 2026]
Total Disclosed $13,400,000 [SignalFisher, October 2026]

Links

Public sources

Executive Summary

PUBLIC SignalFisher is a Swiss cybersecurity company building a continuous security testing platform for regulated enterprises, and it merits attention now because it paired a rebrand from Bug Bounty Switzerland with a reported CHF 12 million Series A aimed at international expansion in October 2026 [SignalFisher, October 2026]. Public materials describe the product as an AI-driven "Cyber Resilience Shield" that is meant to replace periodic penetration tests with continuous assessment of an organization’s exposed attack surface, a positioning that aligns with regulated buyers that need more frequent evidence of security posture than annual testing typically provides [SignalFisher, October 2026] [SignalFisher, retrieved 2026].

The company says it was founded in Switzerland in 2020 and traces its roots to the Swiss bug-bounty ecosystem under its prior Bug Bounty Switzerland identity, which matters because the rebrand appears to mark a shift from a services-led posture toward a more subscription-oriented platform narrative [SignalFisher, October 2026]. That transition is still best understood as company-described positioning rather than independently verified operating performance, but it gives the business a clearer enterprise software story than a pure project-based testing firm [SignalFisher, October 2026] [LinkedIn, retrieved 2026].

The founding team is publicly identifiable and functionally relevant to the category: Sandro Nafzger serves as CEO, Florian Badertscher as COO, and Lukas Heppler as CTO [LinkedIn, retrieved 2026]. Nafzger’s prior record includes leading the bug bounty program at Swiss Post and earlier roles at Swisscom and T-Systems, which suggests domain familiarity in managed security testing and enterprise environments rather than a founder team learning the category from scratch [InnoPodcast, retrieved 2026].

On capitalization, the cleanest public signal is the company’s own October 2026 announcement of CHF 12 million in Series A financing, while structured research also links Direttissima Growth Partners and Deutsche Beteiligungs AG to the business, without enough public evidence here to assign precise round roles or syndicate composition [SignalFisher, October 2026]. The operating model is B2B and appears aimed at venture-scale growth through subscription-like continuous testing relationships, though public materials do not yet provide customer names, retention data, or revenue metrics that would confirm how repeatable the motion is at scale [SignalFisher, retrieved 2026].

Over the next 12 to 18 months, the central watch items are straightforward: whether SignalFisher can translate its category thesis into named enterprise wins, whether the rebrand and funding coincide with measurable international go-to-market progress, and whether it can prove that continuous testing is purchased as a recurring control layer rather than an upgraded form of periodic pentesting [SignalFisher, October 2026] [SignalFisher, retrieved 2026]. The company has an intelligible market argument and a founder-market fit story, but the public record remains thin on commercial proof points, so investor confidence should turn less on narrative quality than on evidence of durable adoption in regulated accounts.

Lightly corroborated -- This section relies primarily on company materials, with founder role corroboration from LinkedIn and background context from InnoPodcast.

Taxonomy Snapshot

Axis Value
Stage Series A
Business Model B2B
Industry / Vertical Security
Technology Type AI / Machine Learning
Geography Global / Remote-First
Growth Profile Venture Scale
Founding Team Co-Founders (3+)
Funding Total disclosed approximately $13.4 million

How the Company Got Here

PUBLIC

SignalFisher enters the record first as a Swiss cybersecurity company founded in 2020, then more clearly as a business trying to recast security testing from periodic projects into an ongoing program [SignalFisher, October 2026]. Public company materials say the business is headquartered in Switzerland and previously operated under the name Bug Bounty Switzerland before adopting the SignalFisher brand in October 2026 [SignalFisher, October 2026].

The chronology that can be supported from company sources is narrow but useful. The company states it was founded in 2020 and, by October 2026, announced both a rebrand to SignalFisher and a CHF 12 million Series A tied to international expansion plans [SignalFisher, October 2026]. That sequence matters because it suggests the current positioning is not a day-one identity but the product of an earlier operating phase under the Bug Bounty Switzerland name, with the present brand arriving alongside institutional financing and a broader go-to-market ambition [SignalFisher, October 2026].

Public materials also identify the founding group as Sandro Nafzger, Florian Badertscher, and Lukas Heppler [SignalFisher, October 2026]. The legal entity name is not established in the cited company material used here, so the cleaner reading is that investors should treat the branding transition and the financing announcement as the two confirmed public milestones, while holding finer points on corporate structure for diligence [SignalFisher, October 2026].

Company-stated, unverified -- This section relies primarily on company-originated materials from SignalFisher, with no independent public corroboration used here.

Product and Technology

Sources and analysis

SignalFisher is clearest, on the public record, about the problem it wants to replace: periodic penetration tests that capture a point-in-time view while an enterprise attack surface changes continuously [SignalFisher, October 2026]. Its current product language centers on an "AI-driven Cyber Resilience Shield" and a "continuously learning" security testing program intended to give regulated enterprises an always-on view of cyber resilience rather than a yearly snapshot [SignalFisher, October 2026]. The company also states that the platform supports continuous, scalable security assessments across an organization's exposed external attack surface and is relevant to buyers facing stricter cybersecurity compliance demands [SignalFisher, October 2026].

The underlying delivery model appears to combine software with human security testing rather than a pure automation tool. Public descriptions repeatedly reference ethical hacking and continuous security testing that adapts to changing circumstances, and the rebrand materials say the product can cover the external attack surface across different asset types and testing strategies [SignalFisher, October 2026]. That positioning is credible for regulated enterprises because it speaks to two budgets at once, ongoing assurance and audit readiness, but the public evidence stops short of a verified product demo, named integrations, or a disclosed technical stack. The one surfaced opening, a software engineer role, suggests an in-house product build rather than a purely services-led model, but any stack-level read would be speculative without the job description text [Ashby, retrieved 2026].

Company-stated, unverified -- This section relies primarily on company materials, with limited corroboration from a job posting and no independent verified demo or third-party technical documentation.

Where the Demand Sits

PUBLIC

This market matters now because the cost of periodic security testing is rising just as regulated enterprises face more frequent release cycles, broader external attack surfaces, and tighter expectations around evidencing resilience, but the public record for SignalFisher's addressable market remains thin [SignalFisher, October 2026] [SignalFisher, retrieved 2026].

The company positions itself around continuous security testing for regulated enterprises rather than one-off penetration testing, with stated focus on banking, finance, insurance, government, healthcare, utilities, and critical infrastructure [SignalFisher, October 2026]. That framing points to a practical market boundary: SignalFisher is not selling generic endpoint security or a broad security operations suite, it is aiming at the budget lines tied to external attack-surface assessment, ethical hacking, penetration testing, and compliance-oriented security validation [SignalFisher, October 2026] [Wirtschaftsraum Bern, retrieved 2026]. No named third-party TAM, SAM, or SOM study was captured in the source set, so any numerical sizing claim here would be speculative and is omitted.

Demand drivers are easier to establish than market size. SignalFisher's own materials argue that annual penetration tests produce a point-in-time view while enterprise attack surfaces change with each release, service, and interface change [SignalFisher, retrieved 2026]. That thesis also appears in a public presentation involving Helvetia Baloise's CISO, which gives some external context for the problem statement, even if it does not verify commercial scale [A Photo From Yesterday Versus a Livestream: With Helvetia Baloise at Insurers’ Day, retrieved 2026]. For buyers in regulated sectors, the underlying appeal is straightforward: continuous testing can serve both risk discovery and the evidentiary burden that comes with supervisory scrutiny, provided the program is repeatable and auditable [SignalFisher, October 2026].

Adjacent markets matter because buyers may compare this budget request against several substitutes rather than a single category. The nearest substitutes are traditional penetration testing firms, bug bounty programs, external attack surface management tools, breach-and-attack simulation products, and broader exposure management platforms [SignalFisher, October 2026] [Wirtschaftsraum Bern, retrieved 2026]. SignalFisher's earlier identity as Bug Bounty Switzerland suggests the company is trying to bridge services-led ethical hacking and software-led continuous assessment, which is commercially relevant because many enterprise security teams still buy these capabilities from different vendors and under different procurement motions [SignalFisher, October 2026].

Regulation is the clearest macro tailwind visible in the public materials, although the sources stay general rather than naming statutes or control frameworks. SignalFisher repeatedly ties its product to the needs of regulated organizations and to helping enterprises understand current cyber risk in a changing environment [SignalFisher, October 2026] [SignalFisher, retrieved 2026]. That does not prove a compliance budget windfall, but it does place the company in a part of cybersecurity spending that tends to hold up better when boards and regulators ask for evidence of current control effectiveness rather than historical attestations.

Market lens Public evidence Read-through
Core category Continuous security testing for regulated enterprises [SignalFisher, October 2026] Narrower than general cybersecurity, closer to testing and validation budgets
Buyer profile CISOs and security leaders in banking, finance, insurance, government, healthcare, utilities, and critical infrastructure [SignalFisher, October 2026] Enterprise and regulated-sector sales motion is likely
Primary substitute Periodic penetration testing [A Photo From Yesterday Versus a Livestream: With Helvetia Baloise at Insurers’ Day, retrieved 2026] The company is selling frequency and continuity, not just a new tool
Adjacent categories Bug bounty, ethical hacking, attack surface assessment, compliance-oriented validation [Wirtschaftsraum Bern, retrieved 2026] [SignalFisher, October 2026] Competitive set likely spans services and software vendors

The table shows a market defined more by workflow change than by a clean Gartner-style box. That can be attractive if buyers already feel the pain of snapshot testing, but it also means category education may remain part of the sales burden until continuous security testing is a line item buyers recognize on its own.

Company-stated, unverified -- This section relies primarily on company-originated materials, with limited external context from public talks and interviews; no independent third-party market sizing report was captured in the provided sources.

Competitive Landscape

Competitive Map

MIXED SignalFisher is positioning itself between point-in-time penetration testing and broader bug bounty style external testing, with the company arguing that regulated enterprises need continuous evidence of resilience rather than episodic assessments [SignalFisher, October 2026].

Company Positioning Stage / Funding Notable Differentiator Source
SignalFisher Continuous, AI-driven security testing for regulated enterprises Series A, CHF 12 million announced in October 2026 Rebranded from Bug Bounty Switzerland and centers its pitch on a "Cyber Resilience Shield" for continuous testing [SignalFisher, October 2026]
GlitchSecure Competitor named in structured research Presence in the same comparison set, but public evidence was not provided in the sourced materials used here [Structured Facts]
Yogosha Competitor named in structured research Presence in the same comparison set, but public evidence was not provided in the sourced materials used here [Structured Facts]
YesWeHack Competitor named in structured research Presence in the same comparison set, but public evidence was not provided in the sourced materials used here [Structured Facts]
Parabellyx Cybersecurity Competitor named in structured research Presence in the same comparison set, but public evidence was not provided in the sourced materials used here [Structured Facts]

The clearest market split is by delivery model. On one side sit periodic pentest vendors and consultancy-led security assessments, which SignalFisher explicitly argues are snapshot-based and insufficient for fast-changing external attack surfaces [A Photo From Yesterday Versus a Livestream: With Helvetia Baloise at Insurers’ Day]. On another sit bug bounty and ethical hacking platforms, which are closer to SignalFisher's roots as Bug Bounty Switzerland and likely overlap most directly with how buyers think about external validation of security posture [SignalFisher, October 2026]. Adjacent substitutes include in-house security teams and fragmented security assessment tools, which the company says its platform can replace or consolidate, though that remains a company claim rather than independent market validation [SignalFisher, October 2026].

SignalFisher's edge, to the extent public evidence supports one, appears to rest on category translation rather than pure technical novelty. The founders have backgrounds tied to bug bounty operations and enterprise security practice, with CEO Sandro Nafzger previously leading the Bug Bounty Program at Swiss Post and later speaking publicly about continuous testing for insurers and at regional cyber events [InnoPodcast, retrieved 2026] [A Photo From Yesterday Versus a Livestream: With Helvetia Baloise at Insurers’ Day] [LinkedIn, retrieved 2026]. That gives the company some credibility with regulated buyers in Switzerland and nearby European markets, especially where compliance language and security testing evidence matter. The durability of that edge is less certain. If the differentiation is mainly messaging, from annual pentest to continuous resilience testing, larger platforms and established bug bounty providers can likely make the same move.

The main exposure is that SignalFisher does not appear, from the public record available here, to own a widely visible customer network, a proprietary community at scale, or a documented partner channel [SignalFisher, October 2026]. SignalFisher is also exposed if large regulated enterprises decide that continuous testing should sit inside broader vulnerability management or managed security stacks rather than in a distinct category.

The most plausible 18-month scenario is a sorting of the market by buyer type rather than a single winner across segments. SignalFisher is best placed if regulated European enterprises increasingly procure continuous testing as a compliance and resilience layer, especially where a local founder network and sector-specific credibility can shorten trust-building cycles [SignalFisher, October 2026] [A Photo From Yesterday Versus a Livestream: With Helvetia Baloise at Insurers’ Day]. In that case, SignalFisher is a winner if buyers want a specialized, always-on testing program rather than a broad crowdsecurity marketplace.

Single unverified source -- Core positioning is supported by company materials and founder background sources, but competitor-specific comparisons rely mainly on named entities in structured research with limited independent public corroboration.

Opportunity

Upside Case

PUBLIC The prize here is straightforward: if SignalFisher can turn continuous security testing from a specialist service into a recurring control layer for regulated enterprises, it could occupy a budget line that annual penetration testing and fragmented exposure assessments do not hold today [SignalFisher, October 2026] [SignalFisher, retrieved 2026].

The headline opportunity is to become a default external security testing platform for regulated organizations that need evidence of resilience, not just periodic reports [SignalFisher, October 2026] [SignalFisher, retrieved 2026]. That outcome is reachable, not merely aspirational, because the company is already framing the product around a persistent operational problem: attack surfaces change continuously, while traditional pentests capture only a point in time [A Photo From Yesterday Versus a Livestream: With Helvetia Baloise at Insurers’ Day, retrieved 2026]. The rebrand from Bug Bounty Switzerland to SignalFisher, alongside a reported CHF 12 million Series A for international expansion, also suggests management is trying to move the business from a local services identity toward a broader software-led platform narrative [SignalFisher, October 2026].

The upside paths are still conditional, but they are legible from the public record.

Scenario What happens Catalyst Why it's plausible
Regulated-enterprise standard SignalFisher becomes a recurring security testing layer for insurers, banks, healthcare groups, and other regulated buyers that need continuous evidence rather than annual audits Tighter cyber oversight and buyer preference for continuous testing programs over snapshot pentests The company explicitly targets regulated sectors and positions its offering around ongoing cyber risk visibility and compliance support [SignalFisher, October 2026] [SignalFisher, retrieved 2026]
Swiss wedge, international rollout SignalFisher uses credibility in Switzerland to win larger cross-border programs in Europe and the Gulf The October 2026 Series A funds international expansion, while founder visibility at GISEC and other industry forums supports top-of-funnel enterprise access [SignalFisher, October 2026] [LinkedIn, retrieved 2026] Public signals show both expansion intent and market-facing founder activity, including conference appearances and awards tied to cybersecurity circles [LinkedIn, retrieved 2026]
Service-to-platform transition The company converts expert-led testing into a scalable subscription model with increasing software content and repeatability Successful packaging of the Cyber Resilience Shield as the operating layer above ethical hacking workflows Public materials describe a scalable, continuous assessment platform, and founder commentary on LinkedIn describes a shift toward a subscription-based "service-as-software" model [SignalFisher, October 2026] [LinkedIn, retrieved 2026]

What compounding looks like is a mix of data, workflow, and trust. If SignalFisher runs continuous programs across many regulated environments, it should accumulate a growing library of testing patterns, attack-surface changes, remediation workflows, and buyer expectations that can improve triage and program design over time. The company is already describing the platform as continuously learning and capable of assessing the exposed attack surface on an ongoing basis, which is the basic architecture needed for a data flywheel, even if public evidence does not yet quantify its output [SignalFisher, October 2026] [SignalFisher, retrieved 2026]. In enterprise security, that kind of compounding can matter more than a raw model claim, because once the product becomes part of how a CISO demonstrates resilience to internal stakeholders, replacement gets harder.

The size of the win is difficult to pin down from the current source set, because there is no cited third-party market sizing or public comparable valuation in the record. Even so, the shape of the upside is visible: if SignalFisher were to establish itself as a control point for continuous security testing across regulated enterprises, it would be competing for budget that sits closer to ongoing security operations than to one-off consulting engagements [SignalFisher, October 2026]. That would support a meaningfully larger outcome than a regional testing shop. A credible way to frame it is qualitative rather than numeric: a successful service-to-platform transition, combined with international expansion after the Series A, could create an asset with strategic value to larger cybersecurity platforms or private buyers focused on compliance-heavy enterprise security, but that is a scenario, not a forecast [SignalFisher, October 2026] [SignalFisher, retrieved 2026].

Lightly corroborated -- This section relies primarily on company-originated materials, supported in part by founder and employee LinkedIn profiles and an event-related public article. Public evidence is sufficient to outline plausible upside paths, but not to verify customer traction, market share, or external benchmark valuations.

Sources

Public sources

  1. [SignalFisher, October 2026] SignalFisher Raises CHF 12 Million to Scale Intelligent Security Testing Internationally | https://app.signalfisher.com/

  2. [LinkedIn, retrieved 2026] Sandro Nafzger - Bug Bounty Switzerland | LinkedIn | https://www.linkedin.com/in/sandronafzger/

  3. [SignalFisher, retrieved 2026] SignalFisher | https://app.signalfisher.com/

  4. [InnoPodcast, retrieved 2026] #18 Wenn Hacker plötzlich geliebt werden - mit Sandro Nafzger, Leiter des Bug Bounty Programms der Schweizerischen Post - InnoPodcast | https://innopodcast.podigee.io/19-bugbountyprogramm

  5. [Ashby, retrieved 2026] Software Engineer @ SignalFisher | https://jobs.ashbyhq.com/bug-bounty-switzerland/c712a9c3-d5cf-492b-ba1f-870bacc61aa3?embed=js

  6. [Wirtschaftsraum Bern, retrieved 2026] «Ich kenne keine bessere Möglichkeit, als IT-Systeme von richtigen Hackern testen zu lassen» - Wirtschaftsraum Bern | https://www.wirtschaftsraum.bern.ch/de/wir-informieren/blog/video-podcast-sandro-nafzger/

  7. [A Photo From Yesterday Versus a Livestream: With Helvetia Baloise at Insurers’ Day, retrieved 2026] A Photo From Yesterday Versus a Livestream: With Helvetia Baloise at Insurers’ Day | https://app.signalfisher.com/

Articles about SignalFisher

View on Startuply.vc