Compliant LLM (formerly FiddleCube, YC W23) is an AI security and compliance toolkit that helps infosec, compliance, and GenAI teams keep their AI agents, prompts, and MCP servers secure. It red-teams AI systems against attacks like prompt injection and jailbreaking, checks them against frameworks such as NIST, ISO, OWASP, GDPR, and HIPAA, and monitors employee use of third-party GenAI tools to catch data leaks and PII exposure across both approved and shadow AI workflows.
Silmaril is a San Francisco security startup building a runtime firewall for AI agents and AI-native applications. It intercepts prompt injections, context poisoning, and dangerous tool calls in real time - a self-healing classifier that hunts for new attacks against a customer's own environment and retrains itself continuously. Founded in 2026 by Aum Upadhyay (ex-AWS security) and Eduardo Velasco (whitehat who has found exploits in major AI systems), Silmaril is part of Y Combinator's 2026 batch.
Vin Sharma is the co-founder and CEO of Vijil, a Menlo Park startup building trust infrastructure that helps enterprises deploy AI agents that are reliable, secure, and safe. He spent roughly three decades in AI, data, cloud, operating systems, and security, most recently as GM and Director of Engineering at AWS AI, where he worked on the deep-learning engines behind Amazon SageMaker and Amazon Bedrock. Earlier he ran a division at Intel that built a bespoke datacenter for BMW's autonomous-driving research and held product and engineering roles at Hewlett-Packard across open source, big data, cloud, and Linux. Founded in 2023, Vijil has raised $23 million, counts SmartRecruiters, DigitalOcean, and DuploCloud among its users, and was named a Gartner Cool Vendor in 2025.
ORION Security is an AI-native data loss prevention (DLP) company that protects enterprises from data leaks without relying on manually written policies. Founded in 2024 by Nitay Milner and Jonathan Kreiner, ORION uses large language models and specialized AI agents to map how data normally flows across SaaS, email, cloud, endpoints, and AI tools, then analyzes content sensitivity, user identity, behavioral intent, and data lineage to catch exfiltration and insider threats in real time. The platform targets the three core sources of data loss - human error, malicious insiders, and external attackers - while cutting the false positives and maintenance burden that plague legacy DLP.
Zenity is a cybersecurity company that builds an end-to-end security and governance platform purpose-built for AI agents. Founded in 2021 by Ben Kliger and Michael Bargury, it gives enterprises visibility and control over what AI agents - from Microsoft Copilot and Salesforce Agentforce to home-grown builds on AWS Bedrock - can access, do, and invoke. Zenity covers the full agent lifecycle with discovery, posture management, real-time threat detection, and response across SaaS, cloud, and endpoint environments, closing the blind spots that traditional model-focused security tools miss.
Straiker is a Sunnyvale-based agentic AI security company that helps enterprises deploy AI agents without handing attackers the keys. Its platform spans three jobs - Discover AI maps the agents, MCP servers, and workflows running across a company; Ascend AI red-teams them before deployment to surface prompt injection, goal hijacking, and tool misuse; and Defend AI blocks identity abuse, memory poisoning, and data exfiltration at runtime. Founded by former Palo Alto Networks and Akamai security leaders, Straiker raised a $64M Series A in June 2026, bringing total funding to $85M.
Vijil is a Menlo Park-based AI company building trust infrastructure for enterprise AI agents. Founded in 2023 by senior AWS leaders, its modular platform tests, defends, and continuously hardens agents so they are verifiably reliable, secure, and safe - cutting the time it takes enterprises to trust an agent from about six months to six weeks. Vijil raised $17 million in 2025 (total $23 million) and was named a Gartner Cool Vendor.
Enkrypt AI is a Boston-based AI security company that builds a control layer between enterprises and the large language models and AI agents they deploy. Founded in 2022 by Yale PhDs Sahil Agarwal and Prashanth Harshangi, its Sentry platform combines automated red teaming, runtime guardrails, and compliance monitoring to detect vulnerabilities like prompt injection, jailbreaks, bias, and data leakage before and after models reach production. The company also publishes a free LLM Safety Leaderboard and widely cited red-team research, including a January 2025 report finding DeepSeek-R1 far more likely than rivals to produce harmful content.
Impart Security is a San Francisco cybersecurity company building a unified runtime protection platform for AI, APIs, and web applications. Founded in 2020 by Signal Sciences veterans Jonathan DiVincenzo, Marc Harrison, and Brian Joe, the company merges WAF, API security, Cloud Application Detection & Response, and AI Runtime Protection into one engine that runs autonomous defense agents inside production traffic.
Ravin Thambapillai is the co-founder and CEO of Credal.ai, a New York security-first platform that lets large, regulated enterprises deploy AI agents without leaking the data those agents touch. A philosophy-politics-economics graduate from Oxford who taught himself to code into a job at Google, he spent seven years at Palantir building AI systems for banks, life-sciences firms, and public-health institutions before starting Credal in 2022, months ahead of the ChatGPT wave. Backed by Y Combinator and a $4.8M seed led by Spark Capital, Credal serves customers like MongoDB, Wise, Checkr, and the US government, processing over a million LLM queries a month.
Dropzone AI builds an autonomous AI SOC analyst that investigates 100% of security alerts around the clock, mimicking the reasoning of an expert human analyst across phishing, endpoint, network, cloud, identity, and insider-threat domains. Founded in 2022 by former ExtraHop AI lead Edward Wu, the Seattle company replaces playbook-driven busywork with end-to-end investigations and high-fidelity reports, letting overwhelmed security teams focus on real threats. It has raised $57.35M to date, including a $37M Series B in July 2025.
Dynamo AI is a San Francisco-based enterprise AI security and governance company that helps regulated organizations deploy generative and agentic AI safely. Born out of MIT CSAIL research, its platform - spanning DynamoEval, DynamoGuard, and AgentWarden - tests AI systems for vulnerabilities, applies real-time, customizable guardrails against threats like prompt injection, data leakage, and hallucinations, and produces the compliance documentation enterprises need to meet regulations such as the EU AI Act.
WitnessAI is an enterprise AI security and governance platform that helps organizations safely deploy AI at scale. Built on three pillars - Observe, Protect, and Control - its platform provides real-time visibility into all AI interactions (employee tools, internal models, AI agents, MCP servers), detects and blocks prompt injections and jailbreaks with over 99% accuracy using intent-based ML models, and enforces behavioral policies without code changes. With $85.5M in total funding, 500% ARR growth in 2025, and customers across financial services, telecom, airlines, and automotive, WitnessAI is positioning itself as the confidence layer enterprises need to move from AI experimentation to production deployment.