Cybersecurity
Cybersecurity covers software, hardware and services that protect networks, endpoints, identities and cloud infrastructure from cyberattacks. Capital flows to this theme because breach frequency and regulatory demands rise while companies move more workloads and users to cloud and remote environments that require new security controls.
Cybersecurity ETFs and the top holdings those funds report.
10 of 17 stocks are in a Stage 2 uptrend.
Stocks in this theme
| Ticker | Price | 1M | 3M | 1Y | Stage | Trend | vs 52w high |
|---|---|---|---|---|---|---|---|
| OKTAOkta, Inc. | $209.11 | +20.8% | +48.9% | +122.8% | Stage 2 (extended) | 7/7 | 0% |
| RBRKRubrik, Inc. | $114.47 | +23.0% | +39.6% | +37.4% | Stage 2 (extended) | 7/7 | -0.95% |
| CRWDCrowdStrike Holdings, Inc. | $264.75 | +14.6% | +37.0% | +116.8% | Stage 2 (extended) | 7/7 | 0% |
| ZSZscaler, Inc. | $199.42 | +5.9% | +36.2% | -32.8% | Stage 3 | 4/7 | -40.7% |
| SSentinelOne, Inc. | $23.76 | +7.5% | +35.1% | +30.9% | Stage 1 | 7/7 | -1.41% |
| SAILSailPoint, Inc. | $20.36 | -1.0% | +33.0% | -8.7% | Stage 1 | 6/7 | -13.84% |
| QLYSQualys, Inc. | $187.2 | +0.6% | +30.5% | +37.1% | Stage 2 (extended) | 7/7 | -4.43% |
| VRNSVaronis Systems Inc | $47.45 | +8.4% | +13.3% | -20.0% | Stage 2 (extended) | 6/7 | -25.05% |
| PANWPalo Alto Networks Inc | $397.31 | +4.0% | +12.9% | +94.8% | Stage 2 (extended) | 7/7 | 0% |
| FTNTFortinet, Inc. | $178.76 | +4.6% | +12.4% | +111.2% | Stage 2 (extended) | 7/7 | 0% |
| FFIVF5, Inc. | $445.18 | +9.3% | +5.0% | +38.0% | Stage 2 (continuation) | 7/7 | -2.37% |
| CVLTCommvault Systems Inc | $149.92 | +9.0% | +2.0% | -22.3% | Stage 2 (continuation) | 7/7 | -20.58% |
| TENBTenable Holdings, Inc. | $36.39 | -4.6% | -4.0% | +21.9% | Stage 1 | 7/7 | -14.68% |
| CHKPCheck Point Software Technologies Ltd | $128.35 | -7.6% | -4.4% | -37.6% | Stage 4 | 0/7 | -37.97% |
| GENGen Digital Inc. | $22.02 | -29.0% | -15.7% | -23.5% | Stage 1 | 2/7 | -29.89% |
| CLBTCellebrite DI Ltd. | $11.26 | -6.2% | -27.1% | -39.6% | Stage 4 | 0/7 | -42.43% |
| BBBLACKBERRY Ltd | $9.04 | +10.9% | -29.4% | +105.5% | Stage 2 (continuation) | 6/7 | -29.43% |
Deep dive
The cybersecurity theme includes tools for prevention, detection and response across corporate IT, operational technology and cloud environments. Offerings range from network firewalls and secure access gateways to endpoint detection, identity and access management, vulnerability scanning and managed detection services. The set of technologies aims to reduce the probability and impact of successful intrusions and data loss.
Demand grows from concrete drivers. Cyberattacks like ransomware and supply-chain intrusions raise potential financial and reputational costs for organizations. Regulatory and compliance requirements push firms to prove controls and incident response capabilities. At the same time, cloud migration and hybrid work change where sensitive data and users live, creating new attack surfaces that require different security approaches such as identity-centric controls and cloud-native inspection.
The value chain splits into clear layers and specializations. Network and perimeter security comes from companies that make next-generation firewalls and integrated security platforms; Palo Alto Networks and Fortinet fall in this group. Endpoint protection and real-time detection come from cloud-native endpoint vendors; CrowdStrike and SentinelOne focus on endpoint detection and response and automated remediation. Identity and access management comes from providers that handle single sign-on, multi-factor authentication and access policies; Okta focuses on those functions. Cloud access and secure web gateway capabilities come from providers that route and inspect cloud traffic; Zscaler focuses on cloud-first access. Vulnerability assessment and continuous scanning come from firms that catalog and score exposed assets; Qualys and Tenable focus on vulnerability management and asset discovery. Many customers combine multiple layers and use managed services or orchestration to reduce staffing needs.
Whether the theme keeps drawing capital depends on a few variables. Attackers adapt and can blunt defensive advantages, so security tooling must lower false positives and speed detection and remediation to stay valuable. Continued migration to cloud and SaaS favors vendors built for cloud-native deployment, while organizations that keep on-premises infrastructure favor appliance-oriented vendors. Pricing pressure, consolidation among vendors and shortages of skilled security staff can limit adoption, while stronger regulation and shifts in cyber insurance policy can increase budget availability. Technology improvements such as automation and better telemetry help determine which vendors keep performance and market share.