{"directory":"Security Startups","url":"https://securitystartups.com","lastUpdated":"2026-08-24","dataAsOf":"2026-08-23","count":148,"categoryCount":12,"categories":[{"slug":"application-security","name":"Application security","blurb":"Startups that find and fix weaknesses in application code: SAST, ASPM, authz and business-logic scanners, not the PR-comment bots."},{"slug":"cloud-security","name":"Cloud security","blurb":"CNAPP, CSPM, and workload startups that map cloud attack surface for companies that do not want another console from a network-security incumbent."},{"slug":"identity-access","name":"Identity and access","blurb":"Workforce, customer, and ITDR startups. Identity is the control plane; these companies treat it as the product."},{"slug":"detection-response","name":"Detection and response","blurb":"Independent XDR, MDR, and detection-engineering startups. Not the public mega-cap EDR floor."},{"slug":"data-security","name":"Data security","blurb":"DSPM, data detection, and data-access startups that tell you where sensitive data actually lives."},{"slug":"ai-security","name":"AI security","blurb":"Startups securing models, agents, and LLM applications: red teaming, runtime guards, and agent identity."},{"slug":"email-collaboration","name":"Email and collaboration","blurb":"Email security, browser isolation, and collaboration-security startups built after the last generation of secure email gateways."},{"slug":"supply-chain","name":"Software supply chain","blurb":"SCA, SBOM, package, and pipeline-security startups that treat dependencies as the product surface."},{"slug":"api-runtime","name":"API and runtime","blurb":"API security, runtime application protection, and service-mesh startups watching production, not just pull requests."},{"slug":"offensive-exposure","name":"Offensive and exposure","blurb":"CTEM, attack-surface, pentest-platform, and continuous-exposure startups. Not a services firm with a PDF report."},{"slug":"secrets-identity","name":"Secrets and non-human identity","blurb":"Secrets, certificates, machine identity, and NHI startups. The credentials humans did not mean to ship."},{"slug":"endpoint-browser","name":"Endpoint and browser","blurb":"Independent endpoint, browser-security, and device startups. Not CrowdStrike-class public mega-caps."}],"startups":[{"id":"42crunch","name":"42Crunch","slug":"42crunch","logo":"","brief_summary":"OpenAPI-first API security that audits the contract, tests it, then wraps a micro-firewall around the live endpoint.","description":"42Crunch starts from the OpenAPI spec: static audit, conformance testing, then a protection proxy generated from that same contract. Runtime therefore enforces what the designer promised, not a generic WAF rule set. Platform releases in 2026 added OAS 3.1 support on the protection path, which is the unglamorous work that keeps contract-based security from rotting as specs move.","category":"api-runtime","tags":["Ireland"],"hq":"Dublin, Ireland","country":"Ireland","founded":"2016","funding_stage":"","total_funding":"","investors":[],"url":"https://42crunch.com","linkedin":"https://www.linkedin.com/company/42crunch","signal":"Released OAS 3.1 support for API Protection in the 42Crunch platform, February 2026","publish_after":null,"date_added":"2026-08-23","source":"https://docs.42crunch.com/latest/content/whatsnew/42crunch-platform-2026-02-10.htm","is_house_product":false,"coming_soon":false},{"id":"7ai","name":"7AI","slug":"7ai","logo":"","brief_summary":"Swarming AI agents that take over the investigation work human SOCs cannot staff.","description":"7AI is the Cybereason founders' second act: specialized agents categorize an alert, dispatch the right investigator, and return a verdict with evidence. It sits on the customer's existing EDR, SIEM, identity, and cloud tools rather than replacing them. Ten months after stealth it was already running Fortune 500 investigations at a volume no hiring plan can match.","category":"detection-response","tags":["Series A","USA"],"hq":"Boston, USA","country":"USA","founded":"2024","funding_stage":"Series A","total_funding":"$166M","investors":["Index Ventures","Greylock","CRV","Spark Capital"],"url":"https://7ai.com","linkedin":"https://www.linkedin.com/company/7ai","signal":"Raised $130M Series A led by Index Ventures, December 2025","publish_after":null,"date_added":"2026-08-23","source":"https://www.businesswire.com/news/home/20251204907769/en/Citing-the-Agentic-Security-Inflection-Point-7AI-Raises-Largest-Cybersecurity-A-Round-in-History-to-Bring-AI-Security-Agents-to-Enterprises","is_house_product":false,"coming_soon":false},{"id":"abnormal-ai","name":"Abnormal AI","slug":"abnormal-ai","logo":"","brief_summary":"API-native email and SaaS defense that baselines human behavior to catch BEC and account takeover.","description":"Abnormal AI (formerly Abnormal Security) connects to Microsoft 365 and Google Workspace without MX changes and scores every message against who usually talks to whom. The same behavioral models now watch Slack, Salesforce, Workday, and other SaaS apps for the follow-on compromise after a mailbox falls. It is sold as human-behavior security, not another secure email gateway.","category":"email-collaboration","tags":["Series D","United States"],"hq":"San Francisco, United States","country":"United States","founded":"2018","funding_stage":"Series D","total_funding":"$546M","investors":["Wellington Management","Greylock","Insight Partners","Menlo Ventures"],"url":"https://abnormal.ai","linkedin":"https://www.linkedin.com/company/abnormal-ai","signal":"Raised $250M Series D at a $5.1B valuation, August 2024","publish_after":null,"date_added":"2026-08-23","source":"https://abnormal.ai/newsroom/press-releases/series-d-5b-valuation","is_house_product":false,"coming_soon":false},{"id":"action1","name":"Action1","slug":"action1","logo":"","brief_summary":"Cloud-native patch management that remediates endpoints without a VPN or on-prem console.","description":"Action1 is founder-led patch and vulnerability remediation for mixed Windows, Mac, and Linux fleets. Agents check in over the internet, so remote laptops get the same Tuesday patch as the office. No venture round on the cap table, which is rare in this category, and 2026 growth is coming from six-figure enterprise deals rather than a new fundraise.","category":"endpoint-browser","tags":["Bootstrapped","USA"],"hq":"Houston, USA","country":"USA","founded":"2016","funding_stage":"Bootstrapped","total_funding":"","investors":[],"url":"https://www.action1.com","linkedin":"https://www.linkedin.com/company/action1","signal":"H1 2026 ARR from six-figure deals grew 275% year over year","publish_after":null,"date_added":"2026-08-23","source":"https://www.prnewswire.com/news-releases/action1-accelerates-enterprise-expansion-in-h1-2026-with-275-growth-in-six-figure-deal-arr-302827620.html","is_house_product":false,"coming_soon":false},{"id":"aembit","name":"Aembit","slug":"aembit","logo":"","brief_summary":"Workload IAM that issues short-lived, secretless credentials for services, scripts, and AI agents.","description":"Aembit is non-human IAM: policy decides whether a workload can talk to a database, SaaS API, or cloud account, then mints a just-in-time token instead of storing a key. No-code auth sits in front of existing apps so developers do not rewrite secret fetching. Founders previously built New Edge Labs (sold to Netskope). Snowflake is a named customer.","category":"secrets-identity","tags":["Series A","United States"],"hq":"Silver Spring, United States","country":"United States","founded":"2021","funding_stage":"Series A","total_funding":"$45M","investors":["Acrew Capital","Ballistic Ventures","Ten Eleven","CrowdStrike Falcon Fund"],"url":"https://aembit.io","linkedin":"https://www.linkedin.com/company/aembit","signal":"Raised $25M Series A led by Acrew Capital, September 2024","publish_after":null,"date_added":"2026-08-23","source":"https://aembit.io/press-release/aembit-raises-25-million-in-series-a-funding-for-non-human-identity-and-access-management/","is_house_product":false,"coming_soon":false},{"id":"aevral","name":"Aevral","slug":"aevral","logo":"","brief_summary":"GitHub App that scans an owned default-branch SHA for authz, IDOR, and business logic. By ISMS Copilot.","description":"Aevral is a specialist at-rest scanner for owned GitHub default-branch SHAs. Finding class is authz, IDOR, and business logic only, not broad SAST, not PR-diff review, not secret scanning. An advisory Check plus a console report; inference on Mistral in the EU. Coming soon: customer Scan stays off until the public eval is green.","category":"application-security","tags":["Seed","France"],"hq":"France","country":"France","founded":"2026","funding_stage":"Seed","total_funding":"","investors":[],"url":"https://aevral.com","linkedin":"","signal":"Product brand Aevral and aevral.com purchased 2026-08-23, launch imminent","publish_after":null,"date_added":"2026-08-23","source":"https://aevral.com","is_house_product":true,"coming_soon":true},{"id":"aikido-security","name":"Aikido Security","slug":"aikido-security","logo":"","brief_summary":"One platform that scans code, cloud, and runtime, then triages and auto-fixes what is actually reachable.","description":"Aikido bundles SAST, SCA, secrets, IaC, containers, DAST, and runtime protection instead of making teams stitch five scanners together. AutoTriage drops alerts that do not hit a reachable path, and AutoFix opens reviewable pull requests for the rest. The Ghent company is the European developer-first alternative to the Tel Aviv and Bay Area AppSec platforms.","category":"application-security","tags":["Series B","Belgium"],"hq":"Ghent, Belgium","country":"Belgium","founded":"2022","funding_stage":"Series B","total_funding":"$84M","investors":["DST Global","PSG Equity","Singular","Notion Capital"],"url":"https://www.aikido.dev","linkedin":"https://www.linkedin.com/company/aikido-security","signal":"Raised $60M Series B at a $1B valuation, January 2026","publish_after":null,"date_added":"2026-08-23","source":"https://www.securityweek.com/aikido-security-raises-60-million-at-1-billion-valuation/","is_house_product":false,"coming_soon":false},{"id":"akeyless","name":"Akeyless","slug":"akeyless","logo":"","brief_summary":"SaaS vault for secrets, keys, and certificates that never stores the master key in the customer's cloud.","description":"Akeyless is a zero-knowledge secrets and machine-identity platform: static secrets, dynamic DB credentials, SSH certs, and PKI without running HashiCorp clusters. Distributed Fragments Cryptography splits the encryption key so Akeyless itself cannot decrypt customer material. Deutsche Bank's CVC check in 2024 was a bank-as-customer-and-investor signal, not a generic late round.","category":"secrets-identity","tags":["Series B","Israel"],"hq":"Ramat Gan, Israel","country":"Israel","founded":"2018","funding_stage":"Series B","total_funding":"$79M","investors":["Deutsche Bank Ventures","Team8","NGP Capital"],"url":"https://www.akeyless.io","linkedin":"https://www.linkedin.com/company/akeyless-security","signal":"Took a strategic investment from Deutsche Bank Ventures, October 2024","publish_after":null,"date_added":"2026-08-23","source":"https://www.akeyless.io/blog/akeyless-secures-strategic-investment-from-deutsche-bank/","is_house_product":false,"coming_soon":false},{"id":"anchore","name":"Anchore","slug":"anchore","logo":"","brief_summary":"Open-source Syft/Grype plus enterprise SBOM management for containers and the pipeline that builds them.","description":"Anchore's open-source scanners (Syft, Grype) are how a lot of teams generate SBOMs; Enterprise is the policy and compliance layer on top. That is container and pipeline supply chain, not another SaaS SCA login. The 2025 research series is them still publishing as an independent SBOM company while the category consolidates.","category":"supply-chain","tags":["Series B","USA"],"hq":"Santa Barbara, USA","country":"USA","founded":"2016","funding_stage":"Series B","total_funding":"","investors":[],"url":"https://anchore.com","linkedin":"https://www.linkedin.com/company/anchore","signal":"Published the 2025 Anchore supply-chain blog series, December 2025","publish_after":null,"date_added":"2026-08-23","source":"https://anchore.com/blog/the-top-ten-list-the-2025-anchore-blog/","is_house_product":false,"coming_soon":false},{"id":"apiiro","name":"Apiiro","slug":"apiiro","logo":"","brief_summary":"Code-to-runtime ASPM graph that ranks material application risk, not every scanner finding.","description":"Apiiro builds an application risk graph from first-party code, third-party scanners, and runtime context, then scores what is actually exposed. Native SAST, SCA, secrets, and IaC sit next to ingested Checkmarx or Snyk results so security can see ownership, sensitive data, and exploitable change in one place. AutoFix now ships patches, including a free path for open-source maintainers.","category":"application-security","tags":["Series B","USA"],"hq":"New York, USA","country":"USA","founded":"2019","funding_stage":"Series B","total_funding":"$135M","investors":["General Catalyst","Greylock","Kleiner Perkins"],"url":"https://apiiro.com","linkedin":"https://www.linkedin.com/company/apiiro","signal":"Joined Chainguard's Athena coalition and made AutoFix free for OSS maintainers, August 2026","publish_after":null,"date_added":"2026-08-23","source":"https://apnews.com/press-release/globenewswire-mobile/press-release-7f0df3e7cb1cb1c0328baa44d4de0d5c","is_house_product":false,"coming_soon":false},{"id":"apono","name":"Apono","slug":"apono","logo":"","brief_summary":"Just-in-time cloud access that kills standing privileges for humans, machines, and agents.","description":"Apono grants cloud permissions only when a job needs them, then revokes them when the work is done. The product is built around zero standing privilege, with context checks so developers and AI agents do not keep always-on admin rights. Intel, HPE, and Monday.com are among the shops using it to keep hybrid and multi-cloud access tight without slowing engineering.","category":"identity-access","tags":["Series B","Israel"],"hq":"Tel Aviv, Israel","country":"Israel","founded":"2022","funding_stage":"Series B","total_funding":"$54.5M","investors":["USVP","Swisscom Ventures","Vertex Ventures"],"url":"https://www.apono.io","linkedin":"https://www.linkedin.com/company/aponoio","signal":"Raised $34M Series B led by USVP, November 2025","publish_after":null,"date_added":"2026-08-23","source":"https://www.prnewswire.com/il/news-releases/apono-raises-34m-series-b-to-redefine-privileged-access-for-the-agentic-era-302618621.html","is_house_product":false,"coming_soon":false},{"id":"appomni","name":"AppOmni","slug":"appomni","logo":"","brief_summary":"SaaS security posture for Salesforce, ServiceNow, Microsoft 365, and the agents now living inside them.","description":"AppOmni monitors configuration drift, toxic permission combos, and third-party integrations across the SaaS apps that actually hold customer data. FedRAMP work and a large event pipeline are aimed at enterprises that already bought SSPM and still got surprised by a connected app. Marlin AI and AgentGuard extend that posture into ServiceNow and other agent runtimes instead of treating AI as a separate product.","category":"email-collaboration","tags":["Series C","United States"],"hq":"San Mateo, United States","country":"United States","founded":"2018","funding_stage":"Series C","total_funding":"$123M","investors":["Thoma Bravo","Scale Venture Partners","ServiceNow"],"url":"https://appomni.com","linkedin":"https://www.linkedin.com/company/appomni","signal":"Reported 43% year-over-year revenue growth and five of the top 10 Fortune 500 as customers, February 2025","publish_after":null,"date_added":"2026-08-23","source":"https://appomni.com/press-releases/appomni-fiscal-year-2025-in-review/","is_house_product":false,"coming_soon":false},{"id":"aqua-security","name":"Aqua Security","slug":"aqua-security","logo":"","brief_summary":"Code-to-runtime CNAPP that ranks CVEs by live workload behavior and can stop an exploit without waiting for a patch.","description":"Aqua started in containers and now covers images, serverless, VMs, Kubernetes, and AI apps from build through production. Runtime sensors enforce policy on the node, including air-gapped and mainframe Linux, so a known or unknown exploit can be contained locally. Open-source Trivy, Tracee, and kube-bench feed the same platform that enterprises use for FedRAMP-grade deployments.","category":"cloud-security","tags":["Series E","United States"],"hq":"Burlington, United States","country":"United States","founded":"2015","funding_stage":"Series E","total_funding":"$265M","investors":["Insight Partners","Lightspeed Venture Partners","Evolution Equity Partners","ION Crossover Partners"],"url":"https://www.aquasec.com","linkedin":"https://www.linkedin.com/company/aquasecteam","signal":"Raised $60M at a $1B-plus valuation, January 2024","publish_after":null,"date_added":"2026-08-23","source":"https://www.calcalistech.com/ctechnews/article/syini2gdp","is_house_product":false,"coming_soon":false},{"id":"arctic-wolf","name":"Arctic Wolf","slug":"arctic-wolf","logo":"","brief_summary":"Concierge MDR on the Aurora platform, now with its own endpoint prevention.","description":"Arctic Wolf runs a security operations cloud that mid-market and enterprise buyers hire instead of standing up a SOC. Aurora ingests the customer's stack, a named Concierge team owns outcomes, and recent buys of Cylance and UpSight pulled prevention onto the same platform. It is still private, still independent, and still the scale MDR the public EDR floor does not own.","category":"detection-response","tags":["Series F","USA"],"hq":"Eden Prairie, USA","country":"USA","founded":"2012","funding_stage":"Series F","total_funding":"$900M","investors":["Lightspeed Venture Partners","Viking Global Investors","DTCP"],"url":"https://arcticwolf.com","linkedin":"https://www.linkedin.com/company/arctic-wolf-networks","signal":"Launched Aurora Endpoint Security and acquired Cylance from BlackBerry in 2025","publish_after":null,"date_added":"2026-08-23","source":"https://arcticwolf.com/resources/blog/2025-year-in-review/","is_house_product":false,"coming_soon":false},{"id":"armo","name":"ARMO","slug":"armo","logo":"","brief_summary":"Kubernetes-rooted CNAPP and CADR, built on CNCF Kubescape, that uses eBPF runtime to decide which CVEs and misconfigs matter.","description":"ARMO maintains Kubescape, the CNCF-incubating Kubernetes scanner, and sells a platform that adds runtime CADR, CSPM, and reachability-based vuln ranking. An eBPF sensor explains the attack story across cluster, container, and cloud so DevOps can see why a finding is live. It runs SaaS, on-prem, and air-gapped, which is the path for teams that will not put cluster telemetry in a US SaaS CNAPP.","category":"cloud-security","tags":["Series A","Israel"],"hq":"Tel Aviv, Israel","country":"Israel","founded":"2019","funding_stage":"Series A","total_funding":"$35M","investors":["Tiger Global","Hyperwise Ventures","Pitango"],"url":"https://www.armosec.io","linkedin":"https://www.linkedin.com/company/armosec","signal":"Kubescape 4.0 released with runtime threat detection GA, March 2026","publish_after":null,"date_added":"2026-08-23","source":"https://www.infoq.com/news/2026/03/kubescape-40/","is_house_product":false,"coming_soon":false},{"id":"armorcode","name":"ArmorCode","slug":"armorcode","logo":"","brief_summary":"Scanner-agnostic ASPM that correlates hundreds of tools into the findings that actually matter.","description":"ArmorCode does not replace SAST or DAST. It ingests 400-plus scanners, bug-bounty feeds, and cloud findings, then ranks exploitability and ownership so AppSec is not staring at 400,000 duplicates. Anya agents triage, explain, and draft remediations while humans keep the merge button. The Palo Alto company now also folds AI-asset inventory into the same control plane.","category":"application-security","tags":["Series B","USA"],"hq":"Palo Alto, USA","country":"USA","founded":"2020","funding_stage":"Series B","total_funding":"$81M","investors":["Cheyenne Ventures","Ballistic Ventures","Sierra Ventures","NGP Capital"],"url":"https://www.armorcode.com","linkedin":"https://www.linkedin.com/company/armorcode","signal":"Raised $16M strategic round, taking total funding to $81M, March 2026","publish_after":null,"date_added":"2026-08-23","source":"https://www.securityweek.com/armorcode-raises-16-million-for-exposure-management-platform/","is_house_product":false,"coming_soon":false},{"id":"arnica","name":"Arnica","slug":"arnica","logo":"","brief_summary":"Pipelineless SAST, SCA, secrets, and IaC that scans every push and talks to the developer in Slack.","description":"Arnica skips CI plugins. It watches every branch push, maps the owner, and sends a mitigation in Slack or Teams instead of another Jira pile. Hybrid AI SAST looks for auth gaps and logic flaws, not only pattern matches, and agentic rules inject policy into Copilot, Cursor, and Claude Code at generation time. Coverage is claimed on every repo from day one, including ones that never got a pipeline job.","category":"application-security","tags":["Seed","USA"],"hq":"Alpharetta, USA","country":"USA","founded":"2021","funding_stage":"Seed","total_funding":"$7M","investors":["Joule Ventures","First Rays Venture Partners"],"url":"https://www.arnica.io","linkedin":"https://www.linkedin.com/company/arnica-io","signal":"Shipped PR secrets scanning and secrets-in-HEAD detection, June 2026","publish_after":null,"date_added":"2026-08-23","source":"https://www.arnica.io/announcement/new-feature-announcement-pr-secrets-scanning-and-secrets-in-head","is_house_product":false,"coming_soon":false},{"id":"aryon-security","name":"Aryon Security","slug":"aryon-security","logo":"","brief_summary":"Cloud policy enforcement that blocks misconfigs and over-privilege at deploy time, before CSPM has anything to scan.","description":"Aryon sits at the cloud control plane and stops risky resources from being created, whether they come from Terraform, Pulumi, CLI, or ClickOps. It is source-agnostic and cloud-agnostic, so the same guardrails apply across AWS, Azure, and Google Cloud without an in-workload agent. The point is prevention at the moment of change, not another queue of post-deploy alerts.","category":"cloud-security","tags":["Series A","Israel"],"hq":"Tel Aviv, Israel","country":"Israel","founded":"2024","funding_stage":"Series A","total_funding":"$38M","investors":["Brightmind Partners","Skinos Ventures","Datadog Ventures","Blumberg Capital","Viola Ventures"],"url":"https://www.aryon.security","linkedin":"https://www.linkedin.com/company/aryon-security","signal":"Raised $29M Series A, June 2026","publish_after":null,"date_added":"2026-08-23","source":"https://www.businesswire.com/news/home/20260610103874/en/Aryon-Security-Raises-%2429-Million-in-Series-A-Funding-to-Bring-Preventive-Enforcement-to-Modern-Cloud-Security","is_house_product":false,"coming_soon":false},{"id":"attackiq","name":"AttackIQ","slug":"attackiq","logo":"","brief_summary":"Security control validation platform built around MITRE ATT&CK and purple-team testing.","description":"AttackIQ is the BAS vendor that grew up next to MITRE, so scenarios are adversary-emulation tests against SIEM, EDR, and network controls. Ready and FireDrill products let detection engineers prove a control before the next threat-intel slide. It is validation of the stack you bought, not a replacement for a network pentest.","category":"offensive-exposure","tags":["Series C","USA"],"hq":"Los Altos, USA","country":"USA","founded":"2013","funding_stage":"Series C","total_funding":"","investors":[],"url":"https://www.attackiq.com","linkedin":"https://www.linkedin.com/company/attackiq","signal":"Named among 2026 CTEM and BAS alternatives in independent vendor comparisons","publish_after":null,"date_added":"2026-08-23","source":"https://www.picussecurity.com/resource/blog/the-6-best-alternatives-to-cymulate-in-2026","is_house_product":false,"coming_soon":false},{"id":"backslash-security","name":"Backslash Security","slug":"backslash-security","logo":"","brief_summary":"Reachability-aware AppSec now aimed at AI coding agents, IDEs, MCPs, and the packages they pull.","description":"Backslash started as code-to-runtime reachability so SCA noise dropped to the 5% that is actually called. The 2026 Series A reframes that as vibe-coding security: the agent, the IDE, the MCP, and the dependency it just added are one attack surface. If your pipeline risk is 'Cursor installed a package at 2am', this is the scanner built for that moment.","category":"supply-chain","tags":["Series A","Israel"],"hq":"Tel Aviv, Israel","country":"Israel","founded":"2022","funding_stage":"Series A","total_funding":"$27M","investors":["KOMPAS VC","Maniv","StageOne Ventures"],"url":"https://www.backslash.security","linkedin":"https://www.linkedin.com/company/backslash-security","signal":"Raised $19M Series A led by KOMPAS VC, February 2026","publish_after":null,"date_added":"2026-08-23","source":"https://www.backslash.security/press-releases/backslash-security-raises-19m-series-a-to-secure-vibe-coding-boom-in-the-enterprise-bolsters-board-with-cybersecurity-industry-leader","is_house_product":false,"coming_soon":false},{"id":"bedrock-data","name":"Bedrock Data","slug":"bedrock-data","logo":"","brief_summary":"Metadata lake DSPM that classifies petabyte estates in place, then governs AI access in plain language.","description":"Bedrock Data (formerly Bedrock Security) builds a continuously updated metadata graph of sensitivity, lineage, and access without shipping customer data off-prem. Serverless scanners are meant to cover multi-petabyte lakes that brute-force DSPM skips for cost. ArgusAI lets teams ask what a model or agent actually saw, then write policies in natural language against that same graph.","category":"data-security","tags":["Series A","United States"],"hq":"Menlo Park, United States","country":"United States","founded":"2023","funding_stage":"Series A","total_funding":"$35M","investors":["Greylock","Mangusta Capital","Mantis VC"],"url":"https://bedrockdata.ai","linkedin":"https://www.linkedin.com/company/bedrockdataai","signal":"Raised $25M Series A led by Greylock, November 2025","publish_after":null,"date_added":"2026-08-23","source":"https://bedrockdata.ai/news/press-release-bedrock-data-announces-usd25-million-series-a-to-fuel-growth-of-its-ai-native-data","is_house_product":false,"coming_soon":false},{"id":"bigid","name":"BigID","slug":"bigid","logo":"","brief_summary":"Hybrid DSPM and data intelligence platform for discovery, privacy, and AI risk across cloud and on-prem.","description":"BigID catalogs structured and unstructured data in warehouses, file shares, SaaS, and mainframes, then ties records back to identities for DSAR and access reviews. Privacy and security teams share one inventory instead of running parallel scanners. The same map now feeds AI governance so training data and Copilot connectors are treated as first-class data stores, not a side project.","category":"data-security","tags":["Series D","United States"],"hq":"New York, United States","country":"United States","founded":"2016","funding_stage":"Series D","total_funding":"$308M","investors":["Riverwood Capital","Advent International","Silver Lake Waterman"],"url":"https://bigid.com","linkedin":"https://www.linkedin.com/company/bigid","signal":"First DSPM vendor to cross $100M in annual revenue, 2024","publish_after":null,"date_added":"2026-08-23","source":"https://bigid.com/blog/2024-retrospective/","is_house_product":false,"coming_soon":false},{"id":"boost-security","name":"Boost Security","slug":"boost-security","logo":"","brief_summary":"Pipeline and package gates that block supply-chain junk before AI-written code swallows it.","description":"Boost sits on the developer endpoint and the CI pipeline, blocking malicious or policy-breaking packages at ingest rather than alerting after merge. The 2026 SecureIQx buy adds SCA reachability so you fix the 5% that is actually called. Korbit adds AI code review. That is supply-chain plus pipeline in one Montreal shop, not another scanner dashboard.","category":"supply-chain","tags":["Seed","Canada"],"hq":"Montreal, Canada","country":"Canada","founded":"2020","funding_stage":"Seed","total_funding":"$16M","investors":["White Star Capital","Sorenson Capital","Amiral Ventures"],"url":"https://boostsecurity.io","linkedin":"https://www.linkedin.com/company/boostsecurity","signal":"Raised $4M and acquired SecureIQx and Korbit.ai, May 2026","publish_after":null,"date_added":"2026-08-23","source":"https://www.securityweek.com/boost-security-raises-4-million-for-sdlc-defense-platform/","is_house_product":false,"coming_soon":false},{"id":"censys","name":"Censys","slug":"censys","logo":"","brief_summary":"Internet-wide map of exposed infrastructure used for ASM, threat hunting, and exposure management.","description":"Censys continuously scans the public internet and turns that into an asset graph: certificates, services, devices, and the orgs behind them. Security teams use it to find forgotten cloud, shadow IPs, and adversary infrastructure, not just to vanity-search their own /24. The 2026 round is explicitly to put AI workflows on top of that map.","category":"offensive-exposure","tags":["Series D","USA"],"hq":"Ann Arbor, USA","country":"USA","founded":"2017","funding_stage":"Series D","total_funding":"$198M","investors":["Morgan Stanley Expansion Capital","Greylock","GV","Intel Capital"],"url":"https://censys.com","linkedin":"https://www.linkedin.com/company/censys","signal":"Raised $40M Series D plus $30M debt led by Morgan Stanley Expansion Capital, March 2026","publish_after":null,"date_added":"2026-08-23","source":"https://censys.com/newsroom/censys-raises-70-million-in-strategic-funding-to-expand-its-internet-intelligence-platform/","is_house_product":false,"coming_soon":false},{"id":"chainguard","name":"Chainguard","slug":"chainguard","logo":"","brief_summary":"Zero-to-low CVE container images and language libraries rebuilt from verified source.","description":"Chainguard rebuilds open source (Wolfi, Images, Libraries) from public source with SBOMs and Sigstore attestations, so you start from a clean artifact instead of scanning a fat Debian base. The 2026 Athena coalition is them trying to patch upstream faster than AI-assisted attackers can n-day it. Customers swap the base image; the CVE backlog drops because the component never entered the build.","category":"supply-chain","tags":["Series D","USA"],"hq":"Kirkland, USA","country":"USA","founded":"2021","funding_stage":"Series D","total_funding":"$892M","investors":["Kleiner Perkins","IVP","Sequoia","Lightspeed"],"url":"https://www.chainguard.dev","linkedin":"https://www.linkedin.com/company/chainguard-dev","signal":"Closed $280M growth round from General Catalyst at a $3.5B valuation, October 2025","publish_after":null,"date_added":"2026-08-23","source":"https://www.geekwire.com/2025/chainguard-lands-280m-to-help-scale-cybersecurity-startups-open-source-software-protections/","is_house_product":false,"coming_soon":false},{"id":"cloudsmith","name":"Cloudsmith","slug":"cloudsmith","logo":"","brief_summary":"Universal artifact control plane for what AI and humans actually put into production.","description":"Cloudsmith is a cloud-native artifact manager (packages, containers, binaries) with policy on what may be pulled and published. That is the supply-chain chokepoint: if the package never lands in the registry you own, SCA is downstream of a decision already made. The 2026 Series C is framed as the operating system for AI-generated software, not another JFrog clone slide.","category":"supply-chain","tags":["Series C","United Kingdom"],"hq":"Belfast, United Kingdom","country":"United Kingdom","founded":"2016","funding_stage":"Series C","total_funding":"$124M","investors":["TCV","Insight Partners"],"url":"https://cloudsmith.com","linkedin":"https://www.linkedin.com/company/cloudsmith","signal":"Raised $72M Series C led by TCV and Insight Partners, April 2026","publish_after":null,"date_added":"2026-08-23","source":"https://www.securityweek.com/cloudsmith-raises-72-million-in-series-c-funding/","is_house_product":false,"coming_soon":false},{"id":"clover-security","name":"Clover Security","slug":"clover-security","logo":"","brief_summary":"Design-led product security agents that review PRDs, architecture, and specs before code exists.","description":"Clover sits in Confluence, Jira, GitHub, and Cursor and runs design reviews, threat models, and policy checks the way a senior product-security engineer would. The bet is that most authz and business-logic bugs are decided in tickets, not in a SAST regex. Agents then watch for design-to-code drift so the review is not a one-off PDF. Customers include Notion, Plaid, Expedia, and Virgin Money.","category":"application-security","tags":["Series A","USA"],"hq":"New York, USA","country":"USA","founded":"2023","funding_stage":"Series A","total_funding":"$36M","investors":["Notable Capital","Team8","SVCI"],"url":"https://clover.security","linkedin":"https://www.linkedin.com/company/clover-security","signal":"Emerged from stealth with $36M seed and Series A, November 2025","publish_after":null,"date_added":"2026-08-23","source":"https://www.securityweek.com/clover-security-raises-36-million-to-secure-software-by-design/","is_house_product":false,"coming_soon":false},{"id":"clutch-security","name":"Clutch Security","slug":"clutch-security","logo":"","brief_summary":"Zero Trust for non-human identities: discover the secret, then make stolen static credentials useless.","description":"Clutch maps API keys, tokens, service accounts, and certificates across cloud, SaaS, CI/CD, and vaults, then applies identity lineage and ephemeral controls. The argument against rotation-as-security is explicit: exposed secrets get used in minutes. Founders came out of Sygnia and Hunters. The 2025 Series A is still the last priced round.","category":"secrets-identity","tags":["Series A","Israel"],"hq":"Tel Aviv, Israel","country":"Israel","founded":"2023","funding_stage":"Series A","total_funding":"$28.5M","investors":["SignalFire","Lightspeed","Merlin Ventures"],"url":"https://www.clutch.security","linkedin":"https://www.linkedin.com/company/clutch-security","signal":"Raised $20M Series A led by SignalFire, January 2025","publish_after":null,"date_added":"2026-08-23","source":"https://www.clutch.security/blog/clutch-security-20M-series-a","is_house_product":false,"coming_soon":false},{"id":"conceal","name":"Conceal","slug":"conceal","logo":"","brief_summary":"Browser-native SSE that gives zero-trust access without a VPN, VDI, or backhauled proxy.","description":"Conceal puts isolation and policy in the browser so contractors and unmanaged devices can reach apps without standing up another appliance. The pitch against Zscaler-class SSE is architectural: no traffic trombone, no extra agent if the browser is the control point. Series B capital in 2025 is aimed at making that the default path for third-party access.","category":"endpoint-browser","tags":["Series B","USA"],"hq":"Augusta, USA","country":"USA","founded":"2012","funding_stage":"Series B","total_funding":"$36M","investors":["Two Bear Capital","AllegisCyber","Gula Tech Adventures"],"url":"https://conceal.io","linkedin":"https://www.linkedin.com/company/conceal","signal":"Raised $26M Series B led by Two Bear Capital, October 2025","publish_after":null,"date_added":"2026-08-23","source":"https://www.prnewswire.com/news-releases/conceal-closes-26-million-series-b-funding-round-led-by-two-bear-capital-302586618.html","is_house_product":false,"coming_soon":false},{"id":"concentric-ai","name":"Concentric AI","slug":"concentric-ai","logo":"","brief_summary":"Semantic DSPM that labels unstructured data by meaning, then remediates oversharing on-prem and in the cloud.","description":"Concentric AI trains deep learning models on the actual content of files, mail, and chat instead of asking customers to write DLP rules first. That lets it find contracts, source code, and regulated records sitting in the wrong SharePoint or S3 bucket. Risk scoring and remediation cover hybrid estates, including Microsoft Copilot data paths that legacy classifiers miss.","category":"data-security","tags":["Series B","United States"],"hq":"San Mateo, United States","country":"United States","founded":"2018","funding_stage":"Series B","total_funding":"$67M","investors":["Top Tier Capital","HarbourVest","Ballistic Ventures","Citi Ventures"],"url":"https://concentric.ai","linkedin":"https://www.linkedin.com/company/concentricinc","signal":"Raised $45M Series B led by Top Tier Capital and HarbourVest, October 2024","publish_after":null,"date_added":"2026-08-23","source":"https://concentric.ai/press-release/concentric-ai-secures-45m-financing/","is_house_product":false,"coming_soon":false},{"id":"conductorone","name":"ConductorOne","slug":"conductorone","logo":"","brief_summary":"AI-native identity platform that folds IGA, IAM, and PAM into one access control plane.","description":"ConductorOne automates joiner-mover-leaver, just-in-time privilege, and access reviews across hundreds of apps and infrastructure connectors. Founders came out of Okta and ScaleFT, and the product is used by Instacart, Ramp, DoorDash, and Zscaler. It can sit beside a legacy IGA stack or replace it, with a single identity graph for humans, service accounts, and agents.","category":"identity-access","tags":["Series B","United States"],"hq":"San Francisco, United States","country":"United States","founded":"2020","funding_stage":"Series B","total_funding":"$111M","investors":["Greycroft","Accel","Felicis","CrowdStrike Falcon Fund"],"url":"https://www.conductorone.com","linkedin":"https://www.linkedin.com/company/c1-ai","signal":"Raised $79M Series B led by Greycroft, October 2025","publish_after":null,"date_added":"2026-08-23","source":"https://www.securityweek.com/conductorone-raises-79-million-in-series-b-funding/","is_house_product":false,"coming_soon":false},{"id":"conifers","name":"Conifers","slug":"conifers","logo":"","brief_summary":"MSSP-first agentic SOC that wires intel, hunting, detections, investigation, and response into one loop.","description":"Conifers CognitiveSOC treats the five SOC functions as one fabric instead of five tools. Agents pull intel, hunt, write detections, investigate, and remediate, then write outcomes back so the next cycle is sharper. Multi-tenant from day one, which is why MSSPs and MDR shops are the early buyers rather than single-tenant enterprises.","category":"detection-response","tags":["Series A","USA"],"hq":"Dallas, USA","country":"USA","founded":"2024","funding_stage":"Series A","total_funding":"$25M","investors":["SYN Ventures","Picus Capital","Washington Harbour"],"url":"https://www.conifers.ai","linkedin":"https://www.linkedin.com/company/conifers-ai","signal":"Raised $25M Series A led by SYN Ventures, January 2025","publish_after":null,"date_added":"2026-08-23","source":"https://www.securityweek.com/conifers-ai-scores-25m-investment-for-agentic-ai-soc-technology/","is_house_product":false,"coming_soon":false},{"id":"contrast-security","name":"Contrast Security","slug":"contrast-security","logo":"","brief_summary":"IAST, RASP, and ADR that instrument the running app so exploits are seen in the code path, not the packet.","description":"Contrast places sensors in the application runtime to watch how data actually flows through Java, .NET, and Node, which is IAST in build and RASP or ADR in prod. CVE Shield is the virtual-patch path: block a live exploit class in minutes while the library upgrade is still in the sprint. That is the original RASP idea, updated for AI-generated code that no SAST rule has seen yet.","category":"api-runtime","tags":["Series E","United States"],"hq":"Los Altos, United States","country":"United States","founded":"2014","funding_stage":"Series E","total_funding":"$269M","investors":["Warburg Pincus","Liberty Strategic Capital"],"url":"https://www.contrastsecurity.com","linkedin":"https://www.linkedin.com/company/contrast-security","signal":"Published the Software Under Siege 2025 report on application-layer attacks, August 2025","publish_after":null,"date_added":"2026-08-23","source":"https://www.contrastsecurity.com/video/software-under-siege-2025-key-insights-with-jeff-williams","is_house_product":false,"coming_soon":false},{"id":"corgea","name":"Corgea","slug":"corgea","logo":"","brief_summary":"AI SAST that hunts broken auth and business-logic bugs, then writes a patch developers can merge.","description":"Corgea traces real request paths instead of matching a CVE list, which is how it claims broken authentication and missing authz checks that rule engines skip. Findings come with a generated fix and a confidence score so teams are not drowning in LLM hallucinations. The YC-backed scanner also covers SCA, secrets, IaC, and containers, but the core is first-party logic.","category":"application-security","tags":["Seed","USA"],"hq":"San Francisco, USA","country":"USA","founded":"2023","funding_stage":"Seed","total_funding":"$2.6M","investors":["Shorooq","Y Combinator"],"url":"https://corgea.com","linkedin":"https://www.linkedin.com/company/corgea","signal":"Raised $2.6M seed led by Shorooq, with Y Combinator participating, November 2024","publish_after":null,"date_added":"2026-08-23","source":"https://fintech.global/2024/11/08/ai-driven-cybersecurity-startup-corgea-raises-2-6m-in-seed-round/","is_house_product":false,"coming_soon":false},{"id":"corsha","name":"Corsha","slug":"corsha","logo":"","brief_summary":"Machine identity provider for operational technology, factories, and defense networks that still run API keys.","description":"Corsha issues dynamic machine identities for machine-to-machine traffic in plants, logistics, and DoD environments where a SaaS vault is not the perimeter. The mIDP sits in front of APIs and industrial protocols so a cloned credential dies on the next handshake. A 2025 DLA IDIQ and Booz Allen Ventures money point at US critical infrastructure, not developer laptops.","category":"secrets-identity","tags":["Series A","United States"],"hq":"Washington, United States","country":"United States","founded":"2017","funding_stage":"Series A","total_funding":"$30M","investors":["SineWave Ventures","Ten Eleven","Razor's Edge","Booz Allen Ventures"],"url":"https://corsha.com","linkedin":"https://www.linkedin.com/company/corsha","signal":"Raised $18M Series A-1 led by SineWave Ventures, April 2025","publish_after":null,"date_added":"2026-08-23","source":"https://corsha.com/press-releases/corsha-announces-18m-series-a-1-funding-to-deliver-secure-machine-to-machine-communication-for-critical-operational-systems","is_house_product":false,"coming_soon":false},{"id":"cyberhaven","name":"Cyberhaven","slug":"cyberhaven","logo":"","brief_summary":"Data detection and response that traces lineage as files move, transform, and hit AI tools.","description":"Cyberhaven follows a piece of data from origin through endpoints, SaaS, and browsers instead of scanning snapshots at rest. A lineage graph plus a custom model decides whether a paste into ChatGPT, a USB copy, or a Slack share is business as usual or exfil. That is closer to EDR for data than classic DLP, which is why insider and AI-leak cases show up as a path, not a keyword hit.","category":"data-security","tags":["Series D","United States"],"hq":"Palo Alto, United States","country":"United States","founded":"2016","funding_stage":"Series D","total_funding":"$250M","investors":["StepStone","Khosla Ventures","Redpoint","Adams Street"],"url":"https://www.cyberhaven.com","linkedin":"https://www.linkedin.com/company/cyberhaven","signal":"Raised $100M Series D at a $1B valuation, April 2025","publish_after":null,"date_added":"2026-08-23","source":"https://www.cyberhaven.com/press-releases/cyberhaven-raises-100-million-series-d-at-1-billion-valuation","is_house_product":false,"coming_soon":false},{"id":"cycode","name":"Cycode","slug":"cycode","logo":"","brief_summary":"ASPM with its own SAST, SCA, and pipeline scanners, plus a graph for AI-written code.","description":"Cycode is the AppSec platform that also owns the scanners, rather than only aggregating someone else's SARIF. A Risk Intelligence Graph ties findings to owners, pipelines, and runtime, and ADLC Security adds guardrails for coding agents and MCP servers. The company acquired Bearer in 2024 to deepen privacy-aware SAST.","category":"application-security","tags":["Series B","USA"],"hq":"New York, USA","country":"USA","founded":"2019","funding_stage":"Series B","total_funding":"$81M","investors":["Insight Partners","Forgepoint Capital","YL Ventures"],"url":"https://cycode.com","linkedin":"https://www.linkedin.com/company/cycode","signal":"Named a Leader in Gartner's first Magic Quadrant for Software Supply Chain Security, June 2026","publish_after":null,"date_added":"2026-08-23","source":"https://markets.businessinsider.com/news/stocks/cycode-named-as-a-leader-in-the-2026-gartner-magic-quadrant-for-software-supply-chain-security-1036265087","is_house_product":false,"coming_soon":false},{"id":"cycognito","name":"CyCognito","slug":"cycognito","logo":"","brief_summary":"Seedless external attack-surface discovery that finds cloud, subsidiary, and third-party assets attackers can actually reach.","description":"CyCognito starts from a company name, not an asset list, and continuously inventories internet-facing IPs, apps, and cloud resources including ones no CMDB knew about. Autonomous testing then validates exploitability and business impact so VM backlogs shrink to the fraction worth a ticket. It is the outside-in complement to a CNAPP: the scanner you already paid for still misses the abandoned cloud account.","category":"cloud-security","tags":["Series C","United States"],"hq":"Palo Alto, United States","country":"United States","founded":"2017","funding_stage":"Series C","total_funding":"$153M","investors":["Accel","Lightspeed Venture Partners","The Westly Group","Sorenson Ventures"],"url":"https://www.cycognito.com","linkedin":"https://www.linkedin.com/company/cycognito","signal":"Named a Leader and Outperformer in the 2026 GigaOm Radar for Attack Surface Management","publish_after":null,"date_added":"2026-08-23","source":"https://www.cycognito.com/resources/reports/gigaom-radar-for-attack-surface-management-2026/","is_house_product":false,"coming_soon":false},{"id":"cyera","name":"Cyera","slug":"cyera","logo":"","brief_summary":"AI-native DSPM that classifies sensitive data, then governs what people and agents can do with it.","description":"Cyera scans cloud stores, SaaS, and identity paths to find sensitive data without waiting for a human taxonomy. The platform folds DSPM, DLP, and access context into one control plane so security teams can see exposure and clamp it. Recent work extends that map into AI usage, so Copilots and agents inherit the same data rules as employees.","category":"data-security","tags":["Series G","United States"],"hq":"New York, United States","country":"United States","founded":"2021","funding_stage":"Series G","total_funding":"$2.3B","investors":["Evolution Equity","Sequoia","Accel","Blackstone","Coatue"],"url":"https://www.cyera.com","linkedin":"https://www.linkedin.com/company/cyera","signal":"Raised $600M Series G at a $12B valuation, June 2026","publish_after":null,"date_added":"2026-08-23","source":"https://www.cyera.com/blog/building-the-trust-layer-for-enterprise-ai","is_house_product":false,"coming_soon":false},{"id":"cymulate","name":"Cymulate","slug":"cymulate","logo":"","brief_summary":"BAS-born exposure validation that now pushes findings into automated control updates.","description":"Cymulate started as breach-and-attack simulation across email, endpoint, network, and cloud, then expanded into CTEM scoring and ASM. Vero AI is the 2026 layer that turns a new threat into a tailored validation and, where possible, a control change rather than a slide for the CISO. If you want 'did the WAF/EDR actually block it' more than 'can we pop DA', this is the BAS-shaped CTEM vendor.","category":"offensive-exposure","tags":["Series D","Israel"],"hq":"Tel Aviv, Israel","country":"Israel","founded":"2016","funding_stage":"Series D","total_funding":"$141M","investors":[],"url":"https://cymulate.com","linkedin":"https://www.linkedin.com/company/cymulate","signal":"Shipped Vero AI for agentic cyber defense engineering on the live platform, 2026","publish_after":null,"date_added":"2026-08-23","source":"https://cymulate.com/","is_house_product":false,"coming_soon":false},{"id":"cynet","name":"Cynet","slug":"cynet","logo":"","brief_summary":"All-in-one XDR agent for teams that cannot staff a SOC or buy seven point products.","description":"Cynet collapses NGAV, EDR, NDR, UBA, and automated response into one agent, then throws in a 24/7 CyOps team for the shops that still want a human on the other end. Mid-market and MSP buyers are the design center. GigaOm's 2026 XDR radar scoring it Leader and Outperformer, including a perfect mark on agentic AI, is the current proof that the unified-stack bet still lands.","category":"endpoint-browser","tags":["Series C","USA"],"hq":"Boston, USA","country":"USA","founded":"2014","funding_stage":"Series C","total_funding":"$79M","investors":["Greenfield Partners","Norwest Venture Partners","Vintage Investment Partners"],"url":"https://www.cynet.com","linkedin":"https://www.linkedin.com/company/cynet","signal":"Named Leader and Outperformer in the 2026 GigaOm Radar for XDR","publish_after":null,"date_added":"2026-08-23","source":"https://www.cynet.com/blog/cynet-gigaom-recognition/","is_house_product":false,"coming_soon":false},{"id":"defakto","name":"Defakto","slug":"defakto","logo":"","brief_summary":"SPIFFE-based non-human IAM that replaces static secrets with short-lived workload identities.","description":"Defakto, formerly SPIRL, is a managed workload identity platform grounded in SPIFFE and WIMSE. Services, pipelines, and AI agents get verifiable identities instead of long-lived keys in vaults. CTO Eli Nesterov previously ran a large SPIFFE deployment. The 2025 rebrand and Series B are the same event: sell NHI as IAM, not as another scanner.","category":"secrets-identity","tags":["Series B","United States"],"hq":"Palo Alto, United States","country":"United States","founded":"2022","funding_stage":"Series B","total_funding":"$50M","investors":["XYZ Venture Capital","The General Partnership","Bloomberg Beta"],"url":"https://www.defakto.security","linkedin":"https://www.linkedin.com/company/defakto-security","signal":"Raised $30.75M Series B led by XYZ Ventures, October 2025","publish_after":null,"date_added":"2026-08-23","source":"https://www.defakto.security/blog/defakto-secures-30-75-m-series-b-to-set-a-new-standard-in-non-human-identity-security/","is_house_product":false,"coming_soon":false},{"id":"descope","name":"Descope","slug":"descope","logo":"","brief_summary":"Customer identity workflows that let product teams ship login, MFA, and agent auth without an IAM rebuild.","description":"Descope sells CIAM as drag-and-drop flows and SDKs: SSO, passkeys, MFA, and tenant admin for B2B apps. The 2025 seed close is aimed at agentic identity, so software that is not a person can authenticate with the same policy surface as end users. Founding team came out of Palo Alto Networks after the Exabeam years.","category":"identity-access","tags":["Seed","United States"],"hq":"Los Altos, United States","country":"United States","founded":"2022","funding_stage":"Seed","total_funding":"$88M","investors":["Lightspeed","Notable Capital","Dell Technologies Capital"],"url":"https://www.descope.com","linkedin":"https://www.linkedin.com/company/descope","signal":"Closed $35M seed extension, $88M total, September 2025","publish_after":null,"date_added":"2026-08-23","source":"https://www.descope.com/press-release/seed-funding-advisory-board","is_house_product":false,"coming_soon":false},{"id":"detectify","name":"Detectify","slug":"detectify","logo":"","brief_summary":"Hacker-powered surface monitoring for domains, apps, and APIs, now with an MCP server for AI workflows.","description":"Detectify crowdsources payloads from ethical hackers and runs them continuously against the customer's attack surface. That payload quality is the product: it is closer to a bug-bounty brain than a Nessus schedule. The 2026 MCP server is how those findings get pulled into agentic SecOps without a CSV export.","category":"offensive-exposure","tags":["Series B","Sweden"],"hq":"Stockholm, Sweden","country":"Sweden","founded":"2013","funding_stage":"Series B","total_funding":"","investors":[],"url":"https://detectify.com","linkedin":"https://www.linkedin.com/company/detectify","signal":"Launched a Detectify MCP server for AI security workflows, 2026","publish_after":null,"date_added":"2026-08-23","source":"https://detectify.com/","is_house_product":false,"coming_soon":false},{"id":"docontrol","name":"DoControl","slug":"docontrol","logo":"","brief_summary":"SaaS data security that watches sharing in Google Workspace, Slack, and Box, then revokes it automatically.","description":"DoControl maps files, identities, and sharing links across collaboration apps, then enforces policies when an intern makes a Drive folder public or an offboarded contractor still has Slack files. Context comes from HRIS and the IdP, so a share to a personal Gmail is not treated like a share to legal. The 2025 Dot assistant is the chat layer on that graph: ask who can see the board deck, then fix it.","category":"email-collaboration","tags":["Series B","United States"],"hq":"New York, United States","country":"United States","founded":"2020","funding_stage":"Series B","total_funding":"$45M","investors":["Insight Partners","RTP Global"],"url":"https://www.docontrol.io","linkedin":"https://www.linkedin.com/company/docontrol","signal":"Launched Dot, an AI SaaS data security assistant, June 2025","publish_after":null,"date_added":"2026-08-23","source":"https://aithority.com/security/docontrol-launches-first-ever-ai-powered-saas-data-security-assistant-dot/","is_house_product":false,"coming_soon":false},{"id":"doppler","name":"Doppler","slug":"doppler","logo":"","brief_summary":"Developer-first secrets platform that syncs env vars, rotates them, and logs who changed what.","description":"Doppler is the secrets manager teams adopt when Vault is too much ops. Projects, configs, and environments stay in sync across local, CI, and cloud, with rotation and activity logs. Change Requests added an approval path so production secret edits are not a Slack paste. CRV led the Series A. The product is still shipping in 2026 as a Doppler-vs-Infisical default for startups.","category":"secrets-identity","tags":["Series A","United States"],"hq":"San Francisco, United States","country":"United States","founded":"2018","funding_stage":"Series A","total_funding":"$29M","investors":["CRV","Sequoia","GV","Y Combinator"],"url":"https://www.doppler.com","linkedin":"https://www.linkedin.com/company/doppler","signal":"Launched Change Requests for approved secret edits, October 2024","publish_after":null,"date_added":"2026-08-23","source":"https://finance.yahoo.com/news/doppler-launches-change-requests-strengthen-150000621.html","is_house_product":false,"coming_soon":false},{"id":"dropzone-ai","name":"Dropzone AI","slug":"dropzone-ai","logo":"","brief_summary":"Software-only AI SOC analyst that investigates alerts without a managed service attached.","description":"Dropzone trains agents to do Tier-1 and Tier-2 investigation the way an ExtraHop detection engineer would, then sells that as software to in-house SOCs and MSSPs. It queries the customer's tools over APIs, shows its reasoning, and does not require playbooks. A 2026 Threat Hunter agent extends the same model from reactive tickets into federated hunts.","category":"detection-response","tags":["Series B","USA"],"hq":"Seattle, USA","country":"USA","founded":"2023","funding_stage":"Series B","total_funding":"$57M","investors":["Theory Ventures","Madrona","Decibel Partners","IQT"],"url":"https://www.dropzone.ai","linkedin":"https://www.linkedin.com/company/dropzone-ai","signal":"Raised $37M Series B led by Theory Ventures, July 2025","publish_after":null,"date_added":"2026-08-23","source":"https://www.geekwire.com/2025/seattle-startup-dropzone-raises-37m-to-supercharge-its-ai-soc-analyst-security-software/","is_house_product":false,"coming_soon":false},{"id":"easydmarc","name":"EasyDMARC","slug":"easydmarc","logo":"","brief_summary":"Self-serve DMARC, SPF, and DKIM platform for teams that need enforcement without a mail consultant.","description":"EasyDMARC collects aggregate reports, points at the senders that fail authentication, and walks a domain from monitor to quarantine to reject. MSPs use it as a managed service; in-house teams use it to stop spoofing of the corporate domain. Deliverability tooling sits next to the security view, because a broken SPF record is both a phishing hole and a bounce problem.","category":"email-collaboration","tags":["Series A","United States"],"hq":"Los Angeles, United States","country":"United States","founded":"2017","funding_stage":"Series A","total_funding":"$22.3M","investors":["Radian Capital"],"url":"https://easydmarc.com","linkedin":"https://www.linkedin.com/company/easydmarc","signal":"Raised $20M Series A led by Radian Capital, September 2024","publish_after":null,"date_added":"2026-08-23","source":"https://easydmarc.com/blog/easydmarc-secures-us20m-in-series-a-round/","is_house_product":false,"coming_soon":false},{"id":"endor-labs","name":"Endor Labs","slug":"endor-labs","logo":"","brief_summary":"Reachability-first AppSec: SAST and SCA that only page you when the vulnerable function is actually called.","description":"Endor built call graphs across open source and first-party code so a CVE in an unused helper does not become a sprint. The platform added AI SAST for logic flaws, a package firewall that blocks malware at install, and governance for Cursor, Claude Code, and other coding agents. Customers include OpenAI, Rubrik, and Snowflake.","category":"application-security","tags":["Series B","USA"],"hq":"Palo Alto, USA","country":"USA","founded":"2021","funding_stage":"Series B","total_funding":"$163M","investors":["DFJ Growth","Lightspeed","Coatue","Salesforce Ventures"],"url":"https://www.endorlabs.com","linkedin":"https://www.linkedin.com/company/endor-labs","signal":"Raised $93M Series B led by DFJ Growth, April 2025","publish_after":null,"date_added":"2026-08-23","source":"https://techcrunch.com/2025/04/23/endor-labs-which-builds-tools-to-scan-ai-generated-code-for-vulnerabilities-lands-93m/","is_house_product":false,"coming_soon":false},{"id":"escape","name":"Escape","slug":"escape","logo":"","brief_summary":"AI pentesting for APIs and web apps that proves exploitability, including IDOR and business logic, not just crawler noise.","description":"Escape inventories the API attack surface and then tries to break it with agentic testing that follows business flows, not only status-code fuzzing. Findings are meant to be reproducible for engineers and auditors, which is the gap between a DAST dump and a pentest. The 2026 round funds that agent loop so multi-tenant IDOR and authz bugs get the same automation as XSS.","category":"api-runtime","tags":["Series A","France"],"hq":"Paris, France","country":"France","founded":"2020","funding_stage":"Series A","total_funding":"$22M+","investors":["IRIS","Y Combinator","Kima Ventures"],"url":"https://escape.tech","linkedin":"https://www.linkedin.com/company/escape-technologies","signal":"Raised $18M to expand agentic pentesting for APIs and business logic, March 2026","publish_after":null,"date_added":"2026-08-23","source":"https://siliconangle.com/2026/03/10/escape-raises-18m-expand-ai-agent-platform-offensive-security-testing/","is_house_product":false,"coming_soon":false},{"id":"exaforce","name":"Exaforce","slug":"exaforce","logo":"","brief_summary":"Real-time knowledge graph plus Exabot agents that investigate and stop attacks as they happen.","description":"Exaforce builds a live graph of identity, code, and cloud state, then runs multi-model agents against that graph instead of against a SIEM search box. Design partners spent two years in private testing before a late-2025 commercial launch. The bet is that reasoning over structured environment state beats another LLM wrapper on ticket queues.","category":"detection-response","tags":["Series B","USA"],"hq":"San Jose, USA","country":"USA","founded":"2023","funding_stage":"Series B","total_funding":"$200M","investors":["Khosla Ventures","Mayfield","Peak XV Partners","HarbourVest"],"url":"https://www.exaforce.com","linkedin":"https://www.linkedin.com/company/exaforce","signal":"Raised $125M Series B at a $725M valuation, May 2026","publish_after":null,"date_added":"2026-08-23","source":"https://techcrunch.com/2026/05/12/exaforce-raises-125m-series-b-to-build-ai-for-catching-and-stopping-cyberattacks-as-they-happen/","is_house_product":false,"coming_soon":false},{"id":"expel","name":"Expel","slug":"expel","logo":"","brief_summary":"Vendor-agnostic MDR that works on the SIEM and EDR you already bought.","description":"Expel is the MDR that refuses to rip out your stack. Analysts plus its Ruxie agent sit on the customer's Sentinel, Splunk, CrowdStrike, or Panther and take containment actions under a published MTTR. 2026 coverage now includes the AI attack surface, so employee misuse of models and AI-assisted intrusions land in the same Workbench as classic endpoint alerts.","category":"detection-response","tags":["Series E","USA"],"hq":"Herndon, USA","country":"USA","founded":"2016","funding_stage":"Series E","total_funding":"$289M","investors":["Index Ventures","Battery Ventures","CapitalG","Scale Venture Partners"],"url":"https://expel.com","linkedin":"https://www.linkedin.com/company/expel-io","signal":"Launched MDR coverage for the full AI attack surface, August 2026","publish_after":null,"date_added":"2026-08-23","source":"https://www.cbinsights.com/company/expel","is_house_product":false,"coming_soon":false},{"id":"finite-state","name":"Finite State","slug":"finite-state","logo":"","brief_summary":"Product and firmware SBOM platform for the devices you buy and the binaries you did not compile.","description":"Finite State binary-analyzes firmware and connected products, then runs reachability-based triage so a 900-CVE SBOM is not the deliverable. EMEA expansion in 2025 is the CRA/NIS2 motion: manufacturers now need a living SBOM, not a spreadsheet for the auditor. 2026 Cybersecurity Stars for firmware security is the independent proof they are still the product-security supply-chain shop.","category":"supply-chain","tags":["Series B","USA"],"hq":"Columbus, USA","country":"USA","founded":"2017","funding_stage":"Series B","total_funding":"","investors":[],"url":"https://finitestate.io","linkedin":"https://www.linkedin.com/company/finite-state","signal":"Won Cybersecurity Stars award for firmware security leadership, June 2026","publish_after":null,"date_added":"2026-08-23","source":"https://www.businesswire.com/news/home/20260618409727/en/Finite-State-Wins-Cybersecurity-Stars-Award-for-Firmware-Security-Leadership","is_house_product":false,"coming_soon":false},{"id":"fleet","name":"Fleet","slug":"fleet","logo":"","brief_summary":"Open-source osquery control plane for Mac, Windows, Linux, and phones, cloud or self-hosted.","description":"Fleet is the device-management layer built on osquery that engineering-led companies use when Jamf plus SCCM plus a vulnerability scanner became a zoo. GitOps for endpoints, YAML for queries, and a real choice between SaaS and running it yourself. Stripe and other infra-heavy shops migrated onto it because the data model is SQL, not a vendor console.","category":"endpoint-browser","tags":["Series B","USA"],"hq":"San Francisco, USA","country":"USA","founded":"2020","funding_stage":"Series B","total_funding":"$52M","investors":["Ten Eleven Ventures","CRV","Open Core Ventures"],"url":"https://fleetdm.com","linkedin":"https://www.linkedin.com/company/fleetdm","signal":"Raised $27M Series B led by Ten Eleven Ventures, June 2025","publish_after":null,"date_added":"2026-08-23","source":"https://9to5mac.com/2025/06/17/fleet-lands-27m-series-b-to-expand-open-device-management-with-cloud-and-self-hosting-flexibility/","is_house_product":false,"coming_soon":false},{"id":"fortanix","name":"Fortanix","slug":"fortanix","logo":"","brief_summary":"Confidential computing and key management so data stays encrypted while AI and apps use it.","description":"Fortanix runs encryption, secrets, and confidential computing from one control plane across on-prem HSMs and public clouds. Workloads execute in hardware enclaves so keys and model weights are not readable by the host, a cloud admin, or a noisy neighbor. Banks and public-sector buyers use it when sovereignty rules say data-in-use is still their problem, not the hyperscaler's.","category":"data-security","tags":["Series C","United States"],"hq":"Santa Clara, United States","country":"United States","founded":"2016","funding_stage":"Series C","total_funding":"$122M","investors":["Goldman Sachs","Intel Capital","Foundation Capital","In-Q-Tel"],"url":"https://www.fortanix.com","linkedin":"https://www.linkedin.com/company/fortanix","signal":"Joined Cisco Secure AI Factory with NVIDIA for Confidential AI inference, June 2026","publish_after":null,"date_added":"2026-08-23","source":"https://www.fortanix.com/blog/fortanix-brings-confidential-ai-to-cisco-secure-ai-factory-with-nvidia","is_house_product":false,"coming_soon":false},{"id":"gitguardian","name":"GitGuardian","slug":"gitguardian","logo":"","brief_summary":"Secrets detection plus NHI lifecycle, from leaked keys in git to the agents still using them.","description":"GitGuardian started as the GitHub Marketplace scanner everyone installs, then expanded into internal repos, Slack, Jira, honeytokens, and NHI governance. It classifies 550-plus secret types and tracks whether a leaked credential is still live. Snowflake, ING, and BASF are named customers. The Series C is explicitly for AI-agent credentials, not another SAST feature.","category":"secrets-identity","tags":["Series C","France"],"hq":"Paris, France","country":"France","founded":"2017","funding_stage":"Series C","total_funding":"$108M","investors":["Insight Partners","Quadrille Capital","Balderton","Sapphire Ventures"],"url":"https://www.gitguardian.com","linkedin":"https://www.linkedin.com/company/gitguardian","signal":"Raised $50M Series C led by Insight Partners, February 2026","publish_after":null,"date_added":"2026-08-23","source":"https://blog.gitguardian.com/series-c-pr/","is_house_product":false,"coming_soon":false},{"id":"gray-swan","name":"Gray Swan","slug":"gray-swan","logo":"","brief_summary":"Frontier-lab red teaming (Shade) and runtime defense (Cygnal) trained on unpublished attacks.","description":"Gray Swan came out of Carnegie Mellon adversarial ML research and sells the same threat intel that labs use before a model ships. Shade runs LLM-based attackers against your model, guardrails, and tool wiring. Cygnal is the production classifier trained on those attacks, including findings from a public Arena of thousands of researchers, so defenses track the frontier instead of last year's jailbreak list.","category":"ai-security","tags":["Series A","USA"],"hq":"Pittsburgh, USA","country":"USA","founded":"2024","funding_stage":"Series A","total_funding":"$40M","investors":["Wing Venture Capital","Madrona","Obvious Ventures","Snowflake Ventures"],"url":"https://www.grayswan.ai","linkedin":"https://www.linkedin.com/company/grayswanai","signal":"Raised $40M Series A co-led by Wing and Madrona, May 2026","publish_after":null,"date_added":"2026-08-23","source":"https://www.grayswan.ai/news/gray-swan-announces-series-a","is_house_product":false,"coming_soon":false},{"id":"guardio","name":"Guardio","slug":"guardio","logo":"","brief_summary":"Consumer browser protection that treats everyday users like they deserve an enterprise SOC.","description":"Guardio is a browser extension and mobile layer for people, not CISOs. It blocks phishing, fake shops, and AI-generated scams in the tab, then adds posture extras such as leaked-document and missing-MFA checks. Three years of 100% ARR growth got it to a consumer cyber business that enterprise vendors still ignore, which is exactly the gap it is filling.","category":"endpoint-browser","tags":["Series B","Israel"],"hq":"Tel Aviv, Israel","country":"Israel","founded":"2018","funding_stage":"Series B","total_funding":"$127M","investors":["ION Crossover Partners","Tiger Global","Vintage Investment Partners"],"url":"https://guard.io","linkedin":"https://www.linkedin.com/company/guardio","signal":"Raised $80M Series B led by ION Crossover Partners, November 2025","publish_after":null,"date_added":"2026-08-23","source":"https://techcrunch.com/2025/11/19/security-startup-guardio-nabs-80m-from-ion-crossover-partners/","is_house_product":false,"coming_soon":false},{"id":"hadrian","name":"Hadrian","slug":"hadrian","logo":"","brief_summary":"Outside-in autonomous hacker that discovers, exploits, and validates external exposure continuously.","description":"Hadrian runs a Sense, Plan, Attack loop of hacker agents against the customer's internet-facing estate. The filter is supposed to be 100% validated, which is the only way an ASM feed becomes a CTEM program instead of another alert pile. Dutch origins show in the product: it behaves like a persistent pentest firm that never clocks out, not a port scanner with a dashboard.","category":"offensive-exposure","tags":["Seed","Netherlands"],"hq":"Amsterdam, Netherlands","country":"Netherlands","founded":"2021","funding_stage":"Seed","total_funding":"$14M","investors":["HV Capital","Village Global","ABN AMRO Ventures"],"url":"https://hadrian.io","linkedin":"https://www.linkedin.com/company/hadrian-security","signal":"Shipped Sense, Plan, Attack AI agents to operationalize CTEM, November 2025","publish_after":null,"date_added":"2026-08-23","source":"https://hadrian.io/blog/hadrians-sense-plan-attack-ai-agents-bring-ctem-to-enterprises","is_house_product":false,"coming_soon":false},{"id":"harfanglab","name":"HarfangLab","slug":"harfanglab","logo":"","brief_summary":"ANSSI-certified French EDR for buyers who cannot put a US cloud agent on sensitive endpoints.","description":"HarfangLab sells EPP plus EDR that runs in cloud or on-prem, with a detection stack certified for French and now German public-sector use. The 2025 Scout module added attack-surface discovery so unprotected machines show up next to the managed fleet. It is the European sovereign alternative to the CrowdStrike-class agents that ministries are not allowed to install.","category":"endpoint-browser","tags":["Series A","France"],"hq":"Paris, France","country":"France","founded":"2018","funding_stage":"Series A","total_funding":"$33M","investors":["Elaia","Credit Mutuel Innovation","MassMutual Ventures"],"url":"https://harfanglab.io","linkedin":"https://www.linkedin.com/company/harfanglab","signal":"Added Attack Surface Management to its endpoint platform, September 2025","publish_after":null,"date_added":"2026-08-23","source":"https://harfanglab.io/fr/press/harfanglab-integre-lattack-surface-management-a-sa-plateforme-de-cybersecurite-des-terminaux/","is_house_product":false,"coming_soon":false},{"id":"hiddenlayer","name":"HiddenLayer","slug":"hiddenlayer","logo":"","brief_summary":"Model scanner, attack simulation, and runtime firewall for agentic, generative, and predictive AI.","description":"HiddenLayer inventories AI apps and models, scans the artifacts they rest on, then red-teams and guards them in production. Runtime sits as a firewall that watches prompts, tool calls, and agent sessions without needing the customer's training data. Air-gapped packaging is aimed at classified and disconnected shops that cannot send model traffic to a SaaS broker.","category":"ai-security","tags":["Series A","USA"],"hq":"Austin, USA","country":"USA","founded":"2022","funding_stage":"Series A","total_funding":"$56M","investors":["M12","Moore Strategic Ventures","Ten Eleven Ventures","IBM Ventures"],"url":"https://www.hiddenlayer.com","linkedin":"https://www.linkedin.com/company/hiddenlayer","signal":"Selected to support the US DOE Prometheus initiative under the Genesis Mission, August 2026","publish_after":null,"date_added":"2026-08-23","source":"https://www.prnewswire.com/news-releases/hiddenlayer-selected-to-support-does-60-million-prometheus-initiative-under-the-genesis-mission-302853514.html","is_house_product":false,"coming_soon":false},{"id":"horizon3-ai","name":"Horizon3.ai","slug":"horizon3-ai","logo":"","brief_summary":"NodeZero autonomous pentest that exploits live networks the way an attacker would, continuously.","description":"Horizon3's NodeZero runs production-safe autonomous pentests across internal and external networks instead of scheduling a consultancy week. Findings are chained exploit paths, not a CVE dump, so the ticket is 'this is how we get to domain admin' rather than 'patch someday'. The same engine is now sold as AI-versus-AI security as attackers start automating the same recon.","category":"offensive-exposure","tags":["Series E","USA"],"hq":"San Francisco, USA","country":"USA","founded":"2019","funding_stage":"Series E","total_funding":"$429M","investors":["NEA","NightDragon","Craft Ventures","SignalFire"],"url":"https://horizon3.ai","linkedin":"https://www.linkedin.com/company/horizon3ai","signal":"Raised $250M Series E at a $2B-plus valuation, August 2026","publish_after":null,"date_added":"2026-08-23","source":"https://techcrunch.com/2026/08/03/horizon3-hits-2-billion-valuation-with-250m-series-e-as-ai-threats-escalate/","is_house_product":false,"coming_soon":false},{"id":"huntress","name":"Huntress","slug":"huntress","logo":"","brief_summary":"Managed EDR, identity, and SIEM for businesses that do not run a 24/7 SOC.","description":"Huntress sells an agentic managed security platform built for IT teams and MSPs, not Fortune-50 SOCs. Its own hunters sit on purpose-built EDR, ITDR, SIEM, and posture products and actually look at the persistent footholds commodity antivirus misses. The company is the rare MDR that still treats mid-market as the customer, not a leftover SKU.","category":"detection-response","tags":["Series D","USA"],"hq":"Columbia, USA","country":"USA","founded":"2015","funding_stage":"Series D","total_funding":"$300M","investors":["Kleiner Perkins","Meritech Capital","Sapphire Ventures"],"url":"https://www.huntress.com","linkedin":"https://www.linkedin.com/company/huntress-labs","signal":"Surpassed $250M ARR and 270,000 businesses protected, July 2026","publish_after":null,"date_added":"2026-08-23","source":"https://www.huntress.com/press-release/huntress-surpasses-250-million-in-arr","is_house_product":false,"coming_soon":false},{"id":"infisical","name":"Infisical","slug":"infisical","logo":"","brief_summary":"Open-source secrets manager you can self-host or run as SaaS, now adding agent-safe credential proxying.","description":"Infisical is the open-source Doppler alternative: secrets, configs, and access control with a self-hosted path that regulated teams actually want. YC-backed, Series A led by Elad Gil. Agent Proxy is the 2026 move, letting AI agents use services without holding the real secret. GitHub traction is the distribution, not a conference booth.","category":"secrets-identity","tags":["Series A","United States"],"hq":"San Francisco, United States","country":"United States","founded":"2022","funding_stage":"Series A","total_funding":"$19M","investors":["Elad Gil","Y Combinator","Gradient Ventures"],"url":"https://infisical.com","linkedin":"https://www.linkedin.com/company/infisical","signal":"Raised $16M Series A led by Elad Gil, June 2025","publish_after":null,"date_added":"2026-08-23","source":"https://infisical.com/blog/series-a","is_house_product":false,"coming_soon":false},{"id":"intezer","name":"Intezer","slug":"intezer","logo":"","brief_summary":"Forensic-grade AI SOC that investigates 100% of alerts, including the low-severity ones MDR skips.","description":"Intezer's ForensicAI treats code reuse and binary DNA as first-class evidence, then applies that method across SIEM, EDR, identity, cloud, and network alerts. The 2026 platform push is aimed at teams that have outgrown outsourced MDR: autonomous triage plus continuous detection engineering, with humans supervising rather than grinding tickets. The research claim is blunt: real threats hide in the alerts nobody reviews.","category":"detection-response","tags":["Series C","USA"],"hq":"New York, USA","country":"USA","founded":"2016","funding_stage":"Series C","total_funding":"$60M","investors":["Norwest Venture Partners","Intel Capital","OpenView","Magma Venture Partners"],"url":"https://www.intezer.com","linkedin":"https://www.linkedin.com/company/intezer","signal":"Expanded AI SOC platform for teams outgrowing MDR, March 2026","publish_after":null,"date_added":"2026-08-23","source":"https://www.globenewswire.com/news-release/2026/03/19/3259104/0/en/intezer-expands-ai-soc-platform-for-teams-outgrowing-mdr.html","is_house_product":false,"coming_soon":false},{"id":"ionix","name":"IONIX","slug":"ionix","logo":"","brief_summary":"External attack-surface platform that discovers cloud, subsidiary, and supply-chain assets, then validates which exposures are actually exploitable.","description":"IONIX, formerly Cyberpion, maps internet-facing assets including vendor-hosted and AI endpoints, then runs non-disruptive exploitability tests instead of dumping every open port. It ties findings to owners and can invoke compensating controls while the ticket is still in flight. Cloud accounts, on-prem, and third-party digital dependencies sit in the same inventory so a forgotten S3 or a hijackable domain is not a separate product.","category":"cloud-security","tags":["Series A","Israel"],"hq":"Tel Aviv, Israel","country":"Israel","founded":"2016","funding_stage":"Series A","total_funding":"$50M","investors":["U.S. Venture Partners","Team8","Hyperwise Ventures","Maor Investments"],"url":"https://www.ionix.io","linkedin":"https://www.linkedin.com/company/ionix-io","signal":"Added $15M to Series A, bringing total funding to $50.3M, February 2024","publish_after":null,"date_added":"2026-08-23","source":"https://techcrunch.com/2024/02/06/attack-surface-management-platform-ionix-adds-another-15m-to-its-27m-series-a-round/","is_house_product":false,"coming_soon":false},{"id":"ironscales","name":"IRONSCALES","slug":"ironscales","logo":"","brief_summary":"AI email security that mixes automated remediation with a network of admin-reported phishing.","description":"IRONSCALES sits in Microsoft 365 and Google Workspace to catch BEC, ATO, and credential harvests, then auto-remediates across mailboxes when one user reports a lure. The differentiator is the shared analyst network: detections improve from incidents other tenants already saw. Agentic SOC workflows now handle the inbox triage that used to burn a full-time analyst.","category":"email-collaboration","tags":["Series C","United States"],"hq":"Atlanta, United States","country":"United States","founded":"2013","funding_stage":"Series C","total_funding":"$80M","investors":["PSG","Jump Capital","K1"],"url":"https://ironscales.com","linkedin":"https://www.linkedin.com/company/ironscales","signal":"Launched Winter 2026 agentic release with Red Teaming, Phishing SOC, and Simulation agents, March 2026","publish_after":null,"date_added":"2026-08-23","source":"https://ironscales.com/news/ironscales-launches-three-ai-agents-to-help-security-teams-outsmart-bad-actors-and-agentic-cybercrime-in-the-era-of-phishing-3.0","is_house_product":false,"coming_soon":false},{"id":"island","name":"Island","slug":"island","logo":"","brief_summary":"Enterprise browser that embeds DLP, ZTNA, and last-mile control into Chromium instead of another VDI farm.","description":"Island ships a managed Chromium where IT can log work activity, isolate risky sites, and stop data leaving a SaaS tab without wrapping every app in a virtual desktop. Contractors and BYOD users get the same control plane without a full device MDM fight. The 2026 platform extends those controls to consumer browsers, desktop apps, and network access so the browser is not a one-off silo.","category":"email-collaboration","tags":["Series E","United States"],"hq":"Dallas, United States","country":"United States","founded":"2020","funding_stage":"Series E","total_funding":"$730M","investors":["Coatue","Sequoia","Insight Partners","Cyberstarts"],"url":"https://www.island.io","linkedin":"https://www.linkedin.com/company/island-io","signal":"Raised $250M Series E at a $4.8B valuation, March 2025","publish_after":null,"date_added":"2026-08-23","source":"https://www.island.io/press/island-secures-250-million-as-valuation-continues-to-soar-to-nearly-5-billion","is_house_product":false,"coming_soon":false},{"id":"jumpcloud","name":"JumpCloud","slug":"jumpcloud","logo":"","brief_summary":"Cloud directory that binds workforce identity, devices, and access without living on Active Directory.","description":"JumpCloud is an open directory for mixed Windows, Mac, Linux, and Android fleets: SSO, MFA, RADIUS, MDM, and now IGA and ITDR pieces bought rather than bolted on. It is the mid-market alternative to Microsoft Entra when shops want one place for users and machines. Recent buys of Stack Identity, VaultOne, and Breez push it into privilege, access visibility, and identity threat detection.","category":"identity-access","tags":["Series F","United States"],"hq":"Louisville, United States","country":"United States","founded":"2012","funding_stage":"Series F","total_funding":"$400M+","investors":["Sapphire Ventures","General Atlantic","BlackRock"],"url":"https://jumpcloud.com","linkedin":"https://www.linkedin.com/company/jumpcloud","signal":"Acquired Breez to add identity threat detection, October 2025","publish_after":null,"date_added":"2026-08-23","source":"https://www.prnewswire.com/news-releases/jumpcloud-accelerates-security-roadmap-with-acquisition-of-breez-302592299.html","is_house_product":false,"coming_soon":false},{"id":"keep-aware","name":"Keep Aware","slug":"keep-aware","logo":"","brief_summary":"Browser detection and response that watches behavior inside existing Chrome and Edge sessions.","description":"Keep Aware deploys as an extension, not a replacement browser, and feeds SOC-grade telemetry on phishing, extension risk, and shadow AI into the tools security teams already run. The product is observability-first: see what employees actually do in the tab, then block the move. A 2026 partnership with HERE puts that detection layer inside a governed enterprise browser as well.","category":"endpoint-browser","tags":["Seed","USA"],"hq":"Austin, USA","country":"USA","founded":"2022","funding_stage":"Seed","total_funding":"$2.4M","investors":["LiveOak Ventures"],"url":"https://keepaware.com","linkedin":"https://www.linkedin.com/company/keep-aware","signal":"Published The State of Browser Security Report 2026 from production telemetry","publish_after":null,"date_added":"2026-08-23","source":"https://keepaware.com/resources/guides/the-state-of-browser-security-report-2026","is_house_product":false,"coming_soon":false},{"id":"knostic","name":"Knostic","slug":"knostic","logo":"","brief_summary":"Need-to-know access control so Copilots, coding agents, and MCP tools stop oversharing.","description":"Knostic's bet is that most enterprise AI leaks are authorization bugs, not jailbreaks. It discovers agents and IDE add-ons, then enforces need-to-know on what they can retrieve from M365, Glean, and similar stores. AgentMesh extends that to MCP servers, skills, and editor extensions, which is the identity layer those tools still do not have natively.","category":"ai-security","tags":["Seed","Israel"],"hq":"Tel Aviv, Israel","country":"Israel","founded":"2023","funding_stage":"Seed","total_funding":"$11M","investors":[],"url":"https://www.knostic.ai","linkedin":"https://www.linkedin.com/company/knostic","signal":"Raised $11M to ship need-to-know controls for enterprise AI, March 2025","publish_after":null,"date_added":"2026-08-23","source":"https://siliconangle.com/2025/03/05/knostic-raises-11m-strengthen-enterprise-ai-security-need-know-access-controls/","is_house_product":false,"coming_soon":false},{"id":"kodem","name":"Kodem","slug":"kodem","logo":"","brief_summary":"Runtime-backed AppSec that proves a CVE is loaded in memory before it hits the backlog.","description":"Kodem watches the live workload, not the lockfile, and asks whether the vulnerable function actually executed. That runtime evidence is how it claims 90-percent-plus noise cuts versus classic SCA. The same memory view now attributes actions to AI agents inside the process, so a tool call is not a black box. Greylock led the Series A after co-leading seed.","category":"application-security","tags":["Series A","Israel"],"hq":"Tel Aviv, Israel","country":"Israel","founded":"2021","funding_stage":"Series A","total_funding":"$25M","investors":["Greylock","TPY Capital"],"url":"https://www.kodemsecurity.com","linkedin":"https://www.linkedin.com/company/kodem","signal":"Published Rapyd case study showing runtime-led AppSec without extra headcount, July 2025","publish_after":null,"date_added":"2026-08-23","source":"https://www.kodemsecurity.com/case-studies/scaling-appsec-without-scaling-headcount-how-rapyd-used-kodem-to-shift-from-volume-to-impact","is_house_product":false,"coming_soon":false},{"id":"lasso-security","name":"Lasso Security","slug":"lasso-security","logo":"","brief_summary":"Discovery, posture, automated red team, and gateway runtime for models and agents.","description":"Lasso builds an AI-BOM of apps, agents, and the MCP tools they call, then scores misconfig against OWASP and NIST. Red teaming is bundled with a runtime proxy so a finding can become a block without a second product. The company has been shipping agentic-era briefs and an intent-security framework through 2026, which is the category the seed round was aimed at before agents were a budget line.","category":"ai-security","tags":["Seed","Israel"],"hq":"Tel Aviv, Israel","country":"Israel","founded":"2023","funding_stage":"Seed","total_funding":"$6M","investors":["Entree Capital","Samsung Next"],"url":"https://www.lasso.security","linkedin":"https://www.linkedin.com/company/lasso-security","signal":"Published Securing Agentic AI: The Intent Security Framework, March 2026","publish_after":null,"date_added":"2026-08-23","source":"https://www.lasso.security/","is_house_product":false,"coming_soon":false},{"id":"legit-security","name":"Legit Security","slug":"legit-security","logo":"","brief_summary":"AI-native ASPM that discovers the software factory, then VibeGuard blocks bad AI code in the IDE.","description":"Legit maps CI/CD, source, artifacts, and shadow AI tools, then correlates native SAST/SCA with whatever scanners you already bought. VibeGuard sits in Cursor and Copilot and stops secrets, policy breaks, and unsafe patterns before commit. Remediation agents open tickets with context instead of dumping CVSS 9.8 on a random owner.","category":"application-security","tags":["Series B","Israel"],"hq":"Tel Aviv, Israel","country":"Israel","founded":"2020","funding_stage":"Series B","total_funding":"$70M","investors":["CRV","Bessemer Venture Partners","TCV","CyberStarts"],"url":"https://www.legitsecurity.com","linkedin":"https://www.linkedin.com/company/legit-security","signal":"Shipped VibeGuard to secure AI-generated code at the developer endpoint, 2026","publish_after":null,"date_added":"2026-08-23","source":"https://www.legitsecurity.com/security-governance-for-ai-generated-code-legit-vibeguard","is_house_product":false,"coming_soon":false},{"id":"levo-ai","name":"Levo.ai","slug":"levo-ai","logo":"","brief_summary":"Runtime API and AI security with eBPF visibility, agentless discovery, and inline protection that stays off the data path for privacy.","description":"Levo discovers APIs from traffic and now from agentless outside-in scans, then adds runtime detection and zero-latency blocking. 2026 launch week stacked MCP discovery, MCP testing, an AI firewall, and an AI gateway on the same fabric. The architecture claim is that sensitive payloads never leave the customer environment, which is how they sell against SaaS API sensors that ingest request bodies.","category":"api-runtime","tags":["United States"],"hq":"San Francisco, United States","country":"United States","founded":"2021","funding_stage":"","total_funding":"","investors":[],"url":"https://www.levo.ai","linkedin":"https://www.linkedin.com/company/levo-inc","signal":"Shipped Launch Week 2026 with AI Firewall, AI Gateway, and MCP discovery and testing, February 2026","publish_after":null,"date_added":"2026-08-23","source":"https://www.levo.ai/resources/product-release/launch-week-2026-recap","is_house_product":false,"coming_soon":false},{"id":"lineaje","name":"Lineaje","slug":"lineaje","logo":"","brief_summary":"AI-driven lineage of every component, including the ones hiding in firmware and public-sector stacks.","description":"Lineaje (lineage, phonetically) graphs how a package, container, or firmware blob got into production and whether it is still reachable. Public-sector and SBIR work is a real wedge: they sell to people who must produce an SBOM and then do something with it. The 2024 Series A was explicitly to scale that US government motion through 2027.","category":"supply-chain","tags":["Series A","USA"],"hq":"Santa Clara, USA","country":"USA","founded":"2021","funding_stage":"Series A","total_funding":"$27M","investors":["Prosperity7 Ventures","Neotribe","Hitachi","Tenable Ventures"],"url":"https://www.lineaje.com","linkedin":"https://www.linkedin.com/company/lineaje","signal":"Raised $20M Series A co-led by Prosperity7, Neotribe, and Hitachi, July 2024","publish_after":null,"date_added":"2026-08-23","source":"https://techcrunch.com/2024/07/30/lineaje-raises-20m-to-help-organizations-combat-software-supply-chain-threats/","is_house_product":false,"coming_soon":false},{"id":"lumos","name":"Lumos","slug":"lumos","logo":"","brief_summary":"Autonomous IGA that reviews, provisions, and rightsizes access for people, NHIs, and AI agents.","description":"Lumos started as an internal app store and grew into identity governance: lifecycle, access reviews, privileged access, and SaaS spend in one console. Albus and the later Identity Agent Force are the company's bet that reviews should run continuously instead of as a quarterly spreadsheet. It sits in the modern IGA set next to ConductorOne and Opal, with a stronger IT-ops flavor.","category":"identity-access","tags":["Series B","United States"],"hq":"San Francisco, United States","country":"United States","founded":"2020","funding_stage":"Series B","total_funding":"$65M","investors":["Scale Venture Partners","Andreessen Horowitz","Harpoon"],"url":"https://www.lumos.com","linkedin":"https://www.linkedin.com/company/lumosidentity","signal":"Launched Identity Agent Force to govern human, NHI, and AI access, June 2026","publish_after":null,"date_added":"2026-08-23","source":"https://www.lumos.com/blog/pr-lumos-launches-identity-agent-force-govern-access-every-human-nhi-ai","is_house_product":false,"coming_soon":false},{"id":"manifest","name":"Manifest","slug":"manifest","logo":"","brief_summary":"SBOM and AIBOM intelligence so you can actually use the bills of materials you generate.","description":"Manifest (DoD, CISA, and Palantir alumni) treats SBOMs as an operational dataset: ingest, analyze, and act when a new CVE or malicious package hits a component you already shipped. AIBOMs extend that to model and agent ingredients, which most SCA tools still ignore. A 2025 pairing with NetRise is source-to-firmware coverage rather than another SBOM PDF warehouse.","category":"supply-chain","tags":["Series A","USA"],"hq":"Washington, USA","country":"USA","founded":"2022","funding_stage":"Series A","total_funding":"$23M","investors":["Ensemble VC","First Round Capital","Homebrew","AE Ventures"],"url":"https://www.manifestcyber.com","linkedin":"https://www.linkedin.com/company/manifestcyber","signal":"Raised $15M Series A led by Ensemble VC, April 2025","publish_after":null,"date_added":"2026-08-23","source":"https://www.securityweek.com/manifest-raises-15-million-for-sbom-management-platform/","is_house_product":false,"coming_soon":false},{"id":"material-security","name":"Material Security","slug":"material-security","logo":"","brief_summary":"Workspace security for Google and Microsoft 365 that assumes the mailbox will get owned and limits the blast.","description":"Material treats Gmail, Drive, and Outlook as the production environment: it redacts sensitive mail, gates risky OAuth, and hunts post-compromise activity after MFA has already been bypassed. The product is API-based, so there is no MX cutover. Research on zombie OAuth tokens and real incidents like Composio is how they argue that inbox security is now identity and data access, not just phishing.","category":"email-collaboration","tags":["Series C","United States"],"hq":"San Francisco, United States","country":"United States","founded":"2017","funding_stage":"Series C","total_funding":"$100M+","investors":["Founders Fund","Andreessen Horowitz"],"url":"https://material.security","linkedin":"https://www.linkedin.com/company/material-security","signal":"Published original analysis of the May 2026 Composio Gmail OAuth token breach, June 2026","publish_after":null,"date_added":"2026-08-23","source":"https://material.security/resources/the-composio-breach-one-token-10242-doors","is_house_product":false,"coming_soon":false},{"id":"mind","name":"MIND","slug":"mind","logo":"","brief_summary":"AI-native DLP and insider risk that classifies, then blocks exfil at the endpoint without a policy farm.","description":"MIND unifies posture (where sensitive data lives) with prevention (stopping the copy, upload, or prompt that would leak it). An endpoint agent plus a multi-layer classifier is built to drive false positives toward zero so analysts are not tuning regex overnight. The pitch is autopilot DLP for an AI workplace, not another console that only reports after the file has left.","category":"data-security","tags":["Series A","United States"],"hq":"Seattle, United States","country":"United States","founded":"2023","funding_stage":"Series A","total_funding":"$40M+","investors":["Paladin Capital","Crosspoint Capital","YL Ventures","Okta Ventures"],"url":"https://mind.io","linkedin":"https://www.linkedin.com/company/mindsecurity","signal":"Raised $30M Series A seven months after stealth, June 2025","publish_after":null,"date_added":"2026-08-23","source":"https://mind.io/newsroom/mind-raises-usd30m-series-a-funding-to-deliver-autonomous-data-loss-prevention-through-ai","is_house_product":false,"coming_soon":false},{"id":"mindgard","name":"Mindgard","slug":"mindgard","logo":"","brief_summary":"Attacker-style recon and automated red team for models, agents, IDEs, and the systems around them.","description":"Spun out of Lancaster University research, Mindgard maps the AI attack surface first, then exploits it the way a human red team would. Public disclosures (Cursor, Google Antigravity, Sora, Grok) feed a private knowledge base so scans are not just prompt-injection bingo. Runtime protection and CI/CD hooks sit on top of that same recon so findings can be retested after a fix.","category":"ai-security","tags":["Series A","United Kingdom"],"hq":"London, United Kingdom","country":"United Kingdom","founded":"2022","funding_stage":"Series A","total_funding":"$42M","investors":["Album VC","Karma Ventures",".406 Ventures","Lakestar"],"url":"https://mindgard.ai","linkedin":"https://www.linkedin.com/company/mindgard","signal":"Raised $30M Series A led by Album VC, August 2026","publish_after":null,"date_added":"2026-08-23","source":"https://www.securityweek.com/mindgard-raises-30-million-to-protect-ai-systems/","is_house_product":false,"coming_soon":false},{"id":"mitiga","name":"Mitiga","slug":"mitiga","logo":"","brief_summary":"Cloud, SaaS, identity, and AI detection and response with a forensic lake built for attacks that never touch an endpoint agent.","description":"Mitiga started as cloud incident response and now ships Helios AIDR to detect, decode, and cut attack chains across IaaS, SaaS, identity, and AI services. It keeps more than 1,000 days of activity so investigations do not die when the cloud log window rolls off. The same stack still runs emergency IR when a customer is already in a live cloud or SaaS breach.","category":"cloud-security","tags":["Series B","United States"],"hq":"New York, United States","country":"United States","founded":"2019","funding_stage":"Series B","total_funding":"$82M","investors":["SYN Ventures","ClearSky","Atlantic Bridge","Blackstone","Cisco Investments"],"url":"https://www.mitiga.io","linkedin":"https://www.linkedin.com/company/mitiga-io","signal":"Raised $30M Series B led by SYN Ventures, January 2025","publish_after":null,"date_added":"2026-08-23","source":"https://www.calcalistech.com/ctechnews/article/h16yompdkg","is_house_product":false,"coming_soon":false},{"id":"netrise","name":"NetRise","slug":"netrise","logo":"","brief_summary":"Firmware and binary SBOM that unpacks what vendors actually shipped, not what the datasheet claimed.","description":"NetRise's Turbine rips firmware and binaries for components, crypto, licenses, and vulns that never show up in an application SCA scan. That is how you do supply-chain risk for OT, medical, and anything with a blob you did not compile. Inc. 5000 in 2026 is the growth tell after a $10M Series A in 2025.","category":"supply-chain","tags":["Series A","USA"],"hq":"Austin, USA","country":"USA","founded":"2020","funding_stage":"Series A","total_funding":"$25M","investors":["Squadra Ventures"],"url":"https://www.netrise.io","linkedin":"https://www.linkedin.com/company/netrise","signal":"Raised $10M Series A, taking total funding to about $25M, April 2025","publish_after":null,"date_added":"2026-08-23","source":"https://siliconangle.com/2025/04/15/netrise-raises-10-million-expand-software-supply-chain-security-platform/","is_house_product":false,"coming_soon":false},{"id":"nightfall-ai","name":"Nightfall AI","slug":"nightfall-ai","logo":"","brief_summary":"AI-native DLP for SaaS, endpoints, browsers, and GenAI prompts that learns from investigations.","description":"Nightfall watches Slack, GitHub, Google Drive, email, and endpoints for PII, secrets, and IP using ML classifiers instead of a regex museum. The Nyx copilot investigates incidents, tunes policies, and remembers past cases so analysts are not restarting every ticket. Coverage now includes AI coding tools and CLIs, which is where data leaves the browser and most DLP goes blind.","category":"data-security","tags":["Series B","United States"],"hq":"San Francisco, United States","country":"United States","founded":"2018","funding_stage":"Series B","total_funding":"$60M","investors":["Bain Capital Ventures","Venrock","WestBridge Capital"],"url":"https://www.nightfall.ai","linkedin":"https://www.linkedin.com/company/nightfall-ai","signal":"Launched Nyx, an autonomous DLP copilot, July 2025","publish_after":null,"date_added":"2026-08-23","source":"https://www.prnewswire.com/news-releases/nightfall-unveils-first-ai-native-dlp-copilot-to-pave-the-way-for-autonomous-security-302517417.html","is_house_product":false,"coming_soon":false},{"id":"noma-security","name":"Noma Security","slug":"noma-security","logo":"","brief_summary":"AI-SPM, agent access control, red team, and AI-DR in one control plane for homegrown and SaaS agents.","description":"Noma finds agents, models, MCP servers, and tools across cloud, SaaS, and developer endpoints, then lets security write an 'AI constitution' for what those agents may touch. Open Enforcement pushes that policy into existing gateways, hooks, and SDKs instead of forcing every prompt through a new chokepoint. AI-DR reconstructs the full session chain so a single tool call that looks normal can still be blocked as exfil or scope creep.","category":"ai-security","tags":["Series B","USA"],"hq":"New York, USA","country":"USA","founded":"2023","funding_stage":"Series B","total_funding":"$132M","investors":["Evolution Equity Partners","Ballistic Ventures","Glilot Capital"],"url":"https://www.noma.security","linkedin":"https://www.linkedin.com/company/noma-security","signal":"Raised $100M Series B led by Evolution Equity Partners, July 2025","publish_after":null,"date_added":"2026-08-23","source":"https://www.prnewswire.com/news-releases/noma-security-raises-100m-to-drive-adoption-of-ai-agent-security-302518641.html","is_house_product":false,"coming_soon":false},{"id":"obsidian-security","name":"Obsidian Security","slug":"obsidian-security","logo":"","brief_summary":"SaaS identity and agent governance inside the third-party apps where work actually happens.","description":"Obsidian watches identities, privileges, and agent behavior in Salesforce, Workday, Slack, GitHub, and the AI platforms plugged into them. Runtime controls are meant to stop a Copilot or Claude agent from dumping or deleting production data. T-Mobile, Workday, and S&P Global are named customers. The Series D pushed the company to a $1.1B valuation.","category":"identity-access","tags":["Series D","United States"],"hq":"Palo Alto, United States","country":"United States","founded":"2017","funding_stage":"Series D","total_funding":"$204M","investors":["Crescent Cove","Greylock","Menlo Ventures","GV"],"url":"https://www.obsidiansecurity.com","linkedin":"https://www.linkedin.com/company/obsidiansecurity","signal":"Raised $85M Series D at $1.1B valuation, August 2026","publish_after":null,"date_added":"2026-08-23","source":"https://www.reuters.com/technology/obsidian-security-raises-funding-11-billion-valuation-ai-security-demand-2026-08-04/","is_house_product":false,"coming_soon":false},{"id":"oligo-security","name":"Oligo Security","slug":"oligo-security","logo":"","brief_summary":"Application detection and response that watches live code execution and blocks exploits as they run.","description":"Oligo instruments production workloads to see which libraries actually execute, then matches that against known and in-the-wild exploit paths. The point is runtime truth: a CVE in a dependency that never loads is noise, a function that is being hit is not. The latest round funds the same deep inspection for AI agents, which fail in ways a container scanner never modeled.","category":"api-runtime","tags":["Series B","Israel"],"hq":"Tel Aviv, Israel","country":"Israel","founded":"2022","funding_stage":"Series B","total_funding":"$140M","investors":["Ballistic Ventures","Lightspeed","TLV Partners","Greenfield Partners"],"url":"https://www.oligo.security","linkedin":"https://www.linkedin.com/company/oligo-security","signal":"Raised $60M, crossing $140M in total funding, August 2026","publish_after":null,"date_added":"2026-08-23","source":"https://www.bankinfosecurity.com/oligo-raises-60m-to-extend-runtime-security-to-ai-agents-a-32556","is_house_product":false,"coming_soon":false},{"id":"opal-security","name":"Opal Security","slug":"opal-security","logo":"","brief_summary":"Policy-as-code access control plane for employees, service accounts, and AI agents.","description":"Opal puts requests, reviews, and revocation on one graph so standing access does not pile up. Paladin, its access engine, auto-decides routine grants and escalates the rest. Databricks, Notion, Cloudflare, and Elastic are named users. Howard Ting took over as CEO in late 2025 and the 2026 round funded a product and GTM rebuild around agent identities.","category":"identity-access","tags":["Series B","United States"],"hq":"New York, United States","country":"United States","founded":"2020","funding_stage":"Series B","total_funding":"$59M","investors":["Greylock","Battery Ventures","Box Group"],"url":"https://www.opal.dev","linkedin":"https://www.linkedin.com/company/opal-security","signal":"Raised $23M and hired a new product bench, June 2026","publish_after":null,"date_added":"2026-08-23","source":"https://www.opal.dev/media-press/opal-security-raises-23m-new-leadership","is_house_product":false,"coming_soon":false},{"id":"orca-security","name":"Orca Security","slug":"orca-security","logo":"","brief_summary":"Agentless CNAPP that SideScans cloud disks and APIs for the full estate without installing a workload agent.","description":"Orca reads block storage and cloud APIs to inventory workloads, identities, data, and AI resources across AWS, Azure, Google Cloud, and Kubernetes in hours. Attack-path scoring then ranks which misconfigs, secrets, and CVEs actually reach crown-jewel assets. The same graph now covers AI inventory and AI-generated apps, so shadow models show up next to the VM that hosts them.","category":"cloud-security","tags":["Series C","United States"],"hq":"Portland, United States","country":"United States","founded":"2019","funding_stage":"Series C","total_funding":"$640M","investors":["ICONIQ","Redpoint","CapitalG","YL Ventures","Temasek"],"url":"https://orca.security","linkedin":"https://www.linkedin.com/company/orca-security","signal":"Named a Strong Performer in The Forrester Wave: Cloud Native Application Protection Solutions, Q1 2026","publish_after":null,"date_added":"2026-08-23","source":"https://orca.security/resources/blog/forrester-wave-cnapp-2026-strong-performer/","is_house_product":false,"coming_soon":false},{"id":"ox-security","name":"OX Security","slug":"ox-security","logo":"","brief_summary":"Prompt-to-runtime AppSec that tries to show only the 5 percent of findings that can actually breach you.","description":"OX unifies SAST, SCA, secrets, ASPM, and cloud runtime so a finding is always tied back to a line of code. Prioritization uses reachability and exploitability rather than raw CVE counts, which is the pitch against Checkmarx-and-Snyk noise. VibeSec and an agentic pentester extend that into AI-written code and live attack surface. Founded by former Check Point security leads.","category":"application-security","tags":["Series B","USA"],"hq":"New York, USA","country":"USA","founded":"2021","funding_stage":"Series B","total_funding":"$94M","investors":["DTCP","Team8","IBM Ventures","Microsoft"],"url":"https://www.ox.security","linkedin":"https://www.linkedin.com/company/ox-security","signal":"Raised $60M Series B led by DTCP, taking total funding to $94M, May 2025","publish_after":null,"date_added":"2026-08-23","source":"https://techcrunch.com/2025/05/07/ox-security-lands-a-fresh-60m-to-scan-for-vulnerabilities-in-code/","is_house_product":false,"coming_soon":false},{"id":"p0-security","name":"P0 Security","slug":"p0-security","logo":"","brief_summary":"Cloud IGA and PAM that answers who or what can touch production, then enforces it at runtime.","description":"P0 is an agentless control plane for cloud identities: IAM roles, service accounts, and the humans who assume them. Deploy is measured in minutes, then the product maps entitlements and puts just-in-time and least-privilege in front of sensitive resources. The 2026 product line leans into runtime authorization for agents inheriting a user's cloud permissions.","category":"identity-access","tags":["Series A","United States"],"hq":"San Francisco, United States","country":"United States","founded":"2022","funding_stage":"Series A","total_funding":"$20M","investors":["SYN Ventures","Lightspeed","Zscaler"],"url":"https://www.p0.dev","linkedin":"https://www.linkedin.com/company/p0-security","signal":"Closed $15M Series A led by SYN Ventures, September 2024","publish_after":null,"date_added":"2026-08-23","source":"https://p0.dev/blog/15m-series-a/","is_house_product":false,"coming_soon":false},{"id":"pentera","name":"Pentera","slug":"pentera","logo":"","brief_summary":"Automated security validation that actually exploits attack paths inside the customer's network.","description":"Pentera (formerly Pcysys) runs real exploits in production to prove which findings are reachable, then ranks them by blast radius. That is the difference from BAS vendors that simulate a payload and stop. Resolve (after the DevOcean buy) and a 2026 AI red-team tuck-in push the same platform from 'validated exposure' into ticketed remediation.","category":"offensive-exposure","tags":["Series D","USA"],"hq":"Burlington, USA","country":"USA","founded":"2015","funding_stage":"Series D","total_funding":"$250M","investors":["Evolution Equity Partners","AWZ Ventures","Blackstone"],"url":"https://pentera.io","linkedin":"https://www.linkedin.com/company/pentera","signal":"Raised $60M Series D led by Evolution Equity Partners, March 2025","publish_after":null,"date_added":"2026-08-23","source":"https://www.prnewswire.com/il/news-releases/pentera-secures-60m-to-lead-security-validation-market-consolidation-and-drive-next-phase-of-growth-302399599.html","is_house_product":false,"coming_soon":false},{"id":"picus-security","name":"Picus Security","slug":"picus-security","logo":"","brief_summary":"Breach-and-attack simulation plus autonomous pentest that scores whether controls actually stop the attack.","description":"Picus maps techniques to MITRE ATT&CK, fires them safely at the live stack, and tells you which prevention and detection controls failed. Autonomous pentest and exposure validation sit on the same platform so CTEM is not a slideware overlay on a BAS library. The 2026 Autonomous Validation Summit is the company arguing that validation has to run at attacker speed, not quarterly.","category":"offensive-exposure","tags":["Series C","USA"],"hq":"San Francisco, USA","country":"USA","founded":"2013","funding_stage":"Series C","total_funding":"","investors":[],"url":"https://www.picussecurity.com","linkedin":"https://www.linkedin.com/company/picus-security","signal":"Raised $45M Series C to lead adversarial exposure validation, September 2024","publish_after":null,"date_added":"2026-08-23","source":"https://www.picussecurity.com/resource/press-release/series-c-funding","is_house_product":false,"coming_soon":false},{"id":"pillar-security","name":"Pillar Security","slug":"pillar-security","logo":"","brief_summary":"Inventory, agentic red team, and self-improving runtime guardrails for the agent lifecycle.","description":"Pillar fingerprints agents, models, MCP servers, and skills, including the shadow ones. Multi-turn red teaming proves tool-orchestration and permission-escalation paths, then those transcripts calibrate runtime guardrails instead of sitting in a PDF. The same platform covers homegrown apps, coding agents, and AI gateways so AppSec is not running three vendors for one agent.","category":"ai-security","tags":["Seed","USA"],"hq":"Miami, USA","country":"USA","founded":"2023","funding_stage":"Seed","total_funding":"$9M","investors":["Shield Capital","Golden Ventures","Ground Up Ventures"],"url":"https://www.pillar.security","linkedin":"https://www.linkedin.com/company/pillarsecurity","signal":"Named a 2026 Gartner Cool Vendor in AI Software Security","publish_after":null,"date_added":"2026-08-23","source":"https://www.pillar.security/blog/pillar-security-named-as-a-2026-gartner-r-cool-vendor-in-ai-software-security","is_house_product":false,"coming_soon":false},{"id":"pixee","name":"Pixee","slug":"pixee","logo":"","brief_summary":"Agentic AppSec that triages scanner noise and opens mergeable fix PRs in your house style.","description":"Pixee is the resolution layer, not another detector. It ingests SAST and SCA findings, drops false positives by tracing execution paths, and writes convention-aware patches that pass CI. Foresight reviews designs before AI coding agents generate the next backlog. Founders previously built Contrast Security.","category":"application-security","tags":["Seed","USA"],"hq":"Baltimore, USA","country":"USA","founded":"2022","funding_stage":"Seed","total_funding":"$15M","investors":["Decibel","Wing VC","TEDCO"],"url":"https://www.pixee.ai","linkedin":"https://www.linkedin.com/company/pixee","signal":"Raised $15M seed led by Decibel and Wing VC, May 2025","publish_after":null,"date_added":"2026-08-23","source":"https://www.businesswire.com/news/home/20250522057559/en/Pixee-Raises-%2415M-to-Automate-Code-Security-to-Meet-the-Velocity-of-GenAI-Enabled-Developers","is_house_product":false,"coming_soon":false},{"id":"privacera","name":"Privacera","slug":"privacera","logo":"","brief_summary":"Fine-grained data access and AI governance from the team that built Apache Ranger.","description":"Privacera sits in front of Snowflake, Databricks, and cloud warehouses to enforce who can query which column, with masking and purpose controls attached. The same policy fabric now covers generative AI through PAIG, so prompts and retrieval do not bypass table-level grants. It is access enforcement, not another scanner that only tells you the data exists.","category":"data-security","tags":["Series B","United States"],"hq":"Newark, United States","country":"United States","founded":"2016","funding_stage":"Series B","total_funding":"$63.5M","investors":["Accel","Insight Partners","Battery Ventures","Sapphire Ventures"],"url":"https://privacera.com","linkedin":"https://www.linkedin.com/company/privacera","signal":"Shipped major PAIG updates aligned to the NIST AI RMF, February 2025","publish_after":null,"date_added":"2026-08-23","source":"https://www.prnewswire.com/news-releases/privacera-announces-major-updates-to-paig-aligning-with-nist-to-strengthen-ai-governance-and-risk-management-302379674.html","is_house_product":false,"coming_soon":false},{"id":"prophet-security","name":"Prophet Security","slug":"prophet-security","logo":"","brief_summary":"Agentic SOC platform covering investigation, hunting, and detection engineering in one mesh.","description":"Prophet ships three coordinated agents: an analyst that investigates alerts, a hunter that proposes hypotheses, and a detection advisor that tunes coverage against ATT&CK. The founders previously ran StackRox. It is software for teams that want autonomy with an evidence trail, not a black-box MDR replacement.","category":"detection-response","tags":["Series A","USA"],"hq":"Menlo Park, USA","country":"USA","founded":"2023","funding_stage":"Series A","total_funding":"$41M","investors":["Accel","Bain Capital Ventures"],"url":"https://www.prophetsecurity.ai","linkedin":"https://www.linkedin.com/company/prophet-security","signal":"Raised $30M Series A led by Accel, July 2025","publish_after":null,"date_added":"2026-08-23","source":"https://www.businesswire.com/news/home/20250729681026/en/Prophet-Security-Raises-%2430M-Series-A-Announces-Industrys-Most-Comprehensive-Agentic-AI-SOC-Platform-to-Transform-Security-Operations","is_house_product":false,"coming_soon":false},{"id":"push-security","name":"Push Security","slug":"push-security","logo":"","brief_summary":"Browser-native ITDR that stops phishing, token theft, and account takeover where the session lives.","description":"Push is a security extension on the browsers people already use, not a new enterprise browser to migrate to. It watches for stolen cookies, missing MFA, non-SSO logins, and SaaS session hijacks, then blocks or alerts in real time. KuppingerCole tagged it as an ITDR rising star. The company says the agent is on more than 1.5 million endpoints.","category":"identity-access","tags":["Series B","United States"],"hq":"Boston, United States","country":"United States","founded":"2019","funding_stage":"Series B","total_funding":"$49M","investors":["Redpoint Ventures","GV","Datadog Ventures"],"url":"https://pushsecurity.com","linkedin":"https://www.linkedin.com/company/pushsecurity","signal":"Raised $30M Series B led by Redpoint Ventures, April 2025","publish_after":null,"date_added":"2026-08-23","source":"https://pushsecurity.com/news/push-security-secures-30-million-series-b-funding","is_house_product":false,"coming_soon":false},{"id":"qevlar-ai","name":"Qevlar AI","slug":"qevlar-ai","logo":"","brief_summary":"European agentic SOC that turns every alert investigation into posture insight.","description":"Qevlar was founded by two AI engineers who watched SOCs drown in triage and miss root cause. The platform investigates the full queue, then mines those investigations for the control gaps that keep generating the same tickets. Traction is with European MSSPs and Global 500 names rather than the usual Bay Area design-partner loop.","category":"detection-response","tags":["Series A","France"],"hq":"Paris, France","country":"France","founded":"2023","funding_stage":"Series A","total_funding":"$45M","investors":["Partech","Forgepoint Capital","EQT Ventures"],"url":"https://www.qevlar.com","linkedin":"https://www.linkedin.com/company/qevlar","signal":"Raised $30M co-led by Partech and Forgepoint Capital International, March 2026","publish_after":null,"date_added":"2026-08-23","source":"https://www.eu-startups.com/2026/03/paris-based-qevlar-ai-raises-e25-8-million-to-automate-security-operations-centre-investigations-with-agentic-ai/","is_house_product":false,"coming_soon":false},{"id":"rad-security","name":"RAD Security","slug":"rad-security","logo":"","brief_summary":"Behavioral runtime CDR for Kubernetes and AI workloads, fingerprinting what a cluster should do so zero-days show up as drift.","description":"RAD, formerly KSOC, watches container and identity behavior with eBPF and turns those baselines into fingerprints for threat detection. The Series A platform extends that CDR core into AI workload defense: shadow models, prompt abuse, and exfil from agents running on the same nodes. It is built for teams that already drowned in KSPM tickets and want detections tied to live process and identity graphs.","category":"cloud-security","tags":["Series A","United States"],"hq":"San Francisco, United States","country":"United States","founded":"2021","funding_stage":"Series A","total_funding":"$20M","investors":["Cheyenne Ventures",".406 Ventures","Vertex Ventures","Forgepoint Capital","Akamai"],"url":"https://www.radsecurity.ai","linkedin":"https://www.linkedin.com/company/radsecurity","signal":"Raised $14M Series A, February 2025","publish_after":null,"date_added":"2026-08-23","source":"https://siliconangle.com/2025/02/24/rad-security-raises-14m-expand-ai-driven-cloud-security-platform/","is_house_product":false,"coming_soon":false},{"id":"reco","name":"Reco","slug":"reco","logo":"","brief_summary":"SaaS and agent security that maps every app, identity, and AI connector, then remediates the risky ones.","description":"Reco inventories SaaS, SaaS-to-SaaS pipes, and the AI agents employees stand up without IT. A graph of identities and permissions is the product, not a config checklist: it shows who an agent can mail, which Drive it can read, and where a token still lives. Detection and guided fix are built for the gap between the IdP and the 200 apps nobody reviewed.","category":"email-collaboration","tags":["Series B","United States"],"hq":"New York, United States","country":"United States","founded":"2020","funding_stage":"Series B","total_funding":"$85M","investors":["Zeev Ventures","Insight Partners","boldstart","Angular Ventures"],"url":"https://www.reco.ai","linkedin":"https://www.linkedin.com/company/recolabs","signal":"Raised $30M Series B, total funding $85M, February 2026","publish_after":null,"date_added":"2026-08-23","source":"https://www.reco.ai/blog/reco-raises-30m-b-round-for-a-total-of-85m-to-meet-rapidly-growing-demand-for-saas-ai-security-among-enterprises","is_house_product":false,"coming_soon":false},{"id":"red-sift","name":"Red Sift","slug":"red-sift","logo":"","brief_summary":"Email authentication and brand protection that gets domains to DMARC enforcement without a DNS circus.","description":"Red Sift OnDMARC walks security and IT through SPF, DKIM, and DMARC until the domain is actually at reject, not monitoring. Adjacent products cover BIMI, certificate discovery, and lookalike domains that phishers register against the brand. It is the unglamorous layer under inbox security: if authentication is wrong, every other email product is guessing.","category":"email-collaboration","tags":["Series B","United Kingdom"],"hq":"London, United Kingdom","country":"United Kingdom","founded":"2015","funding_stage":"Series B","total_funding":"$70M","investors":[],"url":"https://redsift.com","linkedin":"https://www.linkedin.com/company/red-sift","signal":"Won a 2025 Cybersecurity Excellence Award for OnDMARC, March 2025","publish_after":null,"date_added":"2026-08-23","source":"https://redsift.com/blog/red-sift-wins-2025-cybersecurity-excellence-award-for-ondmarc","is_house_product":false,"coming_soon":false},{"id":"relyance-ai","name":"Relyance AI","slug":"relyance-ai","logo":"","brief_summary":"Data-flow DSPM that shows how customer data actually moves through products, vendors, and AI features.","description":"Relyance AI instruments applications to map processing in motion, then compares that map to privacy promises, contracts, and frameworks. Legal and security share one picture of what a model, SDK, or subprocessors sees, instead of a spreadsheet of intended flows. That is the gap static DSPM leaves when the risk is a new AI feature shipping data somewhere the inventory never listed.","category":"data-security","tags":["Series B","United States"],"hq":"San Francisco, United States","country":"United States","founded":"2020","funding_stage":"Series B","total_funding":"$50M+","investors":["Thomvest Ventures","M12","Menlo Ventures","Unusual Ventures"],"url":"https://www.relyance.ai","linkedin":"https://www.linkedin.com/company/relyanceai","signal":"Raised $32.1M Series B led by Thomvest Ventures, October 2024","publish_after":null,"date_added":"2026-08-23","source":"https://www.relyance.ai/press-releases/relyance-ai-raises-32-million-series-b-funding-to-safeguard-ai-innovation-in-the-enterprise","is_house_product":false,"coming_soon":false},{"id":"runlayer","name":"Runlayer","slug":"runlayer","logo":"","brief_summary":"MCP gateway plus identity, observability, and threat detection for enterprise agents.","description":"Runlayer sits in front of Model Context Protocol servers so IT can see which agents talk to which tools, with permissions that plug into Okta and Entra. Every MCP request is inspected, not just allow-listed, which is the difference between a proxy and an actual security product. David Soria Parra, who led the MCP spec, is an advisor, which is a useful tell if you are buying the control plane for that protocol.","category":"ai-security","tags":["Seed","USA"],"hq":"New York, USA","country":"USA","founded":"2025","funding_stage":"Seed","total_funding":"$11M","investors":["Khosla Ventures","Felicis"],"url":"https://www.runlayer.com","linkedin":"https://www.linkedin.com/company/runlayer","signal":"Emerged from stealth with $11M seed from Khosla (Keith Rabois) and Felicis, November 2025","publish_after":null,"date_added":"2026-08-23","source":"https://techcrunch.com/2025/11/17/mcp-ai-agent-security-startup-runlayer-launches-with-8-unicorns-11m-from-khoslas-keith-rabois-and-felicis/","is_house_product":false,"coming_soon":false},{"id":"safe","name":"SAFE","slug":"safe","logo":"","brief_summary":"Cyber risk quantification platform that added an agentic CTEM loop on top of CRQ and TPRM.","description":"SAFE (the CRQ company, not a consultancy) scores cyber risk in money and now runs continuous exposure management with agentic workflows. Third-party risk sits in the same model, which is how they sell to boards that already bought the quantification story. The 2025 Series C is explicitly to fund that CTEM product, not another heatmap.","category":"offensive-exposure","tags":["Series C","USA"],"hq":"Palo Alto, USA","country":"USA","founded":"2012","funding_stage":"Series C","total_funding":"$170M","investors":["Avataar Ventures","Eight Roads","Sorenson Capital"],"url":"https://safe.security","linkedin":"https://www.linkedin.com/company/safe-security","signal":"Raised $70M Series C and launched a fully autonomous CTEM offering, July 2025","publish_after":null,"date_added":"2026-08-23","source":"https://safe.security/resources/press-release/safe-series-c-ctem-launch/","is_house_product":false,"coming_soon":false},{"id":"salt-security","name":"Salt Security","slug":"salt-security","logo":"","brief_summary":"Runtime API security that discovers shadow and zombie APIs, then spots business-logic abuse in live traffic.","description":"Salt inspects production API traffic to build an inventory of documented, shadow, and forgotten endpoints, then baselines caller behavior. The useful part is BOLA and auth-bypass detection that a WAF signature will never write. The 2025 product line extends that graph to MCP servers and agents, treating the API action layer as the place AI actually touches data.","category":"api-runtime","tags":["Series D","United States"],"hq":"Palo Alto, United States","country":"United States","founded":"2016","funding_stage":"Series D","total_funding":"$281M","investors":["Sequoia","CapitalG","CrowdStrike Falcon Fund","Y Combinator"],"url":"https://salt.security","linkedin":"https://www.linkedin.com/company/saltsecurity","signal":"Published a year of monthly API and AI security releases, December 2025","publish_after":null,"date_added":"2026-08-23","source":"https://www.prnewswire.com/news-releases/salt-security-outpaces-api-security-market-with-12-months-of-innovation-in-2025-delivering-a-new-api-and-ai-security-breakthrough-every-month-302644308.html","is_house_product":false,"coming_soon":false},{"id":"seal-security","name":"Seal Security","slug":"seal-security","logo":"","brief_summary":"Backports security patches onto the exact open-source versions you already run, including EOL.","description":"Seal does not nag you to jump three majors. It takes the fix lines from the patched release, backports them onto 4.3.x (or CentOS EoL, or a transitive you cannot bump), and publishes a sealed version in your Artifactory. Scanners then see a fixed coordinate and close the finding. That is remediation as a supply-chain product, not another SCA alert.","category":"supply-chain","tags":["Series A","Israel"],"hq":"Tel Aviv, Israel","country":"Israel","founded":"2022","funding_stage":"Series A","total_funding":"$20M","investors":["Vertex Ventures Israel","Crew Capital","SBI Group"],"url":"https://www.seal.security","linkedin":"https://www.linkedin.com/company/seal-security","signal":"Raised $13M Series A led by Vertex Israel, July 2025","publish_after":null,"date_added":"2026-08-23","source":"https://www.prnewswire.com/news-releases/seal-security-raises-13m-series-a-to-secure-open-source-code-at-scale-302515952.html","is_house_product":false,"coming_soon":false},{"id":"semgrep","name":"Semgrep","slug":"semgrep","logo":"","brief_summary":"Rules-plus-AI SAST, SCA, and secrets that developers run in seconds and AppSec can actually tune.","description":"Semgrep started as an open-source pattern engine and now sells a hosted AppSec platform with Pro taint analysis, supply-chain reachability, and secrets validation. Multimodal AI triages findings and writes memories so the same false positive is not re-reviewed next week. Custom rules still read like the source language, which is why security engineers keep it when they outgrow a black-box scanner.","category":"application-security","tags":["Series D","USA"],"hq":"San Francisco, USA","country":"USA","founded":"2017","funding_stage":"Series D","total_funding":"$204M","investors":["Menlo Ventures","Sequoia","Lightspeed","Felicis","Redpoint"],"url":"https://semgrep.dev","linkedin":"https://www.linkedin.com/company/semgrep","signal":"Raised $100M Series D led by Menlo Ventures, February 2025","publish_after":null,"date_added":"2026-08-23","source":"https://www.prnewswire.com/news-releases/semgrep-announces-100m-series-d-funding-to-advance-ai-powered-code-security-302367780.html","is_house_product":false,"coming_soon":false},{"id":"semperis","name":"Semperis","slug":"semperis","logo":"","brief_summary":"Identity threat detection and forest recovery for Active Directory, Entra ID, and Okta.","description":"Semperis is the specialist for when directory services are the blast radius. DSPM-style posture, attack-path detection, and automated forest recovery are the product, plus the free Purple Knight scanner that CISOs actually run. It is built for hybrid AD shops that cannot treat Entra as a clean-sheet replacement. Headquarters is Hoboken with R&D in Israel.","category":"identity-access","tags":["Growth","United States"],"hq":"Hoboken, United States","country":"United States","founded":"2013","funding_stage":"Growth","total_funding":"$325M","investors":["KKR","Insight Partners","J.P. Morgan","Hercules Capital"],"url":"https://www.semperis.com","linkedin":"https://www.linkedin.com/company/semperis","signal":"Secured $125M growth financing at a $1B+ valuation, June 2024","publish_after":null,"date_added":"2026-08-23","source":"https://www.semperis.com/press-release/semperis-secures-growth-financing/","is_house_product":false,"coming_soon":false},{"id":"sentra","name":"Sentra","slug":"sentra","logo":"","brief_summary":"Cloud-native DSPM that discovers, classifies, and readies enterprise data for AI without agents.","description":"Sentra inventories data stores across AWS, Azure, GCP, and SaaS, then scores who can reach what and whether that access is justified. Classification is autonomous rather than regex-first, which is the difference between a catalog and a usable risk list. The same inventory now feeds AI-readiness checks so training sets and retrieval pipelines do not silently ingest regulated records.","category":"data-security","tags":["Series B","United States"],"hq":"New York, United States","country":"United States","founded":"2021","funding_stage":"Series B","total_funding":"$100M+","investors":["Key1 Capital","Bessemer","Zeev Ventures","Munich Re Ventures"],"url":"https://www.sentra.io","linkedin":"https://www.linkedin.com/company/sentra-io","signal":"Closed $50M Series B, bringing total funding over $100M, April 2025","publish_after":null,"date_added":"2026-08-23","source":"https://sentra.io/news/sentra-closes-50-million-series-b-amid-surging-demand-for-securing-data-for-ai-adoption","is_house_product":false,"coming_soon":false},{"id":"silverfort","name":"Silverfort","slug":"silverfort","logo":"","brief_summary":"Runtime identity protection that puts MFA and least privilege on systems IAM vendors leave naked.","description":"Silverfort sits on the authentication path across on-prem, cloud, command-line, service accounts, and OT, without agents on every target. Runtime Access Protection is the enforcement layer. The Fabrix buy adds an AI decision engine so access calls can be judged at request time instead of by stale rules. Dallas-area HQ, Israeli founding team, 1,000-plus customers claimed.","category":"identity-access","tags":["Series D","United States"],"hq":"Plano, United States","country":"United States","founded":"2016","funding_stage":"Series D","total_funding":"$222M","investors":["Brighton Park Capital","Greenfield Partners"],"url":"https://www.silverfort.com","linkedin":"https://www.linkedin.com/company/silverfort","signal":"Acquired Fabrix Security for autonomous runtime identity security, April 2026","publish_after":null,"date_added":"2026-08-23","source":"https://www.silverfort.com/press-news/silverfort-acquires-fabrix-security/","is_house_product":false,"coming_soon":false},{"id":"simbian","name":"Simbian","slug":"simbian","logo":"","brief_summary":"Self-improving AI SOC that unifies defense, hunting, and offense on one agent family.","description":"Simbian runs a reasoning platform rather than a rules engine: agents learn the customer's SOPs, triage most of the queue, and feed outcomes back into detections. It is one of the few AI SOC vendors that also ships hunting and pentest agents on the same architecture. MSSP partnerships in 2026 turned that stack into a Cognitive MDR offering, not just a software SKU.","category":"detection-response","tags":["Seed","USA"],"hq":"Mountain View, USA","country":"USA","founded":"2023","funding_stage":"Seed","total_funding":"$10.5M","investors":["Cota Capital","Rain Capital","Wipro Ventures"],"url":"https://simbian.ai","linkedin":"https://www.linkedin.com/company/simbian","signal":"Named to the CB Insights AI 100, May 2026, after 15x customer growth in 2025","publish_after":null,"date_added":"2026-08-23","source":"https://simbian.ai/blog/simbian-cb-insights-ai-100","is_house_product":false,"coming_soon":false},{"id":"sixmap","name":"SixMap","slug":"sixmap","logo":"","brief_summary":"Internet-scale IPv4/IPv6 discovery that maps what an attacker can actually see of you.","description":"SixMap enumerates internet-connected assets, including IPv6 and subsidiaries, from a company name rather than a scanner appliance. The pitch versus classic ASM is coverage of the planetary IP space, then handing exploitability context to whoever remediates. 2025 product work is aimed at tracking attack-surface change at AI speed, not a quarterly asset dump.","category":"offensive-exposure","tags":["Series A","USA"],"hq":"Columbia, USA","country":"USA","founded":"2020","funding_stage":"Series A","total_funding":"$24M","investors":["IAG Capital Partners"],"url":"https://www.sixmap.io","linkedin":"https://www.linkedin.com/company/sixmap-inc","signal":"Launched new product capabilities for AI-driven attack-surface change, December 2025","publish_after":null,"date_added":"2026-08-23","source":"https://www.businesswire.com/news/home/20251210781099/en/SixMap-Launches-New-Product-Capabilities-to-Improve-Cyber-Defense-in-the-Face-of-AI-Driven-Attacks","is_house_product":false,"coming_soon":false},{"id":"skyhawk-security","name":"Skyhawk Security","slug":"skyhawk-security","logo":"","brief_summary":"AI purple team that replays CNAPP and SIEM findings against a digital twin to prove which cloud CVEs are actually weaponizable.","description":"Skyhawk spun out of Radware's cloud-native protector and now runs adversary simulation on an AI-built replica of the customer's cloud. It ingests findings from CNAPPs, GuardDuty, Inspector, and vulnerability scanners, then keeps only the tiny slice that a real attack path can use. The output is a short list of validated threats with business-value ranking, not another 500,000-alert feed.","category":"cloud-security","tags":["Series A","Israel"],"hq":"Tel Aviv, Israel","country":"Israel","founded":"2022","funding_stage":"Series A","total_funding":"$35M","investors":["Tiger Global"],"url":"https://skyhawk.security","linkedin":"https://www.linkedin.com/company/skyhawkcloudsecurity","signal":"Named a CRN 2025 Stellar Startup for the third consecutive year, November 2025","publish_after":null,"date_added":"2026-08-23","source":"https://skyhawk.security/skyhawk-security-recognized-as-crn-2025-stellar-startup-for-third-consecutive-year/","is_house_product":false,"coming_soon":false},{"id":"smallstep","name":"Smallstep","slug":"smallstep","logo":"","brief_summary":"Private CA and device identity so internal TLS, SSH, and laptops get short-lived certificates instead of passwords.","description":"Smallstep runs step-ca, an open-source certificate authority, plus a commercial control plane for enterprise PKI and device identity. Device Identity for Okta binds a managed device certificate to workforce SSO so access follows the laptop, not a shared secret. It is certificates as identity, not a secrets vault with a PKI checkbox.","category":"secrets-identity","tags":["Series A","United States"],"hq":"San Francisco, United States","country":"United States","founded":"2016","funding_stage":"Series A","total_funding":"$26M","investors":["StepStone Group","Bain Capital Ventures","boldstart"],"url":"https://smallstep.com","linkedin":"https://www.linkedin.com/company/smallstep","signal":"Published hardware-bound device identity essay, May 2026","publish_after":null,"date_added":"2026-08-23","source":"https://smallstep.com/blog/after-mythos-hardware-bound-identity/","is_house_product":false,"coming_soon":false},{"id":"snyk","name":"Snyk","slug":"snyk","logo":"","brief_summary":"Developer-first SAST, SCA, container, and IaC platform now wrapping AI agents and models too.","description":"Snyk is the scale-up that made open-source CVE scanning a developer workflow, then added Snyk Code, containers, and IaC. The 2026 platform push is an independent layer over AI-written code, coding agents, and AI-native apps, rather than another dashboard of unused CVEs. Still private after a 2022 Series G. Independent, not a mega-cap public.","category":"application-security","tags":["Series G","USA"],"hq":"Boston, USA","country":"USA","founded":"2015","funding_stage":"Series G","total_funding":"","investors":["Accel","GV","Boldstart Ventures","QIA"],"url":"https://snyk.io","linkedin":"https://www.linkedin.com/company/snyk","signal":"Launched Evo Agentic Development Security to govern coding agents, June 2026","publish_after":null,"date_added":"2026-08-23","source":"https://www.devopsdigest.com/snyk-introduces-evo-agentic-development-security","is_house_product":false,"coming_soon":false},{"id":"socket","name":"Socket","slug":"socket","logo":"","brief_summary":"Behavioral SCA that blocks malicious packages at install time, before a CVE exists.","description":"Socket inspects what a dependency actually does (network, filesystem, install scripts, obfuscation) instead of waiting for a CVE. Firewall stops the package at npm/PyPI install, reachability (via Coana) cuts the CVE noise, and Certified Patches land a surgical fix without a full upgrade. That is the tool AI-coding shops use when Copilot pulls in a package nobody read.","category":"supply-chain","tags":["Series C","USA"],"hq":"San Francisco, USA","country":"USA","founded":"2022","funding_stage":"Series C","total_funding":"$125M","investors":["Thrive Capital","Andreessen Horowitz","Abstract Ventures","Capital One Ventures"],"url":"https://socket.dev","linkedin":"https://www.linkedin.com/company/socketdev","signal":"Raised $60M Series C at a $1B valuation led by Thrive Capital, May 2026","publish_after":null,"date_added":"2026-08-23","source":"https://socket.dev/blog/series-c","is_house_product":false,"coming_soon":false},{"id":"sonrai-security","name":"Sonrai Security","slug":"sonrai-security","logo":"","brief_summary":"Cloud permissions firewall that enforces least privilege on humans, machines, and AI identities using native AWS, Azure, and GCP controls.","description":"Sonrai maps every identity-to-permission relationship, then deploys organization-level deny policies that strip unused privileged actions, services, and regions. Just-in-time access comes back through Slack or Teams so a blocked call does not become a Sev-1 for DevOps. Independent testing in 2025 showed the firewall blocked 16 of 16 AWS privilege-escalation paths without a proxy in the data plane.","category":"cloud-security","tags":["Series C","United States"],"hq":"New York, United States","country":"United States","founded":"2017","funding_stage":"Series C","total_funding":"$89M","investors":["Menlo Ventures","Polaris Partners","Ten Eleven Ventures","ISTARI"],"url":"https://sonraisecurity.com","linkedin":"https://www.linkedin.com/company/sonrai-security","signal":"Reported 4x ARR growth as Cloud Permissions Firewall adoption surged, January 2026","publish_after":null,"date_added":"2026-08-23","source":"https://sonraisecurity.com/newsroom/sonrai-closes-2025-with-4x-arr-growth/","is_house_product":false,"coming_soon":false},{"id":"stackhawk","name":"StackHawk","slug":"stackhawk","logo":"","brief_summary":"Developer-first API DAST that runs in CI so AI-generated endpoints get tested before they ship.","description":"StackHawk turns OpenAPI and running services into automated security tests that engineers own, not a quarterly pentest PDF. Findings come with reproduction steps aimed at the PR, which is the only place a 100:1 developer-to-AppSec ratio has a chance. The 2025 raise is explicitly about keeping that loop intact when Cursor and Copilot are writing the API surface overnight.","category":"api-runtime","tags":["Series B","United States"],"hq":"Denver, United States","country":"United States","founded":"2019","funding_stage":"Series B","total_funding":"$47.3M","investors":["Sapphire Ventures","Costanoa Ventures"],"url":"https://www.stackhawk.com","linkedin":"https://www.linkedin.com/company/stackhawk","signal":"Raised $12M strategic round from Sapphire and Costanoa, total $47.3M, May 2025","publish_after":null,"date_added":"2026-08-23","source":"https://www.prnewswire.com/news-releases/stackhawk-raises-12-million-in-strategic-funding-to-help-security-teams-keep-up-with-ai-driven-development-302463293.html","is_house_product":false,"coming_soon":false},{"id":"straiker","name":"Straiker","slug":"straiker","logo":"","brief_summary":"Discover, adversarially test, and kill-switch AI agents and MCP connections in production.","description":"Straiker's Discover maps agents, MCP servers, and workflows. Ascend red-teams them for prompt injection, goal hijack, and inter-agent manipulation. Defend is the runtime layer that blocks identity abuse, memory poisoning, and exfil without parking the agents the business actually uses.","category":"ai-security","tags":["Series A","USA"],"hq":"Mountain View, USA","country":"USA","founded":"2025","funding_stage":"Series A","total_funding":"$85M","investors":["Marathon Management Partners","Bain Capital Ventures","Lightspeed","Citi Ventures"],"url":"https://www.straiker.ai","linkedin":"https://www.linkedin.com/company/straiker","signal":"Raised $64M Series A, taking total funding to $85M, June 2026","publish_after":null,"date_added":"2026-08-23","source":"https://www.straiker.ai/blog/straiker-raises-64m-series-a-to-secure-the-agentic-workforce","is_house_product":false,"coming_soon":false},{"id":"stream-security","name":"Stream Security","slug":"stream-security","logo":"","brief_summary":"Cloud detection and response on a live CloudTwin of every workload, identity, and network path.","description":"Stream, formerly Lightlytics, builds a real-time model of cloud, Kubernetes, identity, and SaaS so detections fire with blast radius already computed. CloudTwin correlates config drift, permission paths, and runtime activity at ingest speed, then agentic triage turns that into an attack story instead of a log pile. Response playbooks can revert a malicious change against the twin before it hits production.","category":"cloud-security","tags":["Series B","Israel"],"hq":"Tel Aviv, Israel","country":"Israel","founded":"2020","funding_stage":"Series B","total_funding":"$55M","investors":["U.S. Venture Partners","Citi Ventures","Glilot Capital Partners","TLV Partners","Energy Impact Partners"],"url":"https://www.stream.security","linkedin":"https://www.linkedin.com/company/streamsecurity","signal":"Raised $30M Series B, October 2024","publish_after":null,"date_added":"2026-08-23","source":"https://siliconangle.com/2024/10/22/stream-security-secures-30m-enhance-ai-powered-cloud-threat-management/","is_house_product":false,"coming_soon":false},{"id":"sublime-security","name":"Sublime Security","slug":"sublime-security","logo":"","brief_summary":"Agentic email security with open detection rules and AI that writes new coverage in hours.","description":"Sublime sits on Microsoft 365 and Google Workspace via API and lets detection engineers inspect, fork, and publish rules instead of trusting a black box. Two agents now do the parts vendors used to sit on: one triages inbound mail, the other authors new detections when a novel lure shows up. The bet is that email defense has to ship like a detection shop, not a quarterly content pack.","category":"email-collaboration","tags":["Series C","United States"],"hq":"Washington, United States","country":"United States","founded":"2019","funding_stage":"Series C","total_funding":"$244M","investors":["Georgian","Index Ventures","IVP","Citi Ventures"],"url":"https://sublime.security","linkedin":"https://www.linkedin.com/company/sublime-security","signal":"Raised $150M Series C led by Georgian, October 2025","publish_after":null,"date_added":"2026-08-23","source":"https://www.prnewswire.com/news-releases/sublime-security-raises-150m-in-series-c-funding-as-industry-first-ai-agents-accelerate-growth-302596266.html","is_house_product":false,"coming_soon":false},{"id":"sweet-security","name":"Sweet Security","slug":"sweet-security","logo":"","brief_summary":"Runtime CNAPP that watches cloud and AI agents as they act, then turns the finding into a guardrail.","description":"Sweet deploys a lean eBPF sensor and an LLM detection engine to unify CDR, CWPP, CSPM, identity, API, and AI runtime in one platform. It scores vulnerabilities against live execution so teams chase the loaded, reachable issues instead of the full scanner backlog. Sweet Attack then probes those same environments for exploitable paths and converts the fix into an inline runtime control.","category":"cloud-security","tags":["Series B","Israel"],"hq":"Tel Aviv, Israel","country":"Israel","founded":"2023","funding_stage":"Series B","total_funding":"$120M","investors":["Evolution Equity Partners","Glilot Capital Partners","Munich Re Ventures","CyberArk Ventures"],"url":"https://www.sweet.security","linkedin":"https://www.linkedin.com/company/sweet-security","signal":"Raised $75M Series B, November 2025","publish_after":null,"date_added":"2026-08-23","source":"https://venturebeat.com/business/sweet-security-raises-75m-series-b-and-unveils-the-first-unified-runtime-cnapp-for-cloud-and-ai-security","is_house_product":false,"coming_soon":false},{"id":"sysdig","name":"Sysdig","slug":"sysdig","logo":"","brief_summary":"Runtime CNAPP built on kernel-level system calls, Falco detections, and AI agents that act inside the tools you already run.","description":"Sysdig captures live syscalls to decide which vulnerabilities are loaded and which identities are doing something hostile right now. The Secure platform covers containers, Kubernetes, cloud services, and identities from prevention through detection and response. Secure AI then lets customer-owned agents or Sysdig's own agents investigate and act on that runtime stream instead of a dashboard of stale configs.","category":"cloud-security","tags":["Series G","United States"],"hq":"San Francisco, United States","country":"United States","founded":"2013","funding_stage":"Series G","total_funding":"$744M","investors":["Accel","Insight Partners","Bain Capital Ventures","Permira"],"url":"https://www.sysdig.com","linkedin":"https://www.linkedin.com/company/sysdig","signal":"Named a Leader in The Forrester Wave: Cloud Native Application Protection Solutions, Q1 2026","publish_after":null,"date_added":"2026-08-23","source":"https://www.businesswire.com/news/home/20260217739620/en/Sysdig-Named-a-Leader-in-CNAPP-as-Runtime-Redefines-Cloud-Security-in-2026","is_house_product":false,"coming_soon":false},{"id":"tamnoon","name":"Tamnoon","slug":"tamnoon","logo":"","brief_summary":"Human-plus-AI cloud remediation that closes CNAPP findings without breaking the workload that owns them.","description":"Tamnoon sits on top of Wiz, Orca, Prisma, Defender, and native CSPM feeds and turns the backlog into guided, production-safe fixes. CloudPros plus agents handle triage, owner routing, and preventative guardrails so the same misconfig does not come back next sprint. The pitch is last-mile cloud security: scanners already found it, someone still has to change the resource.","category":"cloud-security","tags":["Series A","United States"],"hq":"Sammamish, United States","country":"United States","founded":"2022","funding_stage":"Series A","total_funding":"$17M","investors":["Bright Pixel Capital","Merlin Ventures","Elron Ventures","Blu Venture Investors"],"url":"https://www.tamnoon.io","linkedin":"https://www.linkedin.com/company/tamnoon.io","signal":"Raised $12M Series A, September 2024","publish_after":null,"date_added":"2026-08-23","source":"https://venturebeat.com/business/tamnoon-raises-12m-series-a-fueling-first-hybrid-human-ai-managed-cloud-security-remediation-service/","is_house_product":false,"coming_soon":false},{"id":"teleport","name":"Teleport","slug":"teleport","logo":"","brief_summary":"Infrastructure identity for SSH, Kubernetes, databases, and MCP servers without standing secrets.","description":"Teleport (the company formerly called Gravitational) issues short-lived certificates and session audit for engineers and machines hitting production. Open-source core, commercial control plane. Workload identity sits on SPIFFE. In March 2026 it launched Beams, Firecracker VMs that give AI agents delegated identity and an audit trail instead of API keys in env vars. Customers include NASDAQ and Epic Games.","category":"identity-access","tags":["Series C","United States"],"hq":"Oakland, United States","country":"United States","founded":"2015","funding_stage":"Series C","total_funding":"$169M","investors":["Bessemer","Insight Partners","Kleiner Perkins"],"url":"https://goteleport.com","linkedin":"https://www.linkedin.com/company/go-teleport","signal":"Launched Beams trusted runtimes for AI agents, March 2026","publish_after":null,"date_added":"2026-08-23","source":"https://goteleport.com/about/newsroom/press-releases/teleport-launches-beams-trusted-agent-runtimes-for-infrastructure/","is_house_product":false,"coming_soon":false},{"id":"teleskope","name":"Teleskope","slug":"teleskope","logo":"","brief_summary":"Agentic data security that classifies with business context and remediates without a ticket queue.","description":"Teleskope was built after the founder spent years classifying petabytes at Airbnb and watching regex DSPM drown in false positives. The product reasons over surrounding systems, owners, and workflows so a payroll export is not treated like a marketing CSV. Agents then close the loop: fix a public bucket, expire stale access, or enforce retention instead of dumping another alert on the SOC.","category":"data-security","tags":["Series A","United States"],"hq":"New York, United States","country":"United States","founded":"2022","funding_stage":"Series A","total_funding":"$32.2M","investors":["M13","Primary Venture Partners","Lerer Hippeau"],"url":"https://www.teleskope.ai","linkedin":"https://www.linkedin.com/company/teleskopeai","signal":"Raised $25M Series A led by M13, total funding $32.2M, November 2025","publish_after":null,"date_added":"2026-08-23","source":"https://fintech.global/2025/11/05/teleskope-raises-25m-to-scale-agentic-data-security/","is_house_product":false,"coming_soon":false},{"id":"tenex-ai","name":"TENEX.AI","slug":"tenex-ai","logo":"","brief_summary":"AI-native MDR that triages every alert in under a minute, with humans on the loop.","description":"TENEX sells managed detection, not another analyst copilot. Agents ingest the customer's existing SIEM and EDR, dispose of the queue at machine speed, and leave named analysts for the cases that still need a human. Founded by operators who previously ran a large Google security partner, it is an 18-month-old MDR with unicorn capital behind a human-led delivery model.","category":"detection-response","tags":["Series B","USA"],"hq":"Sarasota, USA","country":"USA","founded":"2024","funding_stage":"Series B","total_funding":"$277M","investors":["Crosspoint Capital Partners","Andreessen Horowitz","Shield Capital"],"url":"https://tenex.ai","linkedin":"https://www.linkedin.com/company/tenex-ai","signal":"Raised $250M Series B led by Crosspoint, March 2026","publish_after":null,"date_added":"2026-08-23","source":"https://tenex.ai/blog/series-b/","is_house_product":false,"coming_soon":false},{"id":"terra-security","name":"Terra Security","slug":"terra-security","logo":"","brief_summary":"Agentic pentest platform with a human in the loop across web, API, network, and AI surfaces.","description":"Terra's TORCH agents continuously pentest the surfaces that annual tests miss, then a human attests the finding so it is not a hallucinated exploit. Scope includes web apps, external network, internal network, and AI red teaming on one ticket queue. That is PTaaS rebuilt as an always-on agent, not a marketplace of freelancers.","category":"offensive-exposure","tags":["Seed","Israel"],"hq":"Tel Aviv, Israel","country":"Israel","founded":"2024","funding_stage":"Seed","total_funding":"$8M","investors":["SYN Ventures"],"url":"https://www.terra.security","linkedin":"https://www.linkedin.com/company/terra-security","signal":"Raised $8M (Q2 2025) to scale agentic continuous pentesting","publish_after":null,"date_added":"2026-08-23","source":"https://newmarketpitch.com/blogs/news/cybersecurity-funding-deals","is_house_product":false,"coming_soon":false},{"id":"threatlocker","name":"ThreatLocker","slug":"threatlocker","logo":"","brief_summary":"Default-deny allowlisting that stops unapproved software and AI agents from running at all.","description":"ThreatLocker inverts the EDR assumption: nothing executes unless it is on the list, then Ringfencing limits what approved apps can touch. MSPs like it because the control is blunt and the console is multi-tenant. 2026 capital is going into the same model for network, cloud, and AI agents, because a ChatGPT desktop that is not allowlisted cannot leak a file it never opened.","category":"endpoint-browser","tags":["Series F","USA"],"hq":"Orlando, USA","country":"USA","founded":"2017","funding_stage":"Series F","total_funding":"$480M","investors":["Elephant","Arthur Ventures","D. E. Shaw Ventures","Koch Disruptive Technologies"],"url":"https://www.threatlocker.com","linkedin":"https://www.linkedin.com/company/threatlocker","signal":"Raised $190M Series F led by Elephant, July 2026","publish_after":null,"date_added":"2026-08-23","source":"https://www.securityweek.com/threatlocker-raises-190-million-in-series-f-funding/","is_house_product":false,"coming_soon":false},{"id":"tigera","name":"Tigera","slug":"tigera","logo":"","brief_summary":"Calico-powered Kubernetes network security and microsegmentation, plus Lynx for governing AI agent calls on the cluster.","description":"Tigera commercializes Project Calico as a unified networking, security, and observability plane for containers and VMs on Kubernetes. Calico Cloud and Enterprise enforce workload identity, egress, and microsegmentation with eBPF, which is the CWPP layer most CNAPPs still bolt on. Lynx sits in the path of agent tool calls so platform teams can authorize what an in-cluster AI agent is allowed to do before it does it.","category":"cloud-security","tags":["Series B","United States"],"hq":"San Francisco, United States","country":"United States","founded":"2016","funding_stage":"Series B","total_funding":"$65M","investors":["Insight Partners","Madrona"],"url":"https://www.tigera.io","linkedin":"https://www.linkedin.com/company/tigera","signal":"Shipped the Winter 2026 Calico Cloud release with an AI assistant and multi-cluster traffic observability, March 2026","publish_after":null,"date_added":"2026-08-23","source":"https://www.tigera.io/blog/whats-new-in-calico-winter-2026-release/","is_house_product":false,"coming_soon":false},{"id":"tines","name":"Tines","slug":"tines","logo":"","brief_summary":"Workflow automation that security teams actually own, now with agentic AI on top.","description":"Tines started as the no-code story builder SOC and IT teams use to glue tools together without a SOAR tax. Stories are still deterministic when you need them to be, with optional AI agents for the steps that benefit from language models. Dublin-founded, Boston-co-headquartered, and one of the few automation vendors that security practitioners recommend to each other.","category":"detection-response","tags":["Series C","Ireland"],"hq":"Dublin, Ireland","country":"Ireland","founded":"2018","funding_stage":"Series C","total_funding":"$271M","investors":["Goldman Sachs","SoftBank","Accel","Addition"],"url":"https://www.tines.com","linkedin":"https://www.linkedin.com/company/tines-io","signal":"Raised $125M Series C at a $1.13B valuation, February 2025","publish_after":null,"date_added":"2026-08-23","source":"https://finance.yahoo.com/news/goldman-softbank-back-ai-startup-120000132.html","is_house_product":false,"coming_soon":false},{"id":"token-security","name":"Token Security","slug":"token-security","logo":"","brief_summary":"Machine-first identity security that finds every NHI, names an owner, and cuts leftover privilege.","description":"Token Security inventories cloud IAM roles, SaaS service accounts, API keys, and AI agents, then maps who owns them and what they can still do. Founders are Unit 8200 alumni. HPE, HiBob, Udemy, and Elastic are named customers. The company is relocating GTM to the US while R&D stays in Israel. Notable Capital led the Series A.","category":"secrets-identity","tags":["Series A","Israel"],"hq":"Tel Aviv, Israel","country":"Israel","founded":"2023","funding_stage":"Series A","total_funding":"$27M","investors":["Notable Capital","TLV Partners"],"url":"https://www.token.security","linkedin":"https://www.linkedin.com/company/token-security","signal":"Named to Rising in Cyber 2026 after a $20M Series A, May 2026","publish_after":null,"date_added":"2026-08-23","source":"https://www.token.security/news/token-security-named-to-rising-in-cyber-2026-list-of-top-cybersecurity-startups","is_house_product":false,"coming_soon":false},{"id":"torq","name":"Torq","slug":"torq","logo":"","brief_summary":"Hyperautomation platform turning SOAR playbooks into an agentic SOC.","description":"Torq lets security teams drag integrations into workflows, then overlays AI agents that triage, investigate, and respond at enterprise volume. HyperSOC is the productized version of that idea for buyers who want outcomes rather than a workflow canvas. A 2026 buy of Jit added a context graph so agents can reason about users, privileges, and assets instead of isolated alerts.","category":"detection-response","tags":["Series D","Israel"],"hq":"Tel Aviv, Israel","country":"Israel","founded":"2020","funding_stage":"Series D","total_funding":"$332M","investors":["Merlin Ventures","Insight Partners","Bessemer Venture Partners","Evolution Equity Partners"],"url":"https://torq.io","linkedin":"https://www.linkedin.com/company/torqio","signal":"Raised $140M Series D at a $1.2B valuation, January 2026","publish_after":null,"date_added":"2026-08-23","source":"https://torq.io/blog/torq-series-d/","is_house_product":false,"coming_soon":false},{"id":"truffle-security","name":"Truffle Security","slug":"truffle-security","logo":"","brief_summary":"Verified secret scanning that proves a leaked key still works, then helps you kill it.","description":"Truffle Security commercializes TruffleHog, the open-source scanner that actually live-checks credentials instead of dumping regex hits. Enterprise adds org-wide coverage, GCP Analyze for leaked Google Cloud service accounts, and NHI context around those secrets. Intel Capital and a16z led the Series B. Dylan Ayrey and Dustin Decker founded the company around the OSS project.","category":"secrets-identity","tags":["Series B","United States"],"hq":"San Francisco, United States","country":"United States","founded":"2021","funding_stage":"Series B","total_funding":"$40M+","investors":["a16z","Intel Capital","Abstract Ventures"],"url":"https://trufflesecurity.com","linkedin":"https://www.linkedin.com/company/trufflesecurity","signal":"Raised $25M Series B led by Intel Capital and a16z, November 2025","publish_after":null,"date_added":"2026-08-23","source":"https://www.securityweek.com/truffle-security-raises-25-million-for-secret-scanning-engine/","is_house_product":false,"coming_soon":false},{"id":"unosecur","name":"Unosecur","slug":"unosecur","logo":"","brief_summary":"Agentless identity fabric for human, machine, and AI identities across hybrid cloud and on-prem.","description":"Unosecur builds one graph of accounts, permissions, and runtime use so CIEM, ITDR, and NHI hygiene are not four consoles. The pitch is remediation, not another posture dashboard: least privilege, MITRE-mapped detection, and AI policy. Berlin-based, founded by the Ankercloud team. KuppingerCole listed it as a rated vendor on the 2026 Zero Trust Compass.","category":"identity-access","tags":["Seed","Germany"],"hq":"Berlin, Germany","country":"Germany","founded":"2021","funding_stage":"Seed","total_funding":"$5M","investors":["VentureFriends","DFF Ventures","Leo Capital"],"url":"https://www.unosecur.com","linkedin":"https://www.linkedin.com/company/unosecur","signal":"Raised $5M seed led by VentureFriends and DFF Ventures, April 2025","publish_after":null,"date_added":"2026-08-23","source":"https://www.unosecur.com/announcement/unosecur-secures-5-million-in-seed-funding-to-fortify-identity-security-in-the-age-of-ai","is_house_product":false,"coming_soon":false},{"id":"upwind","name":"Upwind","slug":"upwind","logo":"","brief_summary":"Runtime-first CNAPP that ranks cloud risk from what is actually running, not from a static CVE dump.","description":"Upwind ships an eBPF-backed CNAPP that folds CSPM, CWPP, CDR, identity, and API security into one live map of cloud inventory. It uses runtime evidence to drop most of the theoretical vulnerability noise so teams fix the paths that are reachable in production. The 2026 Agentic Pack adds investigation and validation agents on top of that same runtime fabric.","category":"cloud-security","tags":["Series B","United States"],"hq":"San Francisco, United States","country":"United States","founded":"2022","funding_stage":"Series B","total_funding":"$430M","investors":["Bessemer Venture Partners","Salesforce Ventures","Greylock","Craft Ventures"],"url":"https://www.upwind.io","linkedin":"https://www.linkedin.com/company/upwindsecurity","signal":"Raised $250M Series B at a $1.5B valuation, January 2026","publish_after":null,"date_added":"2026-08-23","source":"https://techcrunch.com/2026/01/29/upwind-raises-250m-at-1-5b-valuation-to-continue-building-runtime-cloud-security/","is_house_product":false,"coming_soon":false},{"id":"veza","name":"Veza","slug":"veza","logo":"","brief_summary":"Access graph that shows what every identity can actually do, not just which group it sits in.","description":"Veza models permissions across SaaS, data platforms, and cloud IAM so teams can hunt overprivilege, dormant accounts, and ungoverned entitlements. Next-gen IGA, NHI security, and privileged monitoring sit on that graph. Named customers include Blackstone, Workday, and Snowflake, which also invested. Access AI and native Access Agents are the 2025-2026 product push.","category":"identity-access","tags":["Series D","United States"],"hq":"Los Gatos, United States","country":"United States","founded":"2020","funding_stage":"Series D","total_funding":"$235M","investors":["NEA","Accel","GV","True Ventures"],"url":"https://veza.com","linkedin":"https://www.linkedin.com/company/veza","signal":"Raised $108M Series D at $808M valuation, April 2025","publish_after":null,"date_added":"2026-08-23","source":"https://veza.com/company/press-room/series-d-announcement/","is_house_product":false,"coming_soon":false},{"id":"vicarius","name":"Vicarius","slug":"vicarius","logo":"","brief_summary":"Vulnerability remediation that actually patches, not another scanner that files tickets.","description":"Vicarius vRx finds the exposure, then closes it: patch, config, or compensating control, including on software the vendor never shipped a patch for. The 2026 research is the tell: most orgs still leave known exploits sitting because scan and fix live in different tools. Forrester putting it on the Q1 2026 Proactive Security Platforms list is the analyst version of that same complaint.","category":"endpoint-browser","tags":["Series B","USA"],"hq":"New York, USA","country":"USA","founded":"2016","funding_stage":"Series B","total_funding":"$60M","investors":["Bright Pixel Capital","AllegisCyber","JVP"],"url":"https://www.vicarius.io","linkedin":"https://www.linkedin.com/company/vicarius","signal":"Named in Forrester's Q1 2026 Proactive Security Platforms Landscape","publish_after":null,"date_added":"2026-08-23","source":"https://www.vicarius.io/articles/forrester-just-confirmed-what-weve-been-building-toward","is_house_product":false,"coming_soon":false},{"id":"vijil","name":"Vijil","slug":"vijil","logo":"","brief_summary":"Continuous trust tests so enterprise agents stay reliable after they leave the lab.","description":"Vijil treats agent failure as a security and reliability problem: jailbreaks, tool misuse, and silent drift after a model or prompt change. The platform keeps testing agents in the configurations customers actually run, not a demo notebook. That is the unglamorous work of making agents survivable in regulated production, not another prompt firewall.","category":"ai-security","tags":["Series A","USA"],"hq":"Menlo Park, USA","country":"USA","founded":"2024","funding_stage":"Series A","total_funding":"$23M","investors":["BrightMind Partners","Mayfield","Gradient Ventures"],"url":"https://vijil.ai","linkedin":"https://www.linkedin.com/company/vijil","signal":"Raised $17M Series A led by BrightMind Partners, November 2025","publish_after":null,"date_added":"2026-08-23","source":"https://www.securityweek.com/ai-agent-security-firm-vijil-raises-17-million/","is_house_product":false,"coming_soon":false},{"id":"wallarm","name":"Wallarm","slug":"wallarm","logo":"","brief_summary":"Inline API and agent security that blocks abuse in real time instead of paging after the request lands.","description":"Wallarm combines API discovery, abuse detection, and a WAF-class inline path so teams can actually drop a malicious call, not just ticket it. The 2025 agentic protection layer watches prompts, jailbreaks, and logic abuse against AI-facing APIs. Enterprises pick it when they already have a CDN and still need something that understands the application contract.","category":"api-runtime","tags":["Series C","United States"],"hq":"San Francisco, United States","country":"United States","founded":"2013","funding_stage":"Series C","total_funding":"$75M","investors":["Toba Capital","Y Combinator","Partech"],"url":"https://www.wallarm.com","linkedin":"https://www.linkedin.com/company/wallarm","signal":"Raised $55M Series C led by Toba Capital, July 2025","publish_after":null,"date_added":"2026-08-23","source":"https://www.prnewswire.com/news-releases/wallarm-announces-55-million-in-series-c-to-transform-api-security-for-the-ai-era-302516432.html","is_house_product":false,"coming_soon":false},{"id":"witnessai","name":"WitnessAI","slug":"witnessai","logo":"","brief_summary":"Observe, control, and protect employees, models, apps, and agents from one AI security plane.","description":"WitnessAI catalogs shadow AI, MCP servers, and agents, then applies intent-based policies rather than keyword DLP. Runtime blocks jailbreaks and prompt injection on the way in and filters unsafe output before a user or an agent acts on it. Agent actions can be attributed back to a human identity, which is the audit trail most Copilot and coding-agent rollouts still lack.","category":"ai-security","tags":["Series B","USA"],"hq":"Mountain View, USA","country":"USA","founded":"2023","funding_stage":"Series B","total_funding":"$86M","investors":["Sound Ventures","GV","Ballistic Ventures","Samsung Ventures"],"url":"https://witness.ai","linkedin":"https://www.linkedin.com/company/witnessai","signal":"Raised $58M led by Sound Ventures, January 2026","publish_after":null,"date_added":"2026-08-23","source":"https://www.prnewswire.com/news-releases/witnessai-raises-58-million-for-global-expansion-and-announces-new-ways-to-secure-ai-agents-302659319.html","is_house_product":false,"coming_soon":false},{"id":"workos","name":"WorkOS","slug":"workos","logo":"","brief_summary":"Enterprise identity APIs so product companies can ship SSO, SCIM, and audit without becoming an IAM vendor.","description":"WorkOS is the identity layer AI and SaaS companies embed when the first enterprise buyer asks for Okta. SSO, directory sync, fine-grained authorization, Vault, Radar, and MCP auth are the current surface. OpenAI, Anthropic, Cursor, and Vercel are named users. The Series C is aimed at making agentic software authn, authz, and auditable by default.","category":"identity-access","tags":["Series C","United States"],"hq":"San Francisco, United States","country":"United States","founded":"2019","funding_stage":"Series C","total_funding":"","investors":["Meritech","Sapphire","Greenoaks"],"url":"https://workos.com","linkedin":"https://www.linkedin.com/company/workos-inc","signal":"Raised $100M Series C at $2B valuation, March 2026","publish_after":null,"date_added":"2026-08-23","source":"https://workos.com/blog/series-c","is_house_product":false,"coming_soon":false},{"id":"xm-cyber","name":"XM Cyber","slug":"xm-cyber","logo":"","brief_summary":"Hybrid attack-path graph that shows how an identity, cloud, or on-prem foothold becomes a breach.","description":"XM Cyber models choke points across Active Directory, cloud, and on-prem so you fix the one edge that collapses many paths. It is attack-path analysis, not a pentest bot: the value is 'this identity plus this misconfig equals crown jewels'. Gartner's first Exposure Assessment Platforms Magic Quadrant in 2025 put them in as a Challenger, which is the category they have been selling into for years under other names.","category":"offensive-exposure","tags":["Series B","Israel"],"hq":"Tel Aviv, Israel","country":"Israel","founded":"2016","funding_stage":"Series B","total_funding":"$49M","investors":[],"url":"https://xmcyber.com","linkedin":"https://www.linkedin.com/company/xm-cyber","signal":"Named a Challenger in the first Gartner Magic Quadrant for Exposure Assessment Platforms, 2025","publish_after":null,"date_added":"2026-08-23","source":"https://xmcyber.com/blog/xm-cyber-named-a-challenger-in-the-2025-gartner-magic-quadrant-for-exposure-assessment-platforms-eaps/","is_house_product":false,"coming_soon":false},{"id":"xygeni","name":"Xygeni","slug":"xygeni","logo":"","brief_summary":"SCA plus malware and pipeline security for teams whose code is increasingly written by agents.","description":"Xygeni scans dependencies, CI/CD, and AI-written code for vulns and malicious packages without the enterprise SCA tax. 2026 Infosec awards in ASPM and GenAI AppSec are the tell that they are selling into the same pipeline as Socket and Endor, from Spain, at seed scale. Malware detection on packages is the supply-chain feature, not a generic SAST bolt-on.","category":"supply-chain","tags":["Seed","Spain"],"hq":"Pamplona, Spain","country":"Spain","founded":"2021","funding_stage":"Seed","total_funding":"$4M","investors":["Investing Profit Wisely"],"url":"https://xygeni.io","linkedin":"https://www.linkedin.com/company/xygeni","signal":"Won Global Infosec awards for ASPM and GenAI application security, 2026","publish_after":null,"date_added":"2026-08-23","source":"https://xygeni.io/blog/xygeni-wins-two-global-infosec-awards-for-aspm-and-genai-application-security/","is_house_product":false,"coming_soon":false},{"id":"zafran","name":"Zafran","slug":"zafran","logo":"","brief_summary":"CTEM that proves which CVEs are exploitable, then mitigates with the controls you already own.","description":"Zafran unifies scanner output, then scores runtime presence, internet reachability, and whether a compensating control already blocks the path. The useful trick is mitigation before the patch window: tweak an EDR or WAF policy today, patch later. RemOps collapses overlapping CVEs into one ticket so vuln management is not 130 new CVEs a day.","category":"offensive-exposure","tags":["Series C","USA"],"hq":"New York, USA","country":"USA","founded":"2022","funding_stage":"Series C","total_funding":"$130M","investors":["Menlo Ventures","Sequoia Capital","Cyberstarts"],"url":"https://www.zafran.io","linkedin":"https://www.linkedin.com/company/zafran-security","signal":"Raised $60M Series C led by Menlo Ventures, December 2025","publish_after":null,"date_added":"2026-08-23","source":"https://www.securityweek.com/zafran-security-raises-60-million-in-series-c-funding/","is_house_product":false,"coming_soon":false},{"id":"zenity","name":"Zenity","slug":"zenity","logo":"","brief_summary":"Agent security that watches the decision, not just the prompt, across SaaS, cloud, and endpoint.","description":"Zenity treats the agent as the unit of risk: who it acts for, what it can reach, and why it chose that action. Coverage spans Copilot-class SaaS agents, homegrown agent platforms, and devices, with guardrails that fire before an over-permissioned agent ships. Labs research (AgentFlayer and Copilot Studio issues among them) feeds detections that prompt firewalls miss when the input looks harmless.","category":"ai-security","tags":["Series C","USA"],"hq":"New York, USA","country":"USA","founded":"2021","funding_stage":"Series C","total_funding":"$185M","investors":["Norwest","SoftBank Vision Fund 2","Vertex Ventures","Intel Capital"],"url":"https://zenity.io","linkedin":"https://www.linkedin.com/company/zenitysec","signal":"Raised $125M Series C led by Norwest, August 2026","publish_after":null,"date_added":"2026-08-23","source":"https://zenity.io/company-overview/newsroom/company-news/zenity-raises-125-million-to-secure-the-era-of-1-billion-ai-agents","is_house_product":false,"coming_soon":false},{"id":"zeropath","name":"ZeroPath","slug":"zeropath","logo":"","brief_summary":"AI-native SAST for business logic, auth bypasses, and chained exploit paths, with generated patches.","description":"ZeroPath models how services, auth, and data actually flow across repos, then flags issues that look like a human review finding rather than a Semgrep rule hit. It has published research on curl, sudo, and OpenSSL, which is the credibility play against LLM scanners that hallucinate XSS in tests. Autofix and PR review sit on top of the same engine. YC S24.","category":"application-security","tags":["Seed","USA"],"hq":"San Francisco, USA","country":"USA","founded":"2024","funding_stage":"Seed","total_funding":"","investors":["Y Combinator","SurgePoint Capital"],"url":"https://zeropath.com","linkedin":"https://www.linkedin.com/company/zeropathai","signal":"Named an RSAC 2026 Innovation Sandbox Top 10 finalist","publish_after":null,"date_added":"2026-08-23","source":"https://zeltser.com/media/rsac-2026-sandbox/zeropath","is_house_product":false,"coming_soon":false}]}