automated-remediation

(6)
Company
Mend.io
Saas · Developer Tools · Enterprise

Mend.io

Mend.io, formerly WhiteSource, is a Boston- and Tel Aviv-based application security company that helps development and security teams find and fix vulnerabilities in open source dependencies, custom code, and AI-generated code. Its platform spans software composition analysis (SCA), static and dynamic testing (SAST/DAST), API security, automated dependency updates via Renovate, and a growing suite of AI security tools. Serving more than 1,000 customers including a quarter of the Fortune 100, Mend.io emphasizes automated remediation - producing exact code fixes rather than long lists of alerts - to help teams reduce security debt without slowing delivery.

application-security · appsecRead →
Company
Sonrai Security
Saas · Enterprise · Developer Tools

Sonrai Security

Sonrai Security is a New York-based enterprise cloud security company that helps large organizations lock down identity and access risk across AWS, Azure, Google Cloud and Kubernetes. Founded in 2017 by the team behind Q1 Labs, Sonrai built its reputation on a graph that maps every relationship between identities, permissions and data in the public cloud. Its flagship Cloud Permissions Firewall enforces least privilege by automatically blocking unused permissions with cloud-native, org-level policies, and its 2025 WALLy AI agent extends that to autonomously fix privilege risk across humans, machines and AI agents.

cloud-security · ciemRead →
Company
Valence Security
Ai · Saas · Enterprise

Valence Security

Valence Security is a SaaS and AI security company that helps enterprises find and fix risks created by SaaS and AI sprawl. Its platform unifies SaaS discovery, SaaS Security Posture Management (SSPM), AI Security Posture Management (AI-SPM), and Identity Threat Detection and Response (ITDR), then pairs that visibility with one-click and collaborative remediation workflows that engage business users to actually close gaps. Founded in 2021 and backed by Microsoft's M12, YL Ventures, and Porsche Ventures, Valence positions itself as a leader in securing the modern, agentic SaaS estate.

saas-security · sspmRead →
Company
depthfirst
Ai · Enterprise · Developer Tools

depthfirst

depthfirst is a San Francisco applied AI lab building an AI-native security platform that detects, triages and remediates software vulnerabilities before attackers can exploit them. Its 'General Security Intelligence' uses custom AI agents and purpose-trained security models to read a company's code, business logic and infrastructure, surfacing more true-positive vulnerabilities while cutting false positives and delivering developer-ready fixes. Founded in 2024 by leaders from Databricks, Google DeepMind and Faire, the company raised $120M across Series A and B within a few months of leaving stealth.

ai-security · cybersecurityRead →
Company
SecLogic
Ai · Saas · Enterprise

SecLogic

SecLogic is a Boston-based cybersecurity company building an AI-driven cyber risk orchestration platform for the cloud era. Its two flagship products - CyberQ Shield, an agentless Cloud Native Application Protection Platform (CNAPP) that finds and auto-remediates misconfigurations and vulnerabilities across AWS, Azure, GCP and beyond, and CyberQ ORO, an Organization Risk Orchestration tool that quantifies human risk through multi-vector phishing simulation and awareness training - aim to give security leaders a single pane of glass across both their machines and their people. Founded in 2021 and backed by pre-seed funding, SecLogic operates across the US, Europe and India.

cloud-security · cnappRead →
Company
Teleskope
Ai · Saas · Enterprise

Teleskope

Teleskope is a New York-based data security company that builds what it calls the industry's first agentic data protection platform. Founded in 2022 by former Airbnb security engineers Elizabeth Nammour and Julie Trias, it autonomously discovers, classifies, and protects sensitive data across cloud, SaaS, and on-premises environments, then automatically remediates risk through redaction, masking, encryption, and access fixes. The platform uses smaller, fine-tuned models to read business context, aiming to move teams beyond alert fatigue toward real action.

data-security · data-protectionRead →