Skip to content
Seraph CTI · Platform

Your staff see the phish first. Make that your advantage.

Every suspicious email your people report becomes regional threat intelligence — and every simulation and training assignment is shaped by it. Seraph CTI closes the loop between the attack and the awareness programme, at Kenyan granularity.

Essentials · $2.50 per seat / month · self-serve available

How it works

One loop, four moves

The platform is a closed circuit: report, analyse, simulate, train — each pass raises your resilience score.

01

Report

A Report button in Outlook and Gmail. One click sends the full message to an analyst Threat Inbox, attributed to the organisation that caught it.

02

Analyse

Reports meet the catalogue: known-exploited flags, profiled threat actors, and breach-exposure monitoring of your domains.

03

Simulate

Campaigns modelled on what is actually circulating here this quarter — safe, measured, department by department.

04

Train

The people who clicked get the course that closes their specific gap. Completion tracked, repeat-clickers surfaced.

Why Seraph CTI

Global vendors see Kenya as a region. We see it as the dataset.

Local granularity, by design

Client phishing reports from East African organisations are intelligence no global feed replicates — the lures, brands and infrastructure targeting this market specifically.

Simulations informed by real campaigns

Templates derive from what is actually landing in Kenyan inboxes this quarter, not a global library’s greatest hits.

Evidence for your board

Resilience rate, repeat-clicker tracking and time-to-report trends — numbers a CISO can put in front of an audit committee.

Proof, not promises

Numbers a CISO can take to the board

Resilience rate, click-rate trend, repeat-clicker cohorts and time-to-report — measured continuously and exportable for audit. Awareness stops being a compliance checkbox and becomes a security control with a graph behind it.

Built to pass your security review
  • Per-tenant SAML SSO and enforced MFA
  • Hard tenant isolation, enforced at query time
  • Hash-chained audit log, exportable by your admins
  • Terms, privacy notice and a real DPA in the footer

No compliance badge appears on this site until one has been earned. The Trust page describes how the system actually behaves instead.

Start anywhere

Watch one phish become intelligence

Thirty minutes with your team: the lures currently landing in your sector, and the intelligence view your organisation would see on day one.