About Us

Built From Experience, Driven by Purpose

ORQET was born inside a Fortune 250 security operation that was facing approximately 15,000 employee-reported emails each month and active nation-state threats. When a security team of fewer than 10 was tasked with analyzing and answering every reported email, they built a better way to do it at scale.
 
That solution launched in 2020 as PhishQueue and became ORQET today.

Modern Email Security Does Not End With Prevention Or Detection

When suspicious emails reach the inbox, organizations still need a way to determine whether they are safe or malicious, remediate confirmed threats, understand who else may be affected, and capture threat intelligence from the attack.

That is the problem ORQET was built to solve.

ORQET combines human-derived verdicts, automated remediation, visibility, tactical and technical threat intelligence, repeatable analysis, and continuous improvement in a Post-Delivery Email Threat Response platform.

Built by Practitioners, Shaped by Experience

Before ORQET existed, the people who built it ran the security operations center for a Fortune 250 engineering company with approximately 95,000 employees. The organization faced high phishing volume and active nation-state activity, while employees forwarded approximately 15,000 suspicious emails each month to a shared mailbox. With only a small security team handling the volume, the team could not manually investigate every reported email, determine what was dangerous, identify every affected user, and respond fast enough.

That challenge became urgent after a phishing attack impersonating a competitor’s acquisition offer. The team analyzed the message, extracted indicators, traced who across the environment had interacted with it, and contained the exposure before it spread. The campaign was later investigated by federal law enforcement, and other organizations targeted by the same attack incurred remediation costs in the seven figures. This organization did not.

Leadership’s direction after the incident was simple: every email an employee reports has to be analyzed and answered. At approximately 15,000 reported emails each month, neither the existing team nor the commercial products available at the time could meet that requirement.

So the team built one.

Bayside Solutions, Inc. backed the effort as its own customers were facing the same challenge and needed a better way to manage what happens after suspicious emails reach the inbox. The solution launched in 2020 as PhishQueue.

At its center is Cyrebrium, ORQET’s AI-assisted matching and automation engine, built to accelerate analysis, correlation, and pattern recognition while keeping human judgment behind every verdict.

Today, PhishQueue has evolved into ORQET. The platform has remained in production since 2020, combining automation with human expertise to handle reporting volume at scale. Established human-derived verdicts can be applied automatically when previously analyzed emails appear again, reducing repeat analysis and speeding response.

Why We Built ORQET

Because Reporting a Suspicious Email Should Lead to an Answer

The original challenge was simple to understand but difficult to solve at scale. Employees were doing what security teams asked them to do: reporting suspicious emails. The more they reported, the more work the security team had to investigate.

ORQET was built so increasing reporting volume does not require analysts to repeatedly perform the same work. A defined analyst workflow supports consistent analysis, while Cyrebrium can recognize previously analyzed emails and automatically apply established human-derived verdicts.

When an email is confirmed malicious, ORQET can move beyond the verdict to Search and Purge remediation and tactical and technical threat intelligence.

The technology has evolved. The reason it exists has not: help organizations determine what users report and respond when a threat is confirmed.

Our Philosophy

Technology Evolves. Principles Endure

The way threats reach the inbox will keep changing. The way we reach a verdict will not. Every investigation still runs on process, experience, judgment, and execution, and a person is still accountable for the call.
Those principles came from years of running security operations by hand, and they still govern how every investigation is performed, measured, and improved.

Our Mission

Our mission is to own what happens after a suspicious email reaches the inbox: to validate whether it is malicious, remove confirmed threats from every mailbox they reached, and capture the indicators that strengthen the next investigation. Every verdict is human-validated. AI-assisted analysis and structured automation carry the volume.

Our Philosophy:

Technology Evolves, Principles Endure

Threats and technology will continue to evolve, and so will attacker tactics. Effective Post-Delivery Email Threat Response requires accurate analysis, experienced judgment, and analysts who continuously evolve with the changing threat landscape. Those principles come from years of hands-on security operations and continue to guide ORQET today. Technology helps manage volume and accelerate the process, while human expertise keeps pace with evolving threats and remains behind every verdict.

Our Mission

ORQET is Post-Delivery Email Threat Response. Our mission is to help organizations determine whether reported emails are safe or malicious, automatically remediate confirmed threats, and turn attacks into tactical and technical threat intelligence. By combining AI-assisted technology, automation, a defined analyst workflow, and human expertise, ORQET helps organizations respond faster while maintaining consistency as reporting volume grows.

Our Philosophy:

Technology Evolves, Principles Endure

The way threats reach the inbox will keep changing. The standard we hold a verdict to will not.
Every investigation runs on process, experience, judgment, and execution, and an ORQET analyst is accountable for every call, with the reasoning on the record.
Those principles came from years of running security operations by hand, and they still govern how every investigation is performed, measured, and improved.

Our Mission

ORQET owns what happens after a suspicious email reaches the inbox: determine whether it is malicious, remove confirmed threats from every mailbox reached, and capture the indicators that strengthen the next investigation.
Every verdict is human-validated. AI-assisted analysis and structured automation carry the volume. The result: faster response, more consistent remediation, greater visibility, and intelligence security teams can use to strengthen their defenses.

How We Work

Turning Principles Into Practice

ORQET applies the same principles that drove its creation: use technology where it can accelerate the work and human expertise where judgment matters.

  • A defined analyst workflow provides a consistent process for reviewing reported emails and reaching verdicts.

  • Confirmed attacks generate tactical and technical threat intelligence, including IOCs and investigative context.
  • Confirmed malicious emails can trigger automated Search and Purge to locate and remove matching emails from affected mailboxes.

  • Established human-derived verdicts can be applied automatically when previously analyzed emails appear again, reducing repeat analysis and speeding response.

  • ORQET threat intelligence feeds can be integrated with existing threat intelligence platforms to support broader threat hunting across the security environment.

Built on Trust

Trust Is Earned Through Execution

ORQET was built by practitioners who understand what it means to be responsible for the outcome of an investigation. That experience continues to shape how the platform operates and how customers are supported.

Defined processes, human-derived verdicts, visibility into post-delivery activity, and consistent execution give customers a clear view of how reported emails and confirmed threats are being handled.

Our security practices reinforce that commitment.

  • SOC 2 Type II
  • GDPR

Looking Forward

What Comes Next

The same challenge that led to ORQET continues to evolve. Attackers change their tactics, reporting volume grows, and security teams are expected to respond without adding people at the same rate.

ORQET will continue to evolve with that challenge by combining human expertise with technology that can accelerate analysis, automate remediation, capture threat intelligence, and reduce repetitive work.

The principle behind the platform remains the same: technology carries the volume while human judgment remains behind the verdict.

Our Vision

A future where employees can report suspicious emails and get clear answers, security teams can respond to confirmed threats at scale, and intelligence gained from those attacks can support broader security operations.

To establish Post-Delivery Email Threat Response as an essential part of modern email security and make clear verdicts, automated remediation, visibility, threat intelligence, repeatable analysis, and continuous improvement capabilities organizations can expect after delivery.