New AI Security Vendors to Watch in 2026
Company formation in AI Security is still progressing at record levels.
Company formation in AI Security is still progressing at record levels. When Gaurdians of the Machine Age went to press March 6 we included descriptions of 378 AI Security vendors. In the front matter of Guardians of the Machine Age: Why AI Security Will Define the Future of Digital Defense I promised to publish updates here on Substack. Here are 19 AI Security vendors added to dashboard.it-harvest.com recently.
There are now 537 AI Security vendors tracked.

.
19 AI Security Vendors to Watch
Below are nineteen companies recently added to the IT-Harvest Dashboard, most classified under AI Security along with one MSSP. They span SOC automation, agent security, AI testing and red teaming, governance, data masking, penetration testing, managed SOC services, data center security, and endpoint controls. Descriptions are drawn from the IT-Harvest Dashboard where available, supplemented by company websites and public reporting. Headcounts are IT-Harvest figures as of July 2026.
SOCAI
SOCAI is an AI-powered security operations center operated by the cybersecurity department of the AIR Institute, the research organization affiliated with the BISITE Research Group. It is a service rather than a venture-backed product company: a 24/7 SOC that applies machine learning and predictive analytics to security event monitoring, covering networks, industrial control systems, mobile devices, cloud environments, and user activity. Target customers include SMEs, public sector organizations, financial institutions, healthcare, education, and energy.
SOCNova
SOCNova, based in Bolu, Turkey and founded in 2026, is building an AI-powered SOC platform that can run on-premise or in the cloud. The company describes a purpose-built cybersecurity AI combined with a deterministic “Evidence Intelligence Layer,” reasoning workers, threat intelligence, and automated response orchestration in a single console. Compliance with KVKK, Turkey’s data protection law, is a stated design goal, which signals a focus on the domestic market. Co-founder and CTO Onur Oktay has worked in cybersecurity for over 14 years across red team and blue team roles
Founded: 2026 | HQ: Bolu, Turkey | Founders: Onur Oktay (co-founder/CTO); others not disclosed | Funding: None disclosed | Web: socnova.com
Spacewalk AI
Spacewalk AI, founded in 2024 in Irvine, California, builds what it calls an agentic incident commander. Rather than an alert-triage copilot, the product takes over once an alert escalates out of a SOC, MSSP, or SOAR: a commander agent coordinates specialist sub-teams and hundreds of parallel “leaf” agents on top of an internal data warehouse to investigate, map blast radius, hunt related activity, and generate reporting for different audiences. The company claims 75% faster investigations and 90% less reporting time, and holds SOC 2 Type II certification.
The founding team comes out of Obsidian Security, Mandiant, and GCHQ: Tim Wenzlau (CEO), David Elston (CTO), and Chris Fuller (CPO). CRV is among its investors, though no funding total has been disclosed. IT-Harvest counts 14 employees.
Founded: 2024 | HQ: Irvine, California | Founders: Tim Wenzlau, David Elston, Chris Fuller | Funding: Undisclosed (CRV among investors) | Headcount: 14 | Web: spacewalk.ai
Spharaka
Spharaka Networks, founded in 2025 with offices in Hyderabad and Bengaluru, India, is developing an AI-native autonomous cyber defense platform. Its product, Spharaka Sphere, consolidates SIEM, SOAR, XDR, and EDR functions into a single system. At its core is AuraXP, a multi-agent system built on a domain-trained cyber LLM that detects, investigates, and orchestrates responses, with a governance framework called AirWatch constraining autonomous actions within defined guardrails.
Co-founder and CEO Rajeev Raj has 19 years of industry experience; co-founder and CTO Ravikumar Nalluri comes from digital forensics and global security services. The company began generating revenue in early 2026. IT-Harvest counts 12 employees; no outside funding has been disclosed.
Founded: 2025 | HQ: Hyderabad, India | Founders: Rajeev Raj, Ravikumar Nalluri | Funding: None disclosed | Headcount: 12 | Web: spharaka.com
Tenacium
Tenacium, a London company founded in 2021, is older than most of this cohort and blends product with consulting. Its JEDAI (”Just Enough Data Analytics and Insights”) Situational Awareness Platform collects and fuses data from security controls to present a single view of security posture, maps enterprise risks to frameworks including NIST, CIS, ISO 27001, and CAF, and runs AI-powered investigations that prioritize security actions. Alongside the platform, Tenacium sells data and cyber consulting, deployment services, and proof-of-concept work through an Innovation Lab.
Mark Longhurst is co-founder and CTO; the leadership team claims more than 150 years of combined experience across defense, energy, and logistics. IT-Harvest counts 25 employees. No outside funding has been disclosed.
Founded: 2021 | HQ: London, UK | Founders: Mark Longhurst (co-founder/CTO); others not disclosed | Funding: None disclosed | Headcount: 25 | Web: tenacium.co.uk
CodeIntegrity
CodeIntegrity builds a runtime control plane that sits between AI agents and the tools, data, and production systems they touch. Every tool call is evaluated for intent, data provenance, destination, and risk, then allowed, blocked, modified, deferred, or routed for human approval. The runtime converts agent prompts into sandboxed executable control flow so each step is explicit and auditable, targeting prompt injection, tool abuse, and data leakage. It supports self-hosted and on-premise deployment. The company drew attention by demonstrating a compromise of the note-taking app Notion in under four hours, a feat noted in The Economist.
Founded in May 2024 by Steven Jung (CEO) and Abi Raghuram (CTO), who met at Rose-Hulman Institute of Technology, the company started in the Seattle area and is now listed in San Francisco. In 2026 it announced a $5 million seed round led by Syn Ventures with participation from pre-seed investors Antler and Boost VC.
Founded: 2024 | HQ: San Francisco, California | Founders: Steven Jung, Abi Raghuram | Funding: $5M seed (Syn Ventures, Antler, Boost VC) | Web: codeintegrity.ai
Novee Security
Novee is the most heavily funded company on this list. Founded in Tel Aviv in May 2025 by veterans of IDF offensive cyber units—Ido Geffen (CEO), Gon Chalamish (CPO), and Omer Ninburg (CTO)—it raised $51.5 million within eight months: an $8.5 million seed, a $33 million Series A, and $10 million in venture debt, from YL Ventures, Canaan Partners, and Zeev Ventures. The company emerged from stealth in January 2026.
The product is a continuous, AI-powered offensive security platform: autonomous penetration testing built on a proprietary model trained for offensive security, an “Agentic Fix” capability that hands validated exploits to AI coding agents which open pull requests and then re-tests, and AI red teaming for LLM applications covering prompt injection, jailbreaks, and data exfiltration. IT-Harvest counts 58 employees and records the company as acquired by Inherent in January 2026, a transaction that has not been widely reported elsewhere.
Founded: 2025 | HQ: Tel Aviv, Israel | Founders: Ido Geffen, Gon Chalamish, Omer Ninburg | Funding: $51.5M total | Headcount: 58 | Web: novee.security
Advai
Advai, founded in London in 2020 by Chris Jefferson and David Sully, is one of the earliest UK companies focused on AI assurance. Its platform benchmarks AI models against task-specific performance, safety, robustness, and compliance criteria; stress-tests for edge cases and failure modes; runs adversarial testing against malicious or perturbed inputs; and monitors deployed models for drift and anomalies. Output is structured evidence usable in risk registers, governance workflows, and compliance submissions.
The company works in defence, national security, and regulated financial sectors, with the UK Ministry of Defence and the Defence Science and Technology Laboratory among named customers. Its early development was funded through multiple projects under the UK Defence and Security Accelerator (DASA) beginning in 2020. No conventional venture round has been publicly confirmed. IT-Harvest counts 35 employees.
Founded: 2020 | HQ: London, UK | Founders: Chris Jefferson, David Sully | Funding: Not publicly confirmed; DASA-funded projects | Headcount: 35 | Web: advai.co.uk
AIM Intelligence
AIM Intelligence, founded in Seoul in 2024, pairs an attack product with a defense product in what it calls a sword-and-shield cycle. Stinger is an automated red-teaming system that generates attack scenarios across text, image, audio, video, and robotics-related AI; Starfort is a real-time guardrail that inspects requests and responses between users, agents, and models in production, protecting personal data, source code, and credentials. The company also provides network- and endpoint-level controls for employee AI use and publishes attack taxonomies and safety benchmarks.
Co-founder and CEO Sangyoon Yu leads a team that began as student founders in AI safety research. The company raised a $1.3 million pre-Series A, then a 10 billion won (roughly $7 million) Series A in April 2026 led by Samsung Venture Investment with Mirae Asset Capital, Forest Ventures, and Smilegate Investment, bringing cumulative funding to about 12 billion won. Naver’s D2SF followed with an investment in June 2026. IT-Harvest counts 22 employees.
Founded: 2024 | HQ: Seoul, South Korea | Founders: Sangyoon Yu (CEO) and team | Funding: ₩12B ($8.5M) cumulative | Headcount: 22 | Web: aim-intelligence.com
Aira Security
Aira Security, founded in San Francisco in 2025, positions itself as an enforcement layer for AI agents: discovering agentic applications in an organization, monitoring their actions, and blocking unsafe behavior in real time. Per its IT-Harvest profile, the platform processes telemetry with large-scale machine learning models to automate threat hunting and prioritize alerts, correlating signals across endpoints, networks, identities, and cloud workloads, with integrations including CrowdStrike Falcon and AWS.
Mohan Kumar is CEO. The company is five people by IT-Harvest’s count and has disclosed no funding. It has participated in the Plug and Play accelerator ecosystem.
Founded: 2025 | HQ: San Francisco, California | Founders: Mohan Kumar (CEO); others not disclosed | Funding: None disclosed | Headcount: 5 | Web: airasecurity.ai
AliasPath
AliasPath, registered as Contextul ME LLC in Dubai and founded in 2025, approaches AI data leakage through pseudonymisation rather than blocking. The product replaces names, addresses, and other identifiers with realistic aliases before data reaches an LLM, Copilot, or third-party processor, preserving semantic meaning so the AI still functions. Transformation is enforced at what the company calls the verification boundary—proxies, API gateways, MCP bridges, and agent tool calls—with just-in-time rehydration when a real-world action genuinely requires legal identity. It deploys via Docker at the network edge.
The company is associated with UK data-governance specialist Robert Westmacott, who previously founded Scribestar and Guardum. The IT-Harvest Dashboard lists no description, personnel, or funding on record.
Founded: 2025 | HQ: Dubai, UAE (Contextul ME LLC) | Founders: Robert Westmacott (per company materials) | Funding: None disclosed | Web: aliaspath.com
Aona AI
Aona AI, founded in Sydney in 2023 by Bastien Cabirou (CEO) and Salim Sebkhi (CRO), sells workforce AI security: governing how employees use generative AI rather than securing models themselves. The platform discovers shadow AI across a tracked catalog of more than 5,600 tools, then enforces policy through a browser extension or desktop agent that intercepts prompts before they leave the endpoint—classifying content against data policies and allowing, redacting, or blocking it. It applies prompt-level DLP to ChatGPT, Microsoft Copilot, Gemini, and Claude, logs everything for audit against frameworks such as GDPR, the EU AI Act, and ISO 42001, and includes an employee-facing AI coach.
The company raised a small pre-seed round in June 2025 from Antler and Tenity with angels; reported amounts are modest (around US$143,000 per Tracxn). IT-Harvest counts 6 employees.
Founded: 2023 | HQ: Sydney, Australia | Founders: Bastien Cabirou, Salim Sebkhi | Funding: Pre-seed (Antler, Tenity) | Headcount: 6 | Web: aona.ai
A Security
A Security presents a real problem to the IT-Harvest Dashboard. One of the defenses against someone scraping all of your data by systematically searching on each letter of the alphabet is to require three letters to be entered. A single letter name breaks our protection.

It’s in the database but will not come up in searches. For subscribers, I renamed it to A-Security. Now it works

.
The Israeli-founded startup emerged from stealth in 2026 with $37 million in funding from Lightspeed Venture Partners, Cyberstarts, and Cerca Partners, with angel participation from Wiz CEO Assaf Rappaport and Cyera CEO Yotam Segev. It was founded in 2025 by Yossi Torati, Omer Gull, and Yuval Itzchakov, whose backgrounds span Check Point, Hunters, and Unit 8200.
The product is an autonomous offensive security and remediation platform: offensive and defensive AI agents continuously discover attack paths inside an organization, validate whether they are exploitable under scoped execution with full audit trails, and drive remediation at the source or through compensating controls—a bet that defenders need AI attack-path validation before adversaries chain vulnerabilities with AI themselves.
Founded: 2025 | HQ: Israel/US | Founders: Yossi Torati, Omer Gull, Yuval Itzchakov | Funding: $37M | Web: linkedin.com/company/a-cyber-security
Traceforce
Traceforce, founded in February 2025 in San Francisco and part of Y Combinator’s Summer 2026 batch, is building AI security posture management that spans from endpoints to production workloads. The platform inventories AI-related assets and configurations, monitors how AI components are deployed, assesses exposure and misconfiguration, and correlates findings to support remediation—treating AI systems as a distinct layer of the stack whose risk needs to be separately observable. The founders describe the ambition as becoming “the Palo Alto Networks of agentic applications.”
Co-founder and CEO Xia Hua was previously director of engineering at data-protection startup Clumio; Glenn Mulvaney is the other co-founder. IT-Harvest counts 4 employees, making this the smallest and one of the youngest companies in the group.
Founded: 2025 | HQ: San Francisco, California | Founders: Xia Hua, Glenn Mulvaney | Seed Funding: Y Combinator (S26) and others | Headcount: 4 | Web: traceforce.ai
HawkEye AI
HawkEye is the managed cybersecurity operations brand of DTS Solution, a Dubai security engineering firm dating to 2011, and the one pure MSSP in this group. Operating from Dubai and Abu Dhabi with EMEA-wide coverage, HawkEye delivers a managed CSOC and XDR service: 24/7 monitoring, threat hunting, and incident response built on a big-data analytics stack that applies regression, random forest, KNN, and naive Bayes algorithms to threat classification and prediction. Service tiers range from remote monitoring of an existing SIEM to full SOC-as-a-service, and it is one of the few regional providers offering dedicated managed SOC coverage for ICS/OT environments.
HawkEye connects to the next entry on this list: Beyon Cyber counts HawkEye AI among its offerings, reflecting Beyon Cyber’s stake in DTS Solution.
Founded: 2011 (as DTS Solution) | HQ: Dubai, UAE | Founders: Not disclosed | Funding: None disclosed | Web: hawk-eye.io
Beyon Cyber
Beyon Cyber, established in 2022 in Hamala, Bahrain, is the cybersecurity arm of Beyon, the holding group formed around Batelco, Bahrain’s incumbent telecom operator. It is a corporate subsidiary rather than a venture-backed startup, and at 65 employees it is the largest company in this group. Its portfolio combines proprietary platforms with managed services: Orryx AI, an AI-driven SOC platform unifying automation, analytics, and threat intelligence; HawkEye AI, an XDR and managed SOC offering with 24/7 monitoring; Intel X, a threat intelligence and rapid response service; and Complyan, a governance, risk, and compliance platform.
Alongside the platforms, Beyon Cyber runs one of the region’s larger private-sector cybersecurity operations centers and sells advisory, cyber engineering, OT/industrial security, and SOC transformation services across the GCC. Shaikh Khalid bin Daij Al Khalifa serves as CEO.
Founded: 2022 | HQ: Hamala, Bahrain | Founders: Corporate subsidiary of Beyon (Batelco group) | Funding: Corporate-backed | Headcount: 65 | Web:beyoncyber.com
Sleuth Kit Labs
Sleuth Kit Labs is the company behind Cyber Triage, The Sleuth Kit, and Autopsy—open-source tools that underpin a large share of the world’s digital forensics workflows. Founder and CEO Brian Carrier spent 18 years at Basis Technology leading its digital forensics group and serving as CTO before spinning the unit out as Sleuth Kit Labs in October 2023; the IT-Harvest founding date of 2016 reflects the Cyber Triage product line’s origins inside Basis. The company is based in Somerville, Massachusetts.
Cyber Triage, the commercial platform, performs remote agentless collection from Windows and Linux endpoints and memory, ingests EDR telemetry and other DFIR artifacts, and automatically scores artifacts for suspiciousness so responders can determine intrusion scope and root cause faster. Its inclusion under AI Security reflects the scoring automation now central to the product. With 6 employees and no disclosed outside funding, it is a small, product-focused operation with outsized open-source reach.
Founded: 2016 (product); spun out 2023 | HQ: Somerville, Massachusetts | Founders: Brian Carrier | Funding: None disclosed | Headcount: 6 | Web: sleuthkitlabs.com/
ThreatLens
ThreatLens, founded in New York in 2023 by Manoharan Mudaliar, builds a security operations intelligence platform called ThreatLens Core. The product ingests alerts and telemetry from SIEM, EDR/XDR, identity, and cloud tools and converts them into prioritized, investigation-ready incidents. Its distinguishing design choice is explainability: conclusions are presented with explicit confidence levels, contradictions, and missing evidence, and every claim traces back to specific log events. It positions itself as a non-disruptive overlay across an existing stack rather than a replacement.
Threatlens has also introduced a guardrail product for AI.
Founded: 2023 | HQ: New York, New York | Founders: Manoharan Mudaliar | Funding: None disclosed | Headcount: 7 | Web: thethreatlens.com