Key Takeaways
- Cydome and Rakuten Maritime have partnered to combine maritime‑specific cybersecurity technology with a comprehensive digital infrastructure platform.
- The collaboration aims to protect both IT and operational technology (OT) across the entire vessel lifecycle, from design to daily operations.
- Rising ship connectivity and evolving cyber threats—especially those amplified by generative AI—are expanding the attack surface for maritime assets.
- Context‑aware AI enables holistic threat analysis, learning third‑party device behavior and assessing impact on the whole vessel rather than isolated anomalies.
- Rakuten Maritime will deliver Cydome’s managed SOC services, providing continuous monitoring, rapid incident response, and reduced operational disruption.
- Automated risk scoring and a unified fleet‑wide risk dashboard simplify risk management and support regulatory compliance.
- The partnership offers shipowners adaptable, scalable cybersecurity solutions for both existing fleets and new‑build vessels.
Overview of the Partnership
Cydome, a specialist in maritime cybersecurity, and Rakuten Maritime, the maritime arm of Rakuten Symphony’s Internet Services Business Unit, have formalized a strategic alliance. The agreement merges Cydome’s purpose‑built security technologies with Rakuten Maritime’s robust digital infrastructure platform. By integrating these complementary capabilities, the partners intend to deliver a seamless, end‑to‑end security solution that addresses the growing complexity of modern, connected ships.
Integration of Cybersecurity Technology and Digital Infrastructure
At the core of the collaboration is the coupling of Cydome’s maritime‑focused cybersecurity stack—including threat detection, vulnerability management, and incident response tools—with Rakuten Maritime’s scalable cloud‑based infrastructure, data analytics, and IoT connectivity services. This integration enables ship operators to monitor and protect both information technology (IT) networks and operational technology (OT) systems—such as bridge navigation, engine control, and cargo handling—through a single, unified interface.
Escalating Maritime Threat Levels
The partnership emerges amid a sharp rise in cyber threats targeting the maritime sector. As vessels adopt satellite communications, autonomous navigation, and smart‑port interfaces, their digital footprints expand, enlarging the attack surface for malicious actors. Threat actors now employ sophisticated tactics, ranging from ransomware aimed at logistics software to attempts to manipulate OT systems for sabotage or espionage, necessitating a more proactive and layered defense posture.
Generative AI and Evolving Hacker Tactics
Nir Ayalon, CEO of Cydome, emphasized that generative artificial intelligence is reshaping how attackers discover and exploit vulnerabilities. AI‑driven tools can rapidly generate novel exploit code, mimic legitimate communications, and automate reconnaissance, making traditional signature‑based defenses increasingly inadequate. Ayalon warned that staying ahead requires security solutions that themselves leverage AI to anticipate and neutralize emerging threats.
Safeguarding Operational Technology Amid Growing Regulation
Ayalon further highlighted that protecting OT has become the paramount concern for maritime companies, especially as international bodies such as the IMO and regional regulators introduce stricter cybersecurity requirements. Complying with standards like IMO MSC.428(98) and the upcoming IEC 62443 frameworks demands continuous monitoring, risk assessment, and demonstrable resilience of OT environments—areas where the partnership seeks to provide concrete support.
Context‑Aware AI for Holistic Threat Analysis
According to Ayalon, Cydome’s platform employs context‑aware artificial intelligence that correlates data across multiple security layers—network traffic, device behavior, and operational logs—to understand the broader context of any event. Rather than flagging isolated anomalies, the AI evaluates how a potential incident could affect vessel safety, cargo integrity, or crew welfare, enabling more informed and timely decision‑making.
Learning Third‑Party Device Behavior for Adaptive Security
The initiative also focuses on modeling the normal behavior of third‑party devices commonly found onboard—such as vendor‑supplied sensors, maintenance tools, and personal crew equipment. By establishing baselines and detecting deviations, the system can adapt its defenses to new or evolving hardware without requiring manual reconfiguration, thereby extending protection to both legacy and newly installed systems.
Rakuten Maritime’s Perspective on Vessel‑Lifecycle Security
Ryan Son, President of Rakuten Symphony’s Internet Services Business Unit and Head of Rakuten Maritime, noted that the partnership is deliberately designed to close security gaps throughout the vessel lifecycle. From the initial design and shipbuilding phases, through commissioning, routine operations, and eventual decommissioning, the combined offering aims to embed security considerations at every stage, reducing the likelihood of vulnerabilities being introduced or overlooked.
Managed SOC Services Provided by Rakuten Maritime
As part of the agreement, Rakuten Maritime will make Cydome’s managed Security Operations Center (SOC) services available to its clients. A team of dedicated cybersecurity analysts will continuously monitor vessel networks, triage alerts, conduct forensic investigations, and coordinate response actions. This outsourced expertise helps shipowners achieve faster incident mitigation, limiting downtime and preserving operational continuity.
Automated Risk Scoring and Fleet‑Wide Risk Dashboard
The collaboration introduces automated risk scoring algorithms that evaluate the security posture of individual vessels and the fleet as a whole. Scores are aggregated into a unified dashboard that visualizes risk trends, highlights high‑risk assets, and tracks mitigation progress. This centralized view simplifies risk management for fleet operators and supports compliance reporting to classification societies, insurers, and regulatory bodies.
Benefits for Compliance and Operational Continuity
By delivering continuous monitoring, adaptive threat intelligence, and clear risk metrics, the partnership assists operators in meeting evolving cybersecurity regulations while minimizing the chance of costly disruptions. Enhanced situational awareness reduces the likelihood of successful attacks that could jeopardize navigation safety, cargo security, or environmental protection—outcomes that are critical to both commercial performance and reputational integrity.
Conclusion: Strategic Significance and Future Outlook
The Cydome‑Rakuten Maritime alliance represents a timely response to the maritime industry’s digital transformation. By marrying deep domain expertise in maritime cybersecurity with a scalable digital infrastructure platform, the partners aim to offer shipowners a resilient, adaptable security framework capable of protecting IT and OT environments across the full vessel lifecycle. As connectivity continues to grow and threat actors harness advanced AI capabilities, such integrated solutions will be essential for maintaining safe, efficient, and compliant maritime operations.

