A practitioner-curated directory of security testing tools and services. No pay-to-play. No fake reviews. Just honest, vetted listings.
Founder & Curator
After years as a CTO in fintech — and before that at Meta — I got tired of the same problem every security leader faces: finding the right tools and services without wading through vendor marketing, pay-to-play review sites, and "contact us for pricing" pages.
InfoSecList.com exists because I built the directory I wished existed when I was evaluating security vendors for my own teams. Every listing is vetted by practitioners who've actually deployed these tools in production.
𝕏 @alekskudic →Security tool selection is broken. G2 and Gartner are pay-to-play. Vendor sites are marketing fluff. Reddit threads are outdated. CTOs waste weeks evaluating tools that don't fit.
A curated, practitioner-vetted directory with transparent scoring, real pricing, and honest comparisons — organized by what you're actually trying to accomplish.
Two axes that matter: Market Score (brand trust & track record) and Value Score (ROI & pricing accessibility). No single score hides the tradeoffs.
Sponsored placements are clearly labeled. Organic rankings are based on merit. We'll never move a listing up because someone paid us — and we'll always tell you when one is sponsored.