insider-threat

(8)
Company
Candor
Ai · Enterprise · Saas

Candor

Candor (YC W25) is a San Francisco cybersecurity startup building agentic data loss prevention and insider risk management. Instead of drowning security teams in false positives like legacy DLP tools, Candor's AI agents watch both the data movement and the person behind it - stitching together the story of who is about to leak source code, exfiltrate IP, or misuse AI tools - so lean teams know exactly who to watch before damage is done.

candor · candor-securityRead →
Company
imper.ai
Ai · Enterprise · Saas

imper.ai

imper.ai is a New York-based cybersecurity company that builds an identity verification platform purpose-built for the workforce. It prevents impersonation and account takeover across the employee lifecycle - from hiring to help desk account recovery - by pairing an Impersonation Detection Engine that reads hundreds of network, device, and behavioral signals with an AI-driven contextual verification layer that confirms the real person behind a session using role-specific questions that cannot be sourced from breached data. Founded in 2024 by veterans of Israel's Unit 8200, the company launched publicly in December 2025 with $28M in total funding backed by Redpoint Ventures and Battery Ventures.

impersonation-prevention · impersonation-detectionRead →
Company
Cyberhaven
Ai · Enterprise · Saas

Cyberhaven

Cyberhaven is a data security company that protects enterprises from data exfiltration and insider risk by tracing how information moves rather than just where it sits. Founded in 2016 by five PhD researchers with roots in the DARPA Cyber Grand Challenge, the company built a proprietary 'data lineage' engine and an AI layer, Linea AI, that combines Data Loss Prevention (DLP), Data Security Posture Management (DSPM), Insider Risk Management, and AI security into one platform. Reaching a $1 billion valuation in April 2025 after a $100M Series D, Cyberhaven serves customers such as Snowflake, Motorola, Reddit, and major law firms.

data-security · dlpRead →
Company
Permiso Security
Saas · Enterprise · Ai

Permiso Security

Permiso Security is a Palo Alto-based cybersecurity company that discovers, protects, and defends identities across cloud and on-prem environments. Founded by former FireEye/Mandiant executives, its identity security platform stitches human, non-human, and AI-agent identities into a single Universal Identity Graph, using 1,400+ detection rules and behavioral analytics to catch account takeovers, credential compromise, and insider threats. Permiso also runs the P0 Labs threat-research team, which has released ten open-source tools including CloudGrappler and YetiHunter.

identity-security · itdrRead →
Company
Conatix
Ai · Enterprise · Saas

Conatix

Conatix is an early-stage AI cybersecurity company that turns software into pictures so a computer can see malware before it runs. Its flagship product, CYSANA (CYberSecurity ANAlytics), converts executable files into images at the moment of download, uses deep-learning neural networks to spot malicious code, and pairs that with patented anti-encryption technology that stops malware from ever becoming ransomware. Founded by David Lehrer and developed in partnership with the University of Luxembourg's SnT centre, the company markets to managed security providers, CISO teams, banks, corporations, and government agencies across North America and Europe.

cybersecurity · aiRead →
Company
Seclore
Enterprise · Saas · Ai

Seclore

Seclore is a data-centric security company that protects sensitive files and emails wherever they travel - across any user, device, app, or cloud. Its browser-based ARMOR platform unifies Data Security Posture Management, AI-powered Data Loss Prevention, data classification, and Enterprise Digital Rights Management so organizations keep persistent, granular control over data even after it leaves their walls. Founded in India in 2008 and headquartered in Santa Clara, California, Seclore serves more than 2,000 enterprises and government bodies across roughly 29 countries.

data-centric-security · data-securityRead →
Company
Bastille Networks
Enterprise · Hardware · Ai

Bastille Networks

Bastille Networks is a San Francisco-based cybersecurity company that secures the wireless airspace - the radio frequency spectrum inside corporate and government facilities that traditional network security tools never see. Using patented software-defined radio and machine learning, Bastille passively detects, identifies, and locates every cellular, Bluetooth, Wi-Fi, and IoT device in a building, including rogue phones and devices not connected to the network. The company serves Fortune 100 firms, financial institutions, and the U.S. intelligence community, and raised a $44M Series C led by Goldman Sachs Asset Management in January 2024.

wireless-security · rf-detectionRead →
Company
Obsidian Security
Enterprise · Saas · Ai

Obsidian Security

Obsidian Security is a Fortune 1000-focused cybersecurity company that secures business-critical SaaS applications, identities, and AI agents. Founded in 2017 by former Cylance and Carbon Black leaders, its platform unifies SaaS Security Posture Management (SSPM), Identity Threat Detection and Response (ITDR), and emerging AI agent and SaaS supply chain protection - giving enterprises visibility and control over the sprawling, interconnected SaaS ecosystems where modern breaches now begin.

saas-security · sspmRead →