Who We Are
Himaya was founded by security and AI engineers who spent years running SOCs, triaging phishing alerts, and watching legacy tools fail at the job they were built for. So we built a fleet of autonomous agents instead — three reasoning brains and two dozen specialist workers, led by the Falcon Agent — that investigate, quarantine, and harden your workspace without waiting on a human to click through a queue. We’ve run this fleet across semiconductor firms, financial institutions, and high-growth startups on four continents, because we got tired of tools that generate alerts instead of outcomes.
THE FOUNDERS
Built by the people who lived the problem
Three engineers who spent years inside SOCs and AI labs, tired of watching legacy tools lose to modern threats.

Mohammad Asim Sarfraz
Chief Executive Officer

Adnan Ahmed
Chief Technology Officer

Faraz Hussain
Chief AI Officer
Our Mission
Help organizations globally eliminate threats across email, cloud workspaces, and sensitive data with autonomous AI that detects, decides, and acts in under a second, aligned to regional compliance requirements and real-world operational constraints.
Our Vision
A world where no organization, regardless of size or security headcount, loses money, data, or trust to a preventable attack on their workspace.
What We Do
Meet the Himaya agents
Content Intelligence
Reads the email body, headers, links, and attachments. Detects phishing, BEC, invoice fraud, urgency manipulation, and malicious payloads in Arabic and English.
Sender Reputation Graph
Builds a trust profile of every sender your org has interacted with. Flags new domains, breached senders, spoofed identities, and abnormal patterns in real time.
Risk Orchestrator
Combines both signals with your company's policies and makes the call: Allow, Flag, Quarantine, or Block, with a confidence score and plain-language explanation.
Auto-Quarantine & Triage
Threats are removed from inboxes before users see them. Admins get a single alert with risk score, threat type, and AI reasoning. Release, delete, or report false positive in one click.
Phish Report
Users report suspicious emails directly from Outlook or Gmail. Himaya analyzes the report in real time, confirms or clears the threat, and responds to the user automatically. No SOC ticket needed.
Attachment Sandboxing
Suspicious files can be detonated in an isolated environment. Catch zero-day payloads, macro-laced Office docs, and password-protected archives that bypass native M365/Google filters.
What We Stand For
Continuous Security Visibility
The workspace is the number one attack surface across every sector. Himaya protects organizations where a single compromised inbox, cloud app, or data leak can trigger wire fraud, regulatory action, or operational shutdown.
Financial Services
Energy & Oil/Gas
Government
Healthcare
Aviation
Insurance
Telecom
Semiconductor
Network Providers
Startups
SMBs

