Mikiri Security builds application security solutions for organizations that need protection without giving up control of their infrastructure.
We make Mikiri WAF, an enterprise on-premises platform for web applications and APIs. It is for teams that keep traffic and logs inside their own perimeter, and that expect to operate the protection themselves: see the decision, change the rule, keep the data.
Why we built Mikiri WAF
Organizations increasingly need advanced application security while keeping application traffic, security decisions, and operational control inside their own infrastructure. Mikiri WAF was built to address that need.
- Discover vulnerabilities
- Verify exploitation
- Mitigate with a virtual patch
- Confirm that the attack is blocked
Philosophy
A firewall in front of an application is only useful if it is accurate, fast, and still understandable to the people who run it. That requirement decides how Mikiri WAF is built.
On-premises by design
Application traffic is inspected inside the customer’s environment and remains under the customer’s control. Mikiri WAF performs inspection inside the customer’s environment, so application traffic does not need to be sent to a public cloud for protection.
Layered detection, one security decision
Signatures, behavioral analysis, API validation, and threat intelligence address different attack patterns. Mikiri WAF combines them in a single decision engine across both requests and responses.
The operator remains in charge
Rules, models, blocking, masking, and monitoring are available in the interface and over the API. Security teams can inspect the decision, adjust the policy, automate changes through the API, and keep operational control within their own environment.
The product
Mikiri WAF is a WAAP platform combining web application firewall, API security, bot protection, and application traffic analysis in a single inline engine. It supports modern application protocols, including gRPC, WebSocket, and HTTP/3.
Detection is layered. Signatures, machine learning, and behavioral analysis work with threat intelligence. Beyond detection, the platform can discover vulnerabilities and verify whether a recorded event was a real attack. It can then mitigate the vulnerability with a virtual patch and mask sensitive fields in recorded events. The aim is one system that stays with the application, rather than a set of separate tools joined by hand.
See how Mikiri WAF is deployed and operated → Why Mikiri WAF.
Built for security teams that need control
Mikiri WAF is designed for private, regulated, and infrastructure-sensitive environments where application security must operate alongside the application.
Company
Mikiri Security, LLC
Yerevan, Armenia
Email: info@mikiri.ai
Choose a plan · GitHub · Telegram · LinkedIn
See Mikiri WAF in your environment
Deploy Mikiri WAF in your environment and evaluate its application security capabilities.
