insider-threat

(11)
Company
Candor
Ai · Enterprise · Saas

Candor

Candor (YC W25) is a San Francisco cybersecurity startup building agentic data loss prevention and insider risk management. Instead of drowning security teams in false positives like legacy DLP tools, Candor's AI agents watch both the data movement and the person behind it - stitching together the story of who is about to leak source code, exfiltrate IP, or misuse AI tools - so lean teams know exactly who to watch before damage is done.

candor · candor-securityRead →
Company
imper.ai
Ai · Enterprise · Saas

imper.ai

imper.ai is a New York-based cybersecurity company that builds an identity verification platform purpose-built for the workforce. It prevents impersonation and account takeover across the employee lifecycle - from hiring to help desk account recovery - by pairing an Impersonation Detection Engine that reads hundreds of network, device, and behavioral signals with an AI-driven contextual verification layer that confirms the real person behind a session using role-specific questions that cannot be sourced from breached data. Founded in 2024 by veterans of Israel's Unit 8200, the company launched publicly in December 2025 with $28M in total funding backed by Redpoint Ventures and Battery Ventures.

impersonation-prevention · impersonation-detectionRead →
Company
Cyberhaven
Ai · Enterprise · Saas

Cyberhaven

Cyberhaven is a data security company that protects enterprises from data exfiltration and insider risk by tracing how information moves rather than just where it sits. Founded in 2016 by five PhD researchers with roots in the DARPA Cyber Grand Challenge, the company built a proprietary 'data lineage' engine and an AI layer, Linea AI, that combines Data Loss Prevention (DLP), Data Security Posture Management (DSPM), Insider Risk Management, and AI security into one platform. Reaching a $1 billion valuation in April 2025 after a $100M Series D, Cyberhaven serves customers such as Snowflake, Motorola, Reddit, and major law firms.

data-security · dlpRead →
Company
Permiso Security
Saas · Enterprise · Ai

Permiso Security

Permiso Security is a Palo Alto-based cybersecurity company that discovers, protects, and defends identities across cloud and on-prem environments. Founded by former FireEye/Mandiant executives, its identity security platform stitches human, non-human, and AI-agent identities into a single Universal Identity Graph, using 1,400+ detection rules and behavioral analytics to catch account takeovers, credential compromise, and insider threats. Permiso also runs the P0 Labs threat-research team, which has released ten open-source tools including CloudGrappler and YetiHunter.

identity-security · itdrRead →
Legend
Nitay Milner
Founder · Executive · Operator

Nitay Milner

Nitay Milner is co-founder and CEO of ORION Security, a New York and Tel Aviv-based startup rebuilding data loss prevention around AI that learns how data actually moves inside a company. He raised a $32M Series A led by Norwest in February 2026, with IBM participating, less than a year after a $6M seed. Before ORION he was a senior product leader at Epsagon (acquired by Cisco for around $500M) and previously co-founded DatsMi, an event-media startup.

orion-security · dlpRead →
Company
Conatix
Ai · Enterprise · Saas

Conatix

Conatix is an early-stage AI cybersecurity company that turns software into pictures so a computer can see malware before it runs. Its flagship product, CYSANA (CYberSecurity ANAlytics), converts executable files into images at the moment of download, uses deep-learning neural networks to spot malicious code, and pairs that with patented anti-encryption technology that stops malware from ever becoming ransomware. Founded by David Lehrer and developed in partnership with the University of Luxembourg's SnT centre, the company markets to managed security providers, CISO teams, banks, corporations, and government agencies across North America and Europe.

cybersecurity · aiRead →
Legend
David Lehrer
Founder · Executive · Operator

David Lehrer

David Lehrer is the founder and CEO of Conatix and its flagship product Cysana, an AI cybersecurity venture that turns executable files into pictures so neural networks can spot malware before it ever runs. A Harvard-trained policy researcher turned deep-tech operator, he built the company across Virginia, New York, Montreal, London and Berlin, in partnership with the University of Luxembourg's SnT research center. His unusual path runs from criminology at Oxford and economics at the Bank of Finland to a patented anti-ransomware engine trained on a European supercomputer.

cybersecurity · malware-detectionRead →
Legend
Eric Chiu
Founder · Executive · Operator

Eric Chiu

Eric Chiu is the founder and CEO of SolidCore.ai, a Menlo Park startup that helps enterprises deploy generative AI with real-time monitoring, an immutable record of every LLM interaction, and built-in compliance. A veteran cybersecurity entrepreneur, he previously founded HyTrust, the cloud security company acquired by Entrust, whose technology protected the virtual infrastructure of Bank of America, United Healthcare, Honeywell, and U.S. Central Command. SolidCore emerged from stealth in September 2025 with $4M in seed funding led by Runtime Ventures, reuniting Chiu with his longtime collaborator and CTO Hemma Prafullchandra.

eric-chiu · solidcore.aiRead →
Company
Seclore
Enterprise · Saas · Ai

Seclore

Seclore is a data-centric security company that protects sensitive files and emails wherever they travel - across any user, device, app, or cloud. Its browser-based ARMOR platform unifies Data Security Posture Management, AI-powered Data Loss Prevention, data classification, and Enterprise Digital Rights Management so organizations keep persistent, granular control over data even after it leaves their walls. Founded in India in 2008 and headquartered in Santa Clara, California, Seclore serves more than 2,000 enterprises and government bodies across roughly 29 countries.

data-centric-security · data-securityRead →
Company
Bastille Networks
Enterprise · Hardware · Ai

Bastille Networks

Bastille Networks is a San Francisco-based cybersecurity company that secures the wireless airspace - the radio frequency spectrum inside corporate and government facilities that traditional network security tools never see. Using patented software-defined radio and machine learning, Bastille passively detects, identifies, and locates every cellular, Bluetooth, Wi-Fi, and IoT device in a building, including rogue phones and devices not connected to the network. The company serves Fortune 100 firms, financial institutions, and the U.S. intelligence community, and raised a $44M Series C led by Goldman Sachs Asset Management in January 2024.

wireless-security · rf-detectionRead →
Company
Obsidian Security
Enterprise · Saas · Ai

Obsidian Security

Obsidian Security is a Fortune 1000-focused cybersecurity company that secures business-critical SaaS applications, identities, and AI agents. Founded in 2017 by former Cylance and Carbon Black leaders, its platform unifies SaaS Security Posture Management (SSPM), Identity Threat Detection and Response (ITDR), and emerging AI agent and SaaS supply chain protection - giving enterprises visibility and control over the sprawling, interconnected SaaS ecosystems where modern breaches now begin.

saas-security · sspmRead →