ColorTokens offers Xshield, a Zero Trust microsegmentation platform that helps stop ransomware lateral movement. See features, pricing and FAQs for 2026.
Category
Security
Pricing
Custom, quote-based enterprise pricing, generally licensed by protected workload, endpoint or environment; there is no published self-serve price list, from Not publicly disclosed - contact sales for a quote
Verified
Not yet
Last updated
July 19, 2026
Founded
2015
Headquarters
Santa Clara, California, United States
What ColorTokens Does
ColorTokens provides a cloud-delivered Zero Trust microsegmentation platform. Its core function is to wrap individual applications, workloads, devices and network segments in identity-based micro-perimeters so that a compromise in one part of the network cannot easily spread to others.
The flagship product, Xshield, is aimed squarely at reducing ransomware and malware lateral movement, a common way single-endpoint compromises escalate into organization-wide incidents.
Platform and Deployment Approach
The Xtended ZeroTrust Platform is delivered as a SaaS-managed, software-defined system rather than requiring new network hardware, and it supports both agent-based and agentless deployment so it can protect legacy systems and OT/ICS devices alongside modern cloud workloads.
An AI/ML-based policy recommendation engine analyzes observed application traffic and dependencies to help teams generate segmentation rules faster than manual policy authoring.
Who ColorTokens Serves
ColorTokens targets mid-market and enterprise organizations, with particular relevance to healthcare, manufacturing, finance and other regulated or OT-heavy industries that need to secure a mix of modern and legacy assets.
For organizations without dedicated in-house segmentation expertise, the company also offers Xassure, a managed Zero Trust as a Service option that outsources ongoing policy management to ColorTokens.
Key Features
Xshield microsegmentation engine — Creates identity-based micro-perimeters around individual applications, workloads and devices to contain lateral movement.
AI/ML policy recommendation engine — Analyzes observed traffic and application dependencies to automatically propose segmentation policies.
Zero Trust Network Access (ZTNA) — Secures remote and third-party access to internal applications and systems.
Integrated endpoint protection — Endpoint protection capabilities are managed from the same console as network segmentation.
Vulnerability and threat assessment — Built-in assessment tools surface security gaps and exposure before they can be exploited.
Hybrid and legacy environment support — Agent-based and agentless deployment options cover cloud, on-premises data centers, and OT/ICS legacy systems.
Xassure managed service — A Zero Trust as a Service offering for organizations without in-house segmentation expertise.
Visibility and dependency mapping dashboard — A centralized dashboard maps application dependencies and traffic flows across the protected environment.
Pros & Cons
Pros
Agent and agentless deployment options support legacy and OT systems that cannot run traditional security agents
Managed service option (Xassure) lowers the barrier for teams without dedicated segmentation staff
Purpose-built for ransomware lateral-movement containment, a specific and well-understood attack pattern
Works across hybrid and multi-cloud environments without requiring network hardware changes
AI-assisted policy recommendations reduce manual effort in writing segmentation rules
Positioned as a focused specialist vendor rather than segmentation being a minor feature of a broader platform
Cons
Pricing is not public, making it harder to budget or compare against competitors upfront
Smaller company size than larger network security vendors may mean a narrower partner and integration ecosystem
Initial policy discovery and tuning for complex environments can take significant time
Primarily an enterprise-focused tool, less accessible for very small businesses
Requires ongoing policy maintenance as applications and infrastructure change over time
Limited independent, recent third-party benchmark data is publicly available
Frequently Asked Questions
What does ColorTokens do?
ColorTokens provides a Zero Trust microsegmentation cybersecurity platform that isolates applications, workloads and devices to stop attackers or malware from moving laterally across a network.
What is microsegmentation?
Microsegmentation is a security approach that divides a network into small, isolated zones or micro-perimeters so that a breach in one area cannot easily spread to others.
What is Xshield?
Xshield is ColorTokens' flagship microsegmentation product, used to contain ransomware and malware lateral movement across hybrid environments.
Does ColorTokens require replacing existing network hardware?
No. The platform is delivered as a cloud-based, software-defined overlay that enforces policy on top of existing network infrastructure.
How does ColorTokens stop ransomware?
By enforcing identity-based micro-perimeters around assets, ColorTokens limits an attacker's ability to move from a single compromised device to the rest of the network.
What is Xassure?
Xassure is ColorTokens' managed Zero Trust as a Service offering, aimed at organizations that want microsegmentation outcomes without building an in-house team to manage policies.
Who are ColorTokens' typical customers?
Mid-market and enterprise organizations in healthcare, manufacturing, finance and other regulated or OT-heavy industries.