{"directory":"AI Security Directory","url":"https://aisecuritydirectory.com","lastUpdated":"2026-09-04","dataAsOf":"2026-08-13","count":460,"categoryCount":21,"categories":[{"slug":"ai-soc-secops","name":"AI SOC & SecOps","blurb":"Agentic SOC platforms, autonomous triage and investigation, MDR, and SOAR-replacement tooling."},{"slug":"agent-security-governance","name":"Agent Security & Governance","blurb":"Securing and governing AI agents: identity, permissions, MCP and runtime control, shadow-AI discovery."},{"slug":"appsec-code-security","name":"AppSec & Code Security","blurb":"SAST, SCA, DAST, ASPM, AI code review, and API and application testing."},{"slug":"identity-access","name":"Identity & Access","blurb":"IAM, IGA, PAM, privilege management, and access for humans, machines, and agents."},{"slug":"network-zero-trust","name":"Network & Zero Trust","blurb":"ZTNA, SASE and SSE, NDR, firewalls, segmentation, and network defense."},{"slug":"platforms-integrators","name":"Platforms & Integrators","blurb":"Hyperscalers, broad security suites, MSSPs, and systems integrators."},{"slug":"threat-intel-dfir","name":"Threat Intel & DFIR","blurb":"Threat intelligence feeds and platforms, DFIR tooling, and deception technology."},{"slug":"social-engineering-human-risk","name":"Social Engineering & Human Risk","blurb":"Phishing defense, human risk management, deepfake detection, and email and social protection."},{"slug":"pentesting-offensive-security","name":"Pentesting & Offensive Security","blurb":"Penetration testing, breach and attack simulation, bug bounty, and offensive security platforms."},{"slug":"exposure-management-ctem","name":"Exposure Management & CTEM","blurb":"Attack surface management, vulnerability prioritization, exposure and attack-path analysis."},{"slug":"endpoint-browser-mobile","name":"Endpoint, Browser & Mobile","blurb":"EDR and XDR, enterprise browsers, and mobile security."},{"slug":"data-security-dlp","name":"Data Security & DLP","blurb":"DSPM, DLP, and data discovery and classification."},{"slug":"supply-chain-secrets","name":"Supply Chain & Secrets","blurb":"Software supply chain security, SBOM, secrets detection, and package and firmware integrity."},{"slug":"ai-model-security-red-team","name":"AI Model Security & Red Teaming","blurb":"LLM and model red teaming, model risk assessment, and AI application security testing."},{"slug":"cloud-runtime-security","name":"Cloud & Runtime Security","blurb":"CNAPP, CWPP, CSPM, and cloud runtime protection."},{"slug":"grc-tprm","name":"GRC & Third-Party Risk","blurb":"Governance, risk and compliance automation, and third-party risk management."},{"slug":"siem-security-data","name":"SIEM & Security Data","blurb":"SIEM, security data lakes, and telemetry pipeline management."},{"slug":"resilience-ransomware","name":"Resilience & Ransomware","blurb":"Backup and recovery, ransomware resilience, and incident recovery."},{"slug":"pki-crypto-quantum","name":"PKI, Crypto & Quantum","blurb":"PKI, certificate management, cryptography, and post-quantum readiness."},{"slug":"ot-cyber-physical","name":"OT & Cyber-Physical","blurb":"ICS, OT, and cyber-physical systems security."},{"slug":"privacy-exec-protection","name":"Privacy & Executive Protection","blurb":"Personal data removal, digital privacy, and executive protection."}],"vendors":[{"id":"0din-by-mozilla","name":"0din by Mozilla","slug":"0din-by-mozilla","logo":"","brief_summary":"Mozilla's bug bounty program for generative AI models, chatbots, and agents.","description":"0Din is a bug bounty program operated by Mozilla that focuses on generative AI systems. Security researchers submit jailbreaks, prompt injection techniques, and other model exploits, which the program validates and rewards. The resulting attack corpus feeds ongoing testing of chatbots and AI agents against techniques proven to work.","category":"ai-model-security-red-team","tags":[],"founded":"2024","funding":"Mozilla program (corporate-backed, launched 2024)","funding_stage":"","url":"https://0din.ai","docs_url":"","linkedin":"","bh_tier":"AI Zone","bh_booth":"5205","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"1password","name":"1Password","slug":"1password","logo":"","brief_summary":"Credential and access management platform for people, devices, developer secrets, and AI agents.","description":"1Password secures credentials for consumers and businesses, and has grown into device trust, developer secrets management, and credentials used by AI agents. Its extended access management targets the software employees use outside the identity provider's reach. Founded in 2005, it pairs consumer-grade usability with zero-knowledge encryption.","category":"identity-access","tags":[],"founded":"2005","funding":"$1B raised (2025)","funding_stage":"venture","url":"https://1password.com","docs_url":"","linkedin":"","bh_tier":"Platinum","bh_booth":"4735","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"360-privacy","name":"360 Privacy","slug":"360-privacy","logo":"","brief_summary":"Removes executives' personal data from broker sites and monitors ongoing digital exposure.","description":"360 Privacy deletes personal information about executives, athletes, and other high-profile individuals from data broker sites and monitors for its reappearance. Reducing that exposure lowers the risk of doxxing, fraud, and physical threats. Enterprises buy it to protect leadership teams, and the company was founded in 2019.","category":"privacy-exec-protection","tags":[],"founded":"2019","funding":"$36M raised (Private Equity, 2025)","funding_stage":"private-equity","url":"https://www.360privacy.io","docs_url":"","linkedin":"","bh_tier":"Silver Plus","bh_booth":"2067","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"7ai","name":"7AI","slug":"7ai","logo":"","brief_summary":"Security platform running swarms of specialized AI agents that investigate alerts without human triage.","description":"7AI deploys teams of specialized AI agents that pick up security alerts and investigate them end to end, handing analysts finished conclusions rather than raw queues. The company was started in 2024 by the founders of Cybereason. It targets SOC teams whose analysts spend most of their time on repetitive triage.","category":"ai-soc-secops","tags":[],"founded":"2024","funding":"$202M raised (Series A, 2025)","funding_stage":"series-a","url":"https://7ai.com","docs_url":"","linkedin":"","bh_tier":"Diamond","bh_booth":"1839","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"a-security","name":"A Security","slug":"a-security","logo":"","brief_summary":"Offensive security platform running continuous automated attack validation tied to remediation workflows.","description":"A Security runs continuous automated attacks against an organization's environment to establish which weaknesses are genuinely exploitable, then routes confirmed findings into remediation. The premise is offensive testing as an always-on process rather than a scheduled event. The company was founded in 2025.","category":"pentesting-offensive-security","tags":[],"founded":"2025","funding":"$37M raised (Venture Round, 2026)","funding_stage":"venture","url":"https://a.security","docs_url":"","linkedin":"","bh_tier":"Platinum","bh_booth":"4148","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"a10-networks","name":"A10 Networks","slug":"a10-networks","logo":"","brief_summary":"Provider of application delivery, DDoS protection, and AI model security products.","description":"A10 Networks supplies application delivery controllers and DDoS defense for service providers and enterprises. Its 2025 acquisition of TrojAI added protection for AI models and applications to the portfolio. The company is publicly traded and focuses on keeping high-traffic infrastructure available and secure.","category":"network-zero-trust","tags":[],"founded":"2004","funding":"Public (NYSE: ATEN, ~$2.7B mkt cap)","funding_stage":"public","url":"https://www.a10networks.com","docs_url":"","linkedin":"","bh_tier":"","bh_booth":"","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"abnormal-ai","name":"Abnormal AI","slug":"abnormal-ai","logo":"","brief_summary":"Email security using behavioral AI to catch phishing, fraud, and account takeover.","description":"Abnormal AI models normal communication behavior for every employee and vendor, then flags messages that deviate from it. This catches attacks with no traditional indicators, such as text-only business email compromise and supplier fraud, and it detects compromised internal accounts. It deploys via API to Microsoft 365 and Google Workspace.","category":"social-engineering-human-risk","tags":[],"founded":"2018","funding":"$534M raised (Series D, 2024)","funding_stage":"series-d","url":"https://www.abnormal.ai","docs_url":"","linkedin":"","bh_tier":"Lobby Lounge","bh_booth":"","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"above-security","name":"Above Security","slug":"above-security","logo":"","brief_summary":"Managed insider risk protection where AI investigators handle detection and case work.","description":"Above Security delivers insider risk management as a managed service, with autonomous AI investigators triaging signals about data misuse and risky employee behavior and escalating to humans when warranted. It suits organizations that lack a dedicated insider threat team. The company was founded in 2025.","category":"ai-soc-secops","tags":[],"founded":"2025","funding":"$50M raised (Series A, 2026)","funding_stage":"series-a","url":"https://www.above.security","docs_url":"","linkedin":"","bh_tier":"Silver Plus","bh_booth":"5332","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"absolute-security","name":"Absolute Security","slug":"absolute-security","logo":"","brief_summary":"Firmware-embedded endpoint resilience that survives OS reinstalls and repairs security agents.","description":"Absolute Security's client is embedded in the firmware of laptops from major manufacturers, letting IT teams track, recover, and repair devices and their security agents even after a wipe or reimage. That persistence underpins visibility and application self-healing across a very large installed base. Founded in 1993, the company is owned by Crosspoint Capital.","category":"endpoint-browser-mobile","tags":[],"founded":"1993","funding":"PE-owned (Crosspoint Capital, $870M take-private 2023)","funding_stage":"","url":"https://www.absolute.com","docs_url":"","linkedin":"","bh_tier":"Silver Plus","bh_booth":"5526","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"abstract-security","name":"Abstract Security","slug":"abstract-security","logo":"","brief_summary":"Security data platform routing and analyzing telemetry in streams, built by former ArcSight engineers.","description":"Abstract Security rethinks the SIEM as a streaming data problem: telemetry is analyzed and enriched in motion, with storage decoupled from detection so teams are not taxed per gigabyte ingested. The founding team previously built ArcSight. Founded in 2023, it targets security operations teams weighed down by legacy SIEM economics.","category":"siem-security-data","tags":[],"founded":"2023","funding":"$48M raised (Series A, 2026)","funding_stage":"series-a","url":"https://www.abstract.security","docs_url":"","linkedin":"","bh_tier":"Silver","bh_booth":"5918","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"acalvio-technologies","name":"Acalvio Technologies","slug":"acalvio-technologies","logo":"","brief_summary":"Deception platform that plants decoys and honeytokens to expose attackers early.","description":"Acalvio builds deception technology for enterprise defense. Its ShadowPlex platform distributes decoy systems, fake credentials, and honeytokens across networks and cloud environments, so intruders reveal themselves the moment they touch an asset that should never be touched. Security teams use it to catch lateral movement early and study attacker behavior.","category":"threat-intel-dfir","tags":[],"founded":"2013","funding":"$58M raised (Series D, 2022)","funding_stage":"series-d","url":"https://www.acalvio.com","docs_url":"","linkedin":"","bh_tier":"AI Zone","bh_booth":"8606","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"activestate","name":"ActiveState","slug":"activestate","logo":"","brief_summary":"Platform for building secure open source language runtimes and managing dependency vulnerabilities.","description":"ActiveState builds Python, Perl, and other language distributions from vetted source, giving teams reproducible runtimes and a way to track and remediate vulnerable dependencies. Platform engineering and security teams use it to control open source risk without maintaining their own build infrastructure. The company dates back to 1997 and is owned by Vertu Capital.","category":"supply-chain-secrets","tags":[],"founded":"1997","funding":"PE-owned (Vertu Capital, acquired 2023)","funding_stage":"acquired","url":"https://www.activestate.com","docs_url":"","linkedin":"","bh_tier":"Exhibitor","bh_booth":"7706","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"adaptive-security","name":"Adaptive Security","slug":"adaptive-security","logo":"","brief_summary":"Security awareness platform simulating deepfake and AI-generated social engineering attacks for training.","description":"Adaptive Security trains employees against AI-era social engineering, including deepfake voice and video, using simulations that mirror how attackers now actually operate. OpenAI participated in its funding, its first investment in a cybersecurity company. Founded in 2023, it targets organizations updating awareness programs built around yesterday's email phishing.","category":"social-engineering-human-risk","tags":[],"founded":"2023","funding":"$136M raised (Series B, 2025)","funding_stage":"series-b","url":"https://adaptivesecurity.com","docs_url":"","linkedin":"","bh_tier":"Gold","bh_booth":"2564","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"agen-co","name":"Agen.co","slug":"agen-co","logo":"","brief_summary":"Identity layer for AI agents that ties each agent's actions to a responsible human.","description":"Agen.co gives AI agents their own managed identities while keeping every agent accountable to the human who deployed it, so access and audit trails stay coherent as organizations roll out autonomous software. It is a product line from Frontegg, the venture-backed customer identity company, applying identity infrastructure experience to the agent problem.","category":"agent-security-governance","tags":[],"founded":"","funding":"Frontegg product line (Frontegg venture-funded, $70M raised)","funding_stage":"venture","url":"https://www.agen.co","docs_url":"","linkedin":"","bh_tier":"Silver","bh_booth":"5936","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"agentic-fabriq","name":"Agentic Fabriq","slug":"agentic-fabriq","logo":"","brief_summary":"Platform giving AI agents individual identities, scoped permissions, human approvals, and audit logs.","description":"Agentic Fabriq treats each AI agent as a first-class identity, assigning it credentials, least-privilege access, approval workflows for sensitive actions, and a full audit trail. It targets teams deploying agents against real business systems who need accountability per agent. The company was founded in 2025.","category":"agent-security-governance","tags":[],"founded":"2025","funding":"$500K raised (Pre Seed, 2025)","funding_stage":"seed","url":"https://www.agenticfabriq.com","docs_url":"","linkedin":"","bh_tier":"Startup City","bh_booth":"5912","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"aikido-security","name":"Aikido Security","slug":"aikido-security","logo":"","brief_summary":"Developer security platform bundling code, dependency, cloud, and runtime scanning.","description":"Aikido combines SAST, software composition analysis, secrets detection, container and cloud scanning, and runtime protection in one product aimed at development teams without dedicated security staff. It emphasizes noise reduction and fast setup over per-tool depth. The Belgian company was founded in 2022.","category":"appsec-code-security","tags":[],"founded":"2022","funding":"$85M raised (Series B, 2026)","funding_stage":"series-b","url":"https://www.aikido.dev","docs_url":"","linkedin":"","bh_tier":"Silver Plus","bh_booth":"5720","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"aim-security","name":"Aim Security","slug":"aim-security","logo":"","brief_summary":"Tel Aviv GenAI security platform, now part of Cato Networks, for governing enterprise AI use and applications.","description":"Aim Security is an Israeli GenAI security company founded in 2022. Cato Networks acquired it in September 2025. The product continues as Cato AI Security. Cato Networks is already listed separately as a platform. This row keeps the Aim Security name buyers still search for. This listing is not a claim that Aim remains an independent company.","category":"agent-security-governance","tags":[],"founded":"2022","funding":"Acquired by Cato Networks (2025)","funding_stage":"acquired","url":"https://www.aim.security","docs_url":"","linkedin":"https://www.linkedin.com/company/aimsecurity","bh_tier":"","bh_booth":"","publish_after":null,"date_added":"2026-08-13","source":"eu-il-intake-2026-08-13"},{"id":"air-security","name":"Air Security","slug":"air-security","logo":"","brief_summary":"Platform vetting and monitoring the components AI agents use: skills, plugins, and MCP servers.","description":"Air Security governs the supply chain behind enterprise AI agents, vetting skills, plugins, MCP servers, and sub-agents before they are used and monitoring their behavior afterward. Founded in 2026, it addresses the risk that appears when agents assemble capabilities from third-party components nobody has reviewed.","category":"agent-security-governance","tags":[],"founded":"2026","funding":"Funding undisclosed","funding_stage":"","url":"https://www.air.security","docs_url":"","linkedin":"","bh_tier":"Gold","bh_booth":"5350","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"airia","name":"Airia","slug":"airia","logo":"","brief_summary":"Enterprise platform for discovering, securing, governing, and orchestrating AI usage.","description":"Airia helps organizations move AI from pilots to production with controls in place, covering discovery of AI use, policy enforcement, orchestration of models and agents, and ongoing monitoring. It targets enterprises that want one layer for both enablement and governance. The company was founded in 2023.","category":"agent-security-governance","tags":[],"founded":"2023","funding":"$50M raised (Funding Round, 2025)","funding_stage":"venture","url":"https://airia.com","docs_url":"","linkedin":"","bh_tier":"Silver Plus","bh_booth":"4511","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"airlock-digital","name":"Airlock Digital","slug":"airlock-digital","logo":"","brief_summary":"Application allowlisting that permits only approved executables and scripts to run.","description":"Airlock Digital enforces deny-by-default execution control, letting organizations define exactly which binaries, scripts, and installers may run on endpoints and servers. Its workflow tooling is built to keep allowlists maintainable in day-to-day operations, historically the hard part of this approach. The Australian company was founded in 2013 and grew largely bootstrapped.","category":"endpoint-browser-mobile","tags":[],"founded":"2013","funding":"Largely bootstrapped (~$1.3M early funding)","funding_stage":"bootstrapped","url":"https://www.airlockdigital.com","docs_url":"","linkedin":"","bh_tier":"Silver Plus","bh_booth":"5729","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"airmdr-ai-powered-mdr","name":"AirMDR: AI-Powered MDR","slug":"airmdr-ai-powered-mdr","logo":"","brief_summary":"MDR service where AI agents investigate every alert with human analyst review.","description":"AirMDR delivers managed detection and response in which AI performs the initial investigation of each alert and human analysts verify conclusions and drive response. Customers can inspect the full investigative record rather than a closed black box. The service targets small and mid-size security teams, and the company was founded in 2023.","category":"ai-soc-secops","tags":[],"founded":"2023","funding":"$16M raised (Seed, 2025)","funding_stage":"seed","url":"https://airmdr.com","docs_url":"","linkedin":"","bh_tier":"Silver Plus","bh_booth":"3067","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"aisy","name":"AISY","slug":"aisy","logo":"","brief_summary":"Early-stage London startup developing tooling for securing AI models and applications.","description":"AISY is an early-stage AI security company founded in London in 2025, with a seed round raised in 2026. Public information about the product is still limited. The company works in the space of securing and testing AI models and applications.","category":"ai-model-security-red-team","tags":[],"founded":"2025","funding":"$2M raised (Seed, 2026)","funding_stage":"seed","url":"https://aisy.ai","docs_url":"","linkedin":"","bh_tier":"Launch Pad","bh_booth":"6204","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"akamai-technologies","name":"Akamai Technologies","slug":"akamai-technologies","logo":"","brief_summary":"Distributed edge platform for content delivery, application and API security, and bot management.","description":"Akamai operates one of the internet's largest distributed edge networks, delivering content and protecting applications with WAF, API security, bot management, and DDoS defense. Its Guardicore acquisition added microsegmentation for east-west traffic inside data centers. Founded in 1998 and publicly traded, it serves many of the largest web properties.","category":"network-zero-trust","tags":[],"founded":"1998","funding":"Public company","funding_stage":"public","url":"https://www.akamai.com","docs_url":"","linkedin":"","bh_tier":"Gold","bh_booth":"","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"akto","name":"Akto","slug":"akto","logo":"","brief_summary":"Security platform for AI agents, MCP servers, and LLM applications, from discovery to guardrails.","description":"Akto helps security teams find and protect the AI systems running across their organization. The platform inventories agents, MCP servers, and LLM integrations, runs automated red-team tests against them, and applies runtime guardrails. Akto began in API security, and that foundation shapes how it analyzes agentic traffic.","category":"agent-security-governance","tags":[],"founded":"2022","funding":"$12M raised (Series A, 2025)","funding_stage":"series-a","url":"https://www.akto.io","docs_url":"","linkedin":"","bh_tier":"AI Zone","bh_booth":"8508","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"alice","name":"Alice","slug":"alice","logo":"","brief_summary":"Trust and safety platform protecting generative AI systems and user-generated content.","description":"Alice provides tooling that helps AI companies keep their models and platforms safe. It detects harmful content, abuse, and adversarial use across generative AI outputs and user-generated content, and supports red teaming and policy enforcement. Its customers include large model developers and consumer platforms with significant moderation needs.","category":"ai-model-security-red-team","tags":[],"founded":"2018","funding":"$100M raised (Series B, 2021)","funding_stage":"series-b","url":"https://alice.io","docs_url":"","linkedin":"","bh_tier":"AI Zone","bh_booth":"8506","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"alt-security","name":"ALT Security","slug":"alt-security","logo":"","brief_summary":"Autonomous AI system that continuously attacks customer environments to validate real attack paths.","description":"ALT Security runs an AI-driven offensive engine against an organization's infrastructure, chaining weaknesses into demonstrated attack paths rather than listing theoretical findings. Security teams use it as continuous validation between or instead of periodic penetration tests, focusing remediation on what an attacker could actually achieve.","category":"pentesting-offensive-security","tags":[],"founded":"","funding":"Funding undisclosed","funding_stage":"","url":"https://alt.security","docs_url":"","linkedin":"","bh_tier":"Startup City","bh_booth":"5715","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"amazon-web-services","name":"Amazon Web Services","slug":"amazon-web-services","logo":"","brief_summary":"Cloud provider with native services for identity, encryption, threat detection, and security monitoring.","description":"AWS operates the largest public cloud and ships native security services spanning identity and access management, key management, threat detection, and compliance tooling. Security teams rely on services such as GuardDuty and Security Hub to monitor workloads. It is also the infrastructure many security vendors build their own products on.","category":"platforms-integrators","tags":[],"founded":"","funding":"","funding_stage":"","url":"https://aws.amazon.com","docs_url":"","linkedin":"","bh_tier":"Platinum Plus","bh_booth":"1648","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"anomali","name":"Anomali","slug":"anomali","logo":"","brief_summary":"Security operations platform combining threat intelligence management with detection and analytics.","description":"Anomali serves SOC teams that want threat intelligence woven into daily operations. Its platform aggregates and scores intel feeds, matches indicators against historical telemetry, and layers AI-assisted analytics on top for investigation and reporting. Large enterprises and government agencies use it to consolidate intelligence-driven detection in one place.","category":"siem-security-data","tags":[],"founded":"2013","funding":"$96M raised (Series D, 2018)","funding_stage":"series-d","url":"https://www.anomali.com","docs_url":"","linkedin":"","bh_tier":"AI Zone","bh_booth":"5102","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"anvilogic","name":"Anvilogic","slug":"anvilogic","logo":"","brief_summary":"Detection engineering platform building and running detections across SIEMs and data lakes.","description":"Anvilogic lets SOC teams author, test, and deploy detections across backends such as Splunk, Snowflake, and Azure without moving or re-platforming their data. AI assists with rule creation, tuning, and alert triage. The company was founded in 2019.","category":"ai-soc-secops","tags":[],"founded":"2019","funding":"$84M raised (Series C, 2024)","funding_stage":"series-c","url":"https://anvilogic.com","docs_url":"","linkedin":"","bh_tier":"Silver Plus","bh_booth":"5724","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"apono","name":"Apono","slug":"apono","logo":"","brief_summary":"Just-in-time cloud access removing standing privileges for human and machine identities.","description":"Apono grants time-bound, approval-gated access to cloud resources and revokes it automatically, replacing permanent admin rights with on-demand permissions. It integrates with cloud providers, databases, and Kubernetes, and covers service identities as well as people. The company was founded in 2021.","category":"identity-access","tags":[],"founded":"2021","funding":"$54M raised (2025)","funding_stage":"venture","url":"https://www.apono.io","docs_url":"","linkedin":"","bh_tier":"Silver Plus","bh_booth":"3467","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"appdome","name":"Appdome","slug":"appdome","logo":"","brief_summary":"Mobile app defense platform adding security and anti-fraud protections to Android and iOS builds.","description":"Appdome injects security, anti-fraud, and anti-bot protections into Android and iOS apps during the build process, without SDK integration or manual coding. Coverage spans malware, tampering, bots, and emerging AI-driven threats such as deepfakes. Founded in 2011, it serves mobile-first brands whose apps face fraud and abuse at scale.","category":"endpoint-browser-mobile","tags":[],"founded":"2011","funding":"$28M raised (Venture Round, 2023)","funding_stage":"venture","url":"https://www.appdome.com","docs_url":"","linkedin":"","bh_tier":"Gold","bh_booth":"4750 / 5507","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"apx-labs","name":"APX Labs","slug":"apx-labs","logo":"","brief_summary":"Application security platform connecting security findings to engineering team workflows.","description":"APX Labs builds application security software aimed at the gap between security findings and engineering action. The platform links the two functions so vulnerabilities move through developer workflows instead of sitting in security queues. The company is early stage, with limited public detail on the product so far.","category":"appsec-code-security","tags":[],"founded":"","funding":"Early-stage; no disclosed funding","funding_stage":"","url":"https://apxlabs.ai","docs_url":"","linkedin":"","bh_tier":"Launch Pad","bh_booth":"6203","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"arctic-wolf-networks","name":"Arctic Wolf Networks","slug":"arctic-wolf-networks","logo":"","brief_summary":"Managed security operations provider delivering detection, response, and risk management as a service.","description":"Arctic Wolf delivers security operations as a service: its Aurora platform ingests customer telemetry, and dedicated service teams paired with AI-driven detection handle monitoring, response, and risk management. Founded in 2012, it suits organizations that want a functioning SOC without building one.","category":"ai-soc-secops","tags":[],"founded":"2012","funding":"$899M raised (Convertible Note, 2022)","funding_stage":"venture","url":"https://arcticwolf.com","docs_url":"","linkedin":"","bh_tier":"Gold","bh_booth":"1564","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"arize-ai","name":"Arize AI","slug":"arize-ai","logo":"","brief_summary":"US ML and LLM observability platform for tracing, evaluation, and production monitoring of AI systems.","description":"Arize AI is a US observability company for machine learning and LLM applications. Security and ML teams use it to trace, evaluate, and monitor production AI. It is not a red-team firm. This listing describes the public product.","category":"ai-model-security-red-team","tags":[],"founded":"2020","funding":"","funding_stage":"venture","url":"https://arize.com","docs_url":"","linkedin":"https://www.linkedin.com/company/arizeai","bh_tier":"","bh_booth":"","publish_after":null,"date_added":"2026-08-13","source":"us-intake-2026-08-13"},{"id":"arthur-ai","name":"Arthur AI","slug":"arthur-ai","logo":"","brief_summary":"US AI performance and firewall platform for monitoring, evaluating, and controlling production model behavior.","description":"Arthur AI is a US company that monitors and controls production AI systems. Its products cover model performance, evaluation, and an AI firewall for LLM traffic. Buyers are teams that need runtime control after models go live. This listing describes the public product.","category":"ai-model-security-red-team","tags":[],"founded":"2018","funding":"","funding_stage":"venture","url":"https://www.arthur.ai","docs_url":"","linkedin":"https://www.linkedin.com/company/arthur-ai","bh_tier":"","bh_booth":"","publish_after":null,"date_added":"2026-08-13","source":"us-intake-2026-08-13"},{"id":"artiphishell","name":"Artiphishell","slug":"artiphishell","logo":"","brief_summary":"Autonomous vulnerability discovery technology from the UCSB team that won DARPA's AI Cyber Challenge.","description":"Artiphishell commercializes the cyber reasoning system built by UC Santa Barbara researchers, which took first place in DARPA's AIxCC competition. The system finds and helps patch vulnerabilities in software autonomously, combining program analysis with AI. Founded in 2025, it targets organizations that want machine-scale bug discovery on their codebases.","category":"pentesting-offensive-security","tags":[],"founded":"2025","funding":"DARPA AIxCC prize-funded spinout (no VC disclosed)","funding_stage":"","url":"https://artiphishell.com","docs_url":"","linkedin":"","bh_tier":"Startup City","bh_booth":"5904","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"aryon","name":"Aryon","slug":"aryon","logo":"","brief_summary":"Cloud security platform blocking risky infrastructure changes before they are deployed.","description":"Aryon moves cloud security to the prevention side: it evaluates infrastructure changes as they happen and stops misconfigurations and policy violations before they land in production, rather than detecting them afterward. The approach targets cloud and platform teams tired of remediation backlogs. Founded in 2024, the Israeli company raised a $38M Series A.","category":"cloud-runtime-security","tags":[],"founded":"2024","funding":"$38M raised (Series A, 2026)","funding_stage":"series-a","url":"https://aryon.security","docs_url":"","linkedin":"","bh_tier":"Silver","bh_booth":"5539","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"astelia","name":"Astelia","slug":"astelia","logo":"","brief_summary":"Exposure management isolating the small share of vulnerabilities attackers can actually exploit.","description":"Astelia analyzes exposures from an attacker's point of view to identify the small fraction that is genuinely exploitable in a specific environment, so remediation effort concentrates there instead of on raw severity scores. The company was founded in 2024 and raised a Series A in 2026.","category":"exposure-management-ctem","tags":[],"founded":"2024","funding":"$35M raised (Series A, 2026)","funding_stage":"series-a","url":"https://www.astelia.io","docs_url":"","linkedin":"","bh_tier":"Silver Plus","bh_booth":"5717","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"at-t-business","name":"AT&T Business","slug":"at-t-business","logo":"","brief_summary":"Telecom carrier offering enterprise connectivity and managed network services with bundled security options.","description":"AT&T Business provides enterprise connectivity and managed network services, with security offerings such as DDoS protection and managed firewall layered on top of the network itself. It appeals to organizations that prefer sourcing network and security controls from their carrier under one contract.","category":"platforms-integrators","tags":[],"founded":"","funding":"","funding_stage":"","url":"https://www.business.att.com","docs_url":"","linkedin":"","bh_tier":"Gold","bh_booth":"5129","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"atsign","name":"Atsign","slug":"atsign","logo":"","brief_summary":"Networking technology that removes open listening ports so devices cannot be scanned or directly attacked.","description":"Atsign's protocol lets devices and services communicate through outbound-only, end-to-end encrypted connections, leaving no open ports for attackers to find. It suits IoT fleets, remote access, and infrastructure that should be invisible to internet scanning. The company was founded in 2019 and offers open source SDKs.","category":"pki-crypto-quantum","tags":[],"founded":"2019","funding":"$11M raised (Seed, 2021)","funding_stage":"seed","url":"https://atsign.com","docs_url":"","linkedin":"","bh_tier":"Startup City","bh_booth":"5901","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"attackiq","name":"AttackIQ","slug":"attackiq","logo":"","brief_summary":"Breach and attack simulation platform testing controls against adversary techniques mapped to MITRE ATT&CK.","description":"AttackIQ emulates adversary behavior aligned to MITRE ATT&CK to test whether deployed controls actually detect and block real techniques. Results feed exposure management, showing which gaps matter and whether fixes worked. Founded in 2013, it serves enterprises that want measurable evidence their security investments perform.","category":"exposure-management-ctem","tags":[],"founded":"2013","funding":"$76M raised (Series C, 2021)","funding_stage":"series-c","url":"https://www.attackiq.com","docs_url":"","linkedin":"","bh_tier":"Platinum","bh_booth":"1957","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"attaxion","name":"Attaxion","slug":"attaxion","logo":"","brief_summary":"External attack surface management platform sized for small security teams.","description":"Attaxion discovers an organization's internet-facing assets, maps exposures and vulnerabilities across them, and prioritizes what to fix. It is aimed at lean security teams that need enterprise-style attack surface coverage without a large operations staff. The company was founded in 2023.","category":"exposure-management-ctem","tags":[],"founded":"2023","funding":"Bootstrapped (no disclosed funding)","funding_stage":"bootstrapped","url":"https://attaxion.com","docs_url":"","linkedin":"","bh_tier":"Startup City","bh_booth":"5709","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"aurascape","name":"Aurascape","slug":"aurascape","logo":"","brief_summary":"AI security platform that inspects the content of AI interactions, not just which tools were accessed.","description":"Aurascape analyzes what actually flows between users, applications, and AI services, parsing prompts, responses, and agent actions to catch data leakage and risky behavior that URL-level controls miss. Security teams use it to govern sanctioned and shadow AI use. Founded in 2024, it raised a $63M Series A in 2025.","category":"agent-security-governance","tags":[],"founded":"2024","funding":"$63M raised (Series A, 2025)","funding_stage":"series-a","url":"https://aurascape.ai","docs_url":"","linkedin":"","bh_tier":"Startup City","bh_booth":"6016","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"autonomous-security","name":"Autonomous Security","slug":"autonomous-security","logo":"","brief_summary":"Endpoint tool that discovers AI agents in the enterprise and applies guardrails.","description":"Autonomous Security addresses the spread of AI agents across company machines. Its endpoint software identifies which agents and AI tools employees are running, then enforces guardrails on what those agents are allowed to do. It targets security teams that lack visibility into the AI workforce operating inside their environment.","category":"agent-security-governance","tags":[],"founded":"","funding":"","funding_stage":"","url":"https://a16y.ai","docs_url":"","linkedin":"","bh_tier":"Launch Pad","bh_booth":"6004","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"avepoint","name":"AvePoint","slug":"avepoint","logo":"","brief_summary":"Data governance, protection, and resilience platform for Microsoft 365, Google Workspace, and Salesforce.","description":"AvePoint manages data protection, governance, and backup across Microsoft 365, Google Workspace, and Salesforce, helping organizations control sprawl, enforce policy, and recover SaaS data. A Microsoft-ecosystem specialist since 2001 and now publicly traded, it increasingly focuses on preparing enterprise data estates for AI deployment.","category":"data-security-dlp","tags":[],"founded":"2001","funding":"Public company","funding_stage":"public","url":"https://www.avepoint.com","docs_url":"","linkedin":"","bh_tier":"Gold","bh_booth":"3761","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"axonius","name":"Axonius","slug":"axonius","logo":"","brief_summary":"Asset inventory platform correlating data from existing tools to expose coverage gaps and misconfigurations.","description":"Axonius connects to the tools an organization already runs and correlates their data into a complete inventory of devices, users, software, and cloud assets. From that baseline it flags missing agents, misconfigurations, and unmanaged systems. Used by security and IT teams that need to know what they own before they can secure it.","category":"exposure-management-ctem","tags":[],"founded":"2017","funding":"$865M raised (Series E, 2024)","funding_stage":"series-e","url":"https://www.axonius.com","docs_url":"","linkedin":"","bh_tier":"Platinum Plus","bh_booth":"2648","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"backline-ai","name":"Backline AI","slug":"backline-ai","logo":"","brief_summary":"Platform using AI agents to automatically remediate security findings, not just report them.","description":"Backline deploys fleets of AI agents that take open vulnerabilities and exposures and produce fixes, working through backlogs that human teams cannot clear. It targets organizations whose scanners generate far more findings than engineers can address. The company was founded in 2024.","category":"exposure-management-ctem","tags":[],"founded":"2024","funding":"$9M raised (Non Equity Assistance, 2025)","funding_stage":"venture","url":"https://backline.ai","docs_url":"","linkedin":"","bh_tier":"Startup City","bh_booth":"6015","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"backslash-security","name":"Backslash Security","slug":"backslash-security","logo":"","brief_summary":"Secures AI coding agents, MCP servers, and agentic tools on developer and employee machines.","description":"Backslash Security focuses on the security of AI-assisted work. The company started with reachability-based application security analysis and now covers AI coding agents, MCP servers, and related tooling running on developer and employee endpoints. Teams use it to see which agentic tools are in use and enforce policy around them.","category":"agent-security-governance","tags":[],"founded":"2022","funding":"$27M raised (Series A, 2026)","funding_stage":"series-a","url":"https://www.backslash.security","docs_url":"","linkedin":"","bh_tier":"AI Zone","bh_booth":"4909","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"beacon-security","name":"Beacon Security","slug":"beacon-security","logo":"","brief_summary":"Agentic security operations platform pairing AI agents with contextualized enterprise security data.","description":"Beacon builds an AI-driven platform for large-enterprise defenders, grounding its agents in context about the customer's environment and exposing an open harness so teams can direct how the agents work. Founded in 2024, it raised a seed round in 2026 and targets Fortune 500 security organizations.","category":"ai-soc-secops","tags":[],"founded":"2024","funding":"$13M raised (Seed, 2026)","funding_stage":"seed","url":"https://beacon.security","docs_url":"","linkedin":"","bh_tier":"Startup City","bh_booth":"5807","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"beazley-security","name":"Beazley Security","slug":"beazley-security","logo":"","brief_summary":"Cyber defense arm of insurer Beazley offering MDR, incident response, and risk services.","description":"Beazley Security combines managed detection and response, digital forensics and incident response, and risk consulting, drawing on claims insight from its parent, the specialty insurer Beazley. Clients get security operations informed by how incidents actually produce financial losses, and coverage decisions and defense can reinforce each other.","category":"platforms-integrators","tags":[],"founded":"","funding":"","funding_stage":"","url":"https://beazley.security","docs_url":"","linkedin":"","bh_tier":"Silver Plus","bh_booth":"2667","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"beyondtrust","name":"BeyondTrust","slug":"beyondtrust","logo":"","brief_summary":"Privileged access management platform securing credentials, sessions, and paths to privilege.","description":"BeyondTrust secures privileged access by vaulting credentials, brokering and recording remote sessions, managing endpoint privilege, and revealing the indirect paths attackers use to reach administrative rights. Its coverage extends across human, machine, and AI agent identities. Founded in 1985 and owned by private equity.","category":"identity-access","tags":[],"founded":"1985","funding":"PE-owned (Francisco Partners majority; Clearlake minority)","funding_stage":"","url":"https://www.beyondtrust.com","docs_url":"","linkedin":"","bh_tier":"Gold","bh_booth":"4720","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"bifrost-by-maxim-ai","name":"Bifrost (by Maxim AI)","slug":"bifrost-by-maxim-ai","logo":"","brief_summary":"Open-source LLM gateway with low-latency routing, guardrails, and usage governance.","description":"Bifrost is an open-source gateway from Maxim AI that sits between applications and LLM providers. It routes requests across models, applies guardrails and access policies, and tracks usage, with an emphasis on adding minimal latency. Engineering teams use it to centralize control over how their software calls language models.","category":"ai-model-security-red-team","tags":[],"founded":"2023","funding":"$3M raised (Seed, 2024, Elevation Capital)","funding_stage":"seed","url":"https://www.getmaxim.ai","docs_url":"","linkedin":"","bh_tier":"AI Zone","bh_booth":"5103","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"bigid","name":"BigID","slug":"bigid","logo":"","brief_summary":"New York data security platform for discovering, classifying, and governing sensitive data including AI training sets.","description":"BigID is a US data security company based in New York. It discovers and classifies sensitive data across clouds and apps, including data that later feeds AI systems. Buyers are privacy, security, and data teams. This listing describes the public product. It is not a certification claim.","category":"data-security-dlp","tags":[],"founded":"2016","funding":"","funding_stage":"venture","url":"https://bigid.com","docs_url":"","linkedin":"https://www.linkedin.com/company/bigid","bh_tier":"","bh_booth":"","publish_after":null,"date_added":"2026-08-13","source":"us-intake-2026-08-13"},{"id":"binalyze","name":"Binalyze","slug":"binalyze","logo":"","brief_summary":"Digital forensics and incident response platform collecting and analyzing evidence at enterprise speed.","description":"Binalyze AIR automates forensic evidence collection across thousands of endpoints, turning an alert into analyzed artifacts in minutes instead of the days manual DFIR imaging takes. Investigators get timelines, triage verdicts, and drone-style automated analysis. Founded in 2018, it serves incident response teams, MSSPs, and government agencies.","category":"threat-intel-dfir","tags":[],"founded":"2018","funding":"$31M raised (Series A, 2023)","funding_stage":"series-a","url":"https://www.binalyze.com","docs_url":"","linkedin":"","bh_tier":"Silver","bh_booth":"5932","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"binarly","name":"Binarly","slug":"binarly","logo":"","brief_summary":"Firmware and binary analysis platform finding vulnerabilities in software after it is compiled.","description":"Binarly analyzes compiled code rather than source, uncovering vulnerabilities and supply chain risks in firmware, bootloaders, and shipped software that source-level tools cannot see. Its research team has disclosed widespread UEFI flaws affecting major device makers. Founded in 2021, it serves device manufacturers and enterprises that need transparency below the operating system.","category":"supply-chain-secrets","tags":[],"founded":"2021","funding":"$14M raised (Seed, 2024)","funding_stage":"seed","url":"https://www.binarly.io","docs_url":"","linkedin":"","bh_tier":"Silver","bh_booth":"5939","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"binary-defense-systems","name":"Binary Defense Systems","slug":"binary-defense-systems","logo":"","brief_summary":"Managed detection and response provider with AI-assisted operations informed by attacker tradecraft.","description":"Binary Defense runs 24/7 managed detection and response across endpoints, network, identity, and cloud, with a heritage in offensive security: the firm shares roots with TrustedSec and applies attacker knowledge to defense. Its operations increasingly use AI agents to accelerate analysis. Founded in 2014, it serves mid-market and enterprise clients.","category":"ai-soc-secops","tags":[],"founded":"2014","funding":"$36M raised (Private Equity, 2022)","funding_stage":"private-equity","url":"https://binarydefense.com","docs_url":"","linkedin":"","bh_tier":"Silver","bh_booth":"6017","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"bishop-fox","name":"Bishop Fox","slug":"bishop-fox","logo":"","brief_summary":"Offensive security firm offering penetration testing, red teaming, and continuous attack surface testing.","description":"Bishop Fox has provided offensive security services since 2005. Its work spans application and network penetration testing, red team engagements, and assessments of AI and LLM deployments, alongside Cosmos, its continuous attack surface testing platform. Enterprises hire the firm to find exploitable weaknesses before attackers do.","category":"pentesting-offensive-security","tags":[],"founded":"2005","funding":"$146M raised (Series B, 2022)","funding_stage":"series-b","url":"https://bishopfox.com","docs_url":"","linkedin":"","bh_tier":"AI Zone","bh_booth":"5200","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"bitdefender","name":"Bitdefender","slug":"bitdefender","logo":"","brief_summary":"Antimalware, EDR, and XDR products protecting business and consumer endpoints.","description":"Bitdefender builds antimalware, endpoint detection and response, and extended detection and response products. Its GravityZone platform serves enterprises and managed service providers, while a separate consumer line covers personal devices. Founded in Romania in 2001, the company runs its own threat research labs and licenses its detection engines to other security vendors.","category":"endpoint-browser-mobile","tags":[],"founded":"2001","funding":"$187M raised (Secondary Market, 2017)","funding_stage":"venture","url":"https://www.bitdefender.com","docs_url":"","linkedin":"","bh_tier":"Gold","bh_booth":"5135","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"black-duck-software","name":"Black Duck Software","slug":"black-duck-software","logo":"","brief_summary":"Application security testing tools spanning software composition analysis, static analysis, and audits.","description":"Black Duck provides software composition analysis, static application security testing, and related audit and consulting services. Development and security teams use its tools to find vulnerabilities and open source license issues in their codebases. The business operated as the Synopsys Software Integrity Group before becoming an independent company in 2024.","category":"appsec-code-security","tags":[],"founded":"2002","funding":"$82M raised (2024)","funding_stage":"venture","url":"https://www.blackducksoftware.com","docs_url":"","linkedin":"","bh_tier":"Gold","bh_booth":"4547","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"black-kite","name":"Black Kite","slug":"black-kite","logo":"","brief_summary":"Third-party risk platform scoring vendor cyber risk from externally observable data.","description":"Black Kite assesses the cyber risk of an organization's vendors and suppliers without needing access to their internal systems. It builds ratings from outside-in signals and expresses results in technical, financial, and compliance terms, including estimated breach cost. Risk and procurement teams use it to prioritize and scale third-party assessments.","category":"grc-tprm","tags":[],"founded":"2016","funding":"$36M raised (Series B, 2021)","funding_stage":"series-b","url":"https://blackkite.com","docs_url":"","linkedin":"","bh_tier":"Gold","bh_booth":"2961","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"blackcloak","name":"BlackCloak","slug":"blackcloak","logo":"","brief_summary":"Personal cybersecurity service protecting executives and high-net-worth families outside the corporate perimeter.","description":"BlackCloak protects the personal digital lives of executives, board members, and wealthy families: home networks, personal devices, online accounts, and exposed personal data. The premise is that attackers target the unprotected personal side to reach the company. Founded in 2018, it is typically purchased by enterprises as a benefit for key personnel.","category":"privacy-exec-protection","tags":[],"founded":"2018","funding":"$31M raised (Venture Round, 2025)","funding_stage":"venture","url":"https://blackcloak.io","docs_url":"","linkedin":"","bh_tier":"Silver","bh_booth":"5926","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"blast-security","name":"Blast Security","slug":"blast-security","logo":"","brief_summary":"Cloud defense platform that removes attack paths in multi-cloud before incidents occur.","description":"Blast Security takes a preemptive stance on cloud security. Rather than alerting on active threats, it analyzes multi-cloud environments to find and eliminate the conditions attacks depend on before anyone exploits them. The company raised a $10M seed round in 2025 from 10D Capital and MizMaa Ventures.","category":"cloud-runtime-security","tags":[],"founded":"","funding":"$10M Seed (2025, 10D Capital & MizMaa Ventures)","funding_stage":"seed","url":"https://blast.security","docs_url":"","linkedin":"","bh_tier":"Launch Pad","bh_booth":"6201","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"blink-ops","name":"Blink Ops","slug":"blink-ops","logo":"","brief_summary":"Security automation platform generating workflows from natural language as an alternative to traditional SOAR.","description":"Blink Ops turns plain-language prompts into security automation workflows and ships a large library of prebuilt ones across common tools. It positions generated automation as the successor to hand-built SOAR playbooks. For SecOps teams that want automation running in days rather than after a long engineering project.","category":"ai-soc-secops","tags":[],"founded":"2021","funding":"$100M raised (Series B, 2025)","funding_stage":"series-b","url":"https://www.blinkops.com","docs_url":"","linkedin":"","bh_tier":"Platinum Plus","bh_booth":"3252","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"bloom-security","name":"Bloom Security","slug":"bloom-security","logo":"","brief_summary":"Endpoint security for AI-era risks: local AI tools, browser extensions, and MCP servers.","description":"Bloom covers the parts of the modern endpoint that EDR was not built for, including AI assistants and coding tools, browser extensions, and MCP servers running on employee machines. Security teams use it to see and control this new software layer. The company was founded in 2026 with a $20M seed round.","category":"endpoint-browser-mobile","tags":[],"founded":"2026","funding":"$20M raised (Seed, 2026)","funding_stage":"seed","url":"https://bloom.security","docs_url":"","linkedin":"","bh_tier":"Startup City","bh_booth":"5805","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"bold-security","name":"Bold Security","slug":"bold-security","logo":"","brief_summary":"Endpoint DLP classifying data and blocking risky movement in real time on-device.","description":"Bold Security performs data loss prevention directly on the endpoint, classifying content as it moves and stopping exfiltration attempts locally rather than routing decisions through the cloud. That keeps enforcement fast and functional even off-network. The company was founded in 2024.","category":"data-security-dlp","tags":[],"founded":"2024","funding":"$40M raised (Series A, 2026)","funding_stage":"series-a","url":"https://www.bold.security","docs_url":"","linkedin":"","bh_tier":"Silver Plus","bh_booth":"2970","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"bolster-ai","name":"Bolster AI","slug":"bolster-ai","logo":"","brief_summary":"Detects and takes down phishing sites, fake domains, and brand impersonation campaigns.","description":"Bolster protects brands from external fraud. Its platform scans domains, websites, social media, and app stores for phishing pages and impersonation, then automates takedown of the offending content. Companies use it to shut down scams targeting their customers, and its CheckPhish tool offers free URL scanning.","category":"social-engineering-human-risk","tags":[],"founded":"2017","funding":"$46M raised (Series B, 2024)","funding_stage":"series-b","url":"https://www.bolster.ai","docs_url":"","linkedin":"","bh_tier":"AI Zone","bh_booth":"4900","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"booli","name":"Booli","slug":"booli","logo":"","brief_summary":"SIEM that organizes alerts and investigations around the identity involved in each event.","description":"Booli structures security monitoring around people and identities rather than raw event streams, tying every alert and investigation to who was acting. This gives analysts immediate context on whether behavior fits the user behind it. The company was founded in 2022.","category":"siem-security-data","tags":[],"founded":"2022","funding":"No disclosed funding (likely bootstrapped)","funding_stage":"bootstrapped","url":"https://booli.ai","docs_url":"","linkedin":"","bh_tier":"Startup City","bh_booth":"6216","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"booz-allen-hamilton","name":"Booz Allen Hamilton","slug":"booz-allen-hamilton","logo":"","brief_summary":"Consulting and technology firm running cybersecurity and AI programs for government and enterprise.","description":"Booz Allen Hamilton is a US consulting firm that designs, builds, and operates technology programs, with large practices in cybersecurity and artificial intelligence. Much of its work supports defense, intelligence, and civil government agencies, alongside commercial clients. Services range from engineering and threat intelligence to incident response and mission support.","category":"platforms-integrators","tags":[],"founded":"","funding":"","funding_stage":"","url":"https://www.boozallen.com","docs_url":"","linkedin":"","bh_tier":"Gold","bh_booth":"2361","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"breachlock","name":"BreachLock","slug":"breachlock","logo":"","brief_summary":"Penetration testing provider combining human-led testing, automated scanning, and attack surface management.","description":"BreachLock delivers penetration testing as a service, pairing certified human testers with automation so assessments start faster and results arrive through a single platform. Offerings span external attack surface discovery, continuous automated testing, and compliance-driven manual pentests. Founded in 2019, it serves organizations that need audit-ready testing without long consultancy lead times.","category":"pentesting-offensive-security","tags":[],"founded":"2019","funding":"$3M raised (Seed, 2022)","funding_stage":"seed","url":"https://www.breachlock.com","docs_url":"","linkedin":"","bh_tier":"Silver","bh_booth":"5930","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"breeze-security","name":"Breeze Security","slug":"breeze-security","logo":"","brief_summary":"Platform mapping attack surface and exposures across cloud, SaaS, and AI environments in one view.","description":"Breeze correlates assets, identities, and weaknesses across cloud infrastructure, SaaS applications, and AI systems to show how they connect into real exposure. Security teams use it to understand and reduce attack surface that spans environment boundaries. Founded in 2023, it is backed by F2 Venture Capital.","category":"exposure-management-ctem","tags":[],"founded":"2023","funding":"$7M Seed (F2 Venture Capital; follow-on 2025)","funding_stage":"seed","url":"https://www.breeze-sec.com","docs_url":"","linkedin":"","bh_tier":"Startup City","bh_booth":"","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"brinqa","name":"Brinqa","slug":"brinqa","logo":"","brief_summary":"Risk-based vulnerability management platform connecting security findings to business context and ownership.","description":"Brinqa consolidates findings from an organization's scanners and security tools into one risk model, scoring each issue against the business value of the affected assets and routing remediation to the right owners. It suits large enterprises with sprawling toolsets and vulnerability backlogs. Founded in 2009, the Austin company raised $110M in 2021.","category":"exposure-management-ctem","tags":[],"founded":"2009","funding":"$110M raised (2021)","funding_stage":"venture","url":"https://www.brinqa.com","docs_url":"","linkedin":"","bh_tier":"Silver","bh_booth":"6030","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"broadcom","name":"Broadcom","slug":"broadcom","logo":"","brief_summary":"Enterprise software group whose security portfolio includes Symantec and Carbon Black product lines.","description":"Broadcom's enterprise security business combines the Symantec portfolio, covering endpoint, data loss prevention, and web security, with Carbon Black's endpoint detection and response. Both lines came to Broadcom through acquisition and continue under active development. The products target large enterprises and are typically sold within broader Broadcom licensing arrangements.","category":"platforms-integrators","tags":[],"founded":"","funding":"","funding_stage":"","url":"https://www.security.com","docs_url":"","linkedin":"","bh_tier":"Platinum","bh_booth":"4727","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"bugcrowd","name":"Bugcrowd","slug":"bugcrowd","logo":"","brief_summary":"Crowdsourced platform for bug bounty, vulnerability disclosure, pentesting, and attack surface management.","description":"Bugcrowd matches organizations with vetted security researchers for bug bounty programs, vulnerability disclosure, penetration testing, and attack surface management, using data on researcher skills to route the right people to each engagement. Founded in Australia in 2012, the company is now headquartered in San Francisco.","category":"pentesting-offensive-security","tags":[],"founded":"2012","funding":"$231M raised (Debt Financing, 2024)","funding_stage":"venture","url":"https://www.bugcrowd.com","docs_url":"","linkedin":"","bh_tier":"Silver Plus","bh_booth":"5532","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"business-unit-creative-srl","name":"Business Unit Creative SRL","slug":"business-unit-creative-srl","logo":"","brief_summary":"Italian services firm delivering penetration testing, threat intelligence, and cyber resilience consulting.","description":"Business Unit Creative is an Italian cybersecurity services company offering offensive security engagements, cyber threat intelligence, and resilience-focused consulting. It serves organizations that want hands-on testing and advisory work rather than a product. The firm was founded in 2024.","category":"pentesting-offensive-security","tags":[],"founded":"2024","funding":"Bootstrapped (services firm)","funding_stage":"bootstrapped","url":"https://www.bucreative.it","docs_url":"","linkedin":"","bh_tier":"Startup City","bh_booth":"5708","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"cantina","name":"Cantina","slug":"cantina","logo":"","brief_summary":"Security operations platform where AI agents investigate and respond to threats.","description":"Cantina builds an agentic platform for security operations teams. AI agents take on triage, investigation, and response work so analysts can keep pace with adversaries who are themselves automating attacks. Founded in 2023, the company targets teams that want to scale SOC output without scaling headcount.","category":"ai-soc-secops","tags":[],"founded":"2023","funding":"$16.5M raised ($8M round, 2026, led by Framework Ventures)","funding_stage":"venture","url":"https://www.cantina.security","docs_url":"","linkedin":"","bh_tier":"AI Zone","bh_booth":"5003","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"capsule-security","name":"Capsule Security","slug":"capsule-security","logo":"","brief_summary":"Runtime protection for AI agents against prompt injection, malicious tool calls, and data theft.","description":"Capsule adds a safety layer around running AI agents, inspecting their inputs and actions to stop prompt injection, unauthorized tool use, and exfiltration attempts as they happen. It targets teams putting agents into production who need guardrails beyond model-level safety. Founded in 2025, it raised a seed round in 2026.","category":"agent-security-governance","tags":[],"founded":"2025","funding":"$7M raised (Seed, 2026)","funding_stage":"seed","url":"https://www.capsulesecurity.io","docs_url":"","linkedin":"","bh_tier":"Startup City","bh_booth":"5806","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"casco","name":"Casco","slug":"casco","logo":"","brief_summary":"Automated security testing across web applications, APIs, infrastructure, and AI systems.","description":"Casco runs security tests without human operators driving each step. Its system probes web applications, APIs, cloud infrastructure, and AI deployments for exploitable weaknesses, then reports validated findings. Founded in 2025, the company targets teams that want continuous offensive testing rather than annual pentest engagements.","category":"pentesting-offensive-security","tags":[],"founded":"2025","funding":"$17M raised (Series A, 2026)","funding_stage":"series-a","url":"https://casco.com","docs_url":"","linkedin":"","bh_tier":"AI Zone","bh_booth":"5300","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"cato-networks","name":"Cato Networks","slug":"cato-networks","logo":"","brief_summary":"SASE platform delivering networking and network security as one global cloud service.","description":"Cato Networks operates a global cloud backbone that combines SD-WAN, firewalling, secure web access, and zero trust network access in a single service. Enterprises use it to retire stacks of point appliances and connect sites, remote users, and cloud resources through one policy layer. It was founded in 2015 by Shlomo Kramer, a Check Point co-founder.","category":"network-zero-trust","tags":[],"founded":"2015","funding":"$1.2B raised (Series G, 2025)","funding_stage":"series-g","url":"https://www.catonetworks.com","docs_url":"","linkedin":"","bh_tier":"Gold","bh_booth":"5120","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"cdw","name":"CDW","slug":"cdw","logo":"","brief_summary":"Technology reseller and integrator with a security product and services practice.","description":"CDW sells hardware, software, and cloud services to business, government, education, and healthcare customers, and its services arm handles design, integration, and managed operations. The security practice helps organizations choose, deploy, and run products from many vendors. Customers use it as a single purchasing and implementation partner across their IT estate.","category":"platforms-integrators","tags":[],"founded":"","funding":"","funding_stage":"","url":"https://www.cdw.com","docs_url":"","linkedin":"","bh_tier":"Gold","bh_booth":"4950","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"cellebrite","name":"Cellebrite","slug":"cellebrite","logo":"","brief_summary":"Digital forensics tools for collecting and analyzing evidence from mobile devices.","description":"Cellebrite sells forensic software used to lawfully collect, decode, and analyze data from phones and other digital sources, along with case management tools for investigative workflows. Law enforcement agencies are its primary customers, alongside corporate investigation teams. The Israeli company was founded in 1999 and is publicly traded.","category":"threat-intel-dfir","tags":[],"founded":"1999","funding":"Public company","funding_stage":"public","url":"https://cellebrite.com","docs_url":"","linkedin":"","bh_tier":"Silver Plus","bh_booth":"4709","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"censys","name":"Censys","slug":"censys","logo":"","brief_summary":"Internet-wide scan data powering attack surface management, exposure discovery, and threat hunting.","description":"Censys continuously scans and indexes hosts, services, and certificates across the public internet, and sells access to that map for attack surface management, exposure discovery, and threat hunting. The company grew out of University of Michigan research, including the ZMap scanner, and was founded in 2017.","category":"threat-intel-dfir","tags":[],"founded":"2017","funding":"$198M raised (Series D, 2026)","funding_stage":"series-d","url":"https://censys.com","docs_url":"","linkedin":"","bh_tier":"Silver Plus","bh_booth":"5336","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"certinext","name":"CertiNext","slug":"certinext","logo":"","brief_summary":"Certificate authority and digital trust platform for managing PKI, backed by eMudhra.","description":"CertiNext provides publicly trusted TLS certificates alongside a platform for managing certificate lifecycles and digital trust across an organization. It is operated by eMudhra, the publicly listed Indian company that runs one of the country's major certificate authorities and sells identity and signing infrastructure globally.","category":"pki-crypto-quantum","tags":[],"founded":"","funding":"Subsidiary of eMudhra (public, NSE: EMUDHRA)","funding_stage":"public","url":"https://certinext.io","docs_url":"","linkedin":"","bh_tier":"Silver","bh_booth":"5647","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"certiv","name":"Certiv","slug":"certiv","logo":"","brief_summary":"Protects deployed enterprise AI agents from prompt injection and manipulated actions.","description":"Certiv secures AI agents that companies have already put to work. It monitors agent behavior and intercepts actions driven by prompt injection or other manipulation, so a compromised input cannot become a harmful transaction. Founded in 2025, it targets enterprises whose agents hold real permissions in business systems.","category":"agent-security-governance","tags":[],"founded":"2025","funding":"$4M raised (Pre Seed, 2026)","funding_stage":"seed","url":"https://www.certiv.ai","docs_url":"","linkedin":"","bh_tier":"Launch Pad","bh_booth":"6102","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"chainguard","name":"Chainguard","slug":"chainguard","logo":"","brief_summary":"Minimal, continuously rebuilt container images and libraries shipped with few or no known CVEs.","description":"Chainguard produces hardened container base images, virtual machine images, and language ecosystem libraries that are rebuilt from source and delivered with signatures and SBOMs. Engineering teams use them to shrink vulnerability backlogs and meet compliance requirements without patching upstream images themselves. The company was founded in 2021 by former Google open source security engineers.","category":"supply-chain-secrets","tags":[],"founded":"2021","funding":"$892M raised (Debt Financing, 2025)","funding_stage":"venture","url":"https://chainguard.dev","docs_url":"","linkedin":"","bh_tier":"Gold","bh_booth":"1964","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"chainloop","name":"Chainloop","slug":"chainloop","logo":"","brief_summary":"Supply chain attestation platform enforcing governance over how software, including AI-written code, is built.","description":"Chainloop collects signed attestations and metadata from CI/CD pipelines, giving security teams evidence of how each artifact was built and a policy layer to enforce standards. It is relevant to organizations shipping AI-generated code that still must meet compliance and provenance requirements. The company was founded in 2023.","category":"supply-chain-secrets","tags":[],"founded":"2023","funding":"VC-backed, amount undisclosed (Pre-Seed)","funding_stage":"","url":"https://chainloop.dev","docs_url":"","linkedin":"","bh_tier":"Startup City","bh_booth":"5810","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"check-point-software","name":"Check Point Software","slug":"check-point-software","logo":"","brief_summary":"Firewalls and security software covering networks, cloud, email, and endpoints.","description":"Check Point sells firewalls and a broad software portfolio spanning network, cloud, email, and endpoint security, managed under its Infinity architecture. The Israeli company, founded in 1993 and publicly traded, popularized the stateful inspection firewall. Its customers range from small businesses to large enterprises and government agencies worldwide.","category":"network-zero-trust","tags":[],"founded":"1993","funding":"Public company","funding_stage":"public","url":"https://www.checkpoint.com","docs_url":"","linkedin":"","bh_tier":"Gold","bh_booth":"5329","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"checkmarx","name":"Checkmarx","slug":"checkmarx","logo":"","brief_summary":"Application security platform combining SAST, SCA, API security, and supply chain scanning.","description":"Checkmarx One brings static analysis, software composition analysis, API security, and supply chain checks into a single platform for development and AppSec teams. It correlates findings across scanners and routes fixes into developer workflows. The company, founded in 2006, has added capabilities aimed at code written or assisted by AI.","category":"appsec-code-security","tags":[],"founded":"2006","funding":"$176M raised (Private Equity, 2015)","funding_stage":"private-equity","url":"https://checkmarx.com","docs_url":"","linkedin":"","bh_tier":"Gold","bh_booth":"4553","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"cipherdata","name":"CipherData","slug":"cipherdata","logo":"","brief_summary":"Detection and response platform designed to counter AI-orchestrated attacks, founded by ex-DeepMind and Meta engineers.","description":"CipherData builds AI-native detection and response on the premise that attacks increasingly run at machine speed and need machine-speed defense. Its founders come from DeepMind and Meta. Founded in 2023, the company targets security teams preparing for adversaries that automate their operations with AI.","category":"ai-soc-secops","tags":[],"founded":"2023","funding":"Venture-backed (Asia2G, Aton; amount undisclosed)","funding_stage":"","url":"https://www.cipherdata.ai","docs_url":"","linkedin":"","bh_tier":"Startup City","bh_booth":"5815","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"cisco","name":"Cisco","slug":"cisco","logo":"","brief_summary":"Networking and security vendor offering firewalls, secure access, XDR, and Splunk analytics for enterprises.","description":"Cisco sells network infrastructure alongside a broad security portfolio covering firewalls, secure access, identity, and XDR. Its acquisition of Splunk added large-scale log analytics and SIEM to the lineup. Suited to enterprises that want networking, security, and observability from a single supplier with deep integration between the layers.","category":"platforms-integrators","tags":[],"founded":"","funding":"","funding_stage":"","url":"https://www.cisco.com","docs_url":"","linkedin":"","bh_tier":"Titanium","bh_booth":"2633 / 5500","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"claroty","name":"Claroty","slug":"claroty","logo":"","brief_summary":"Cyber-physical systems security platform for industrial, healthcare, and critical infrastructure environments.","description":"Claroty discovers and protects cyber-physical systems: industrial control networks, connected medical devices, and building management systems. It combines asset visibility, network threat detection, vulnerability prioritization, and secure remote access designed for environments where uptime and safety come first. Founded in 2015, its customers include manufacturers, hospitals, and critical infrastructure operators.","category":"ot-cyber-physical","tags":[],"founded":"2015","funding":"$940M raised (Series F, 2026)","funding_stage":"series-f","url":"https://claroty.com","docs_url":"","linkedin":"","bh_tier":"Platinum","bh_booth":"2757","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"clear","name":"CLEAR","slug":"clear","logo":"","brief_summary":"Identity verification company checking who users are through biometrics, documents, and device signals.","description":"CLEAR, best known for its biometric lanes in US airports, sells its identity verification stack to businesses. The platform confirms that a user is a real, specific person by combining face biometrics, government document checks, and device intelligence. Enterprises use it for onboarding, account recovery, and defense against impersonation and synthetic identities.","category":"identity-access","tags":[],"founded":"2010","funding":"Public company","funding_stage":"public","url":"https://identity.clearme.com","docs_url":"","linkedin":"","bh_tier":"Silver","bh_booth":"5544","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"clearly-ai","name":"Clearly AI","slug":"clearly-ai","logo":"","brief_summary":"AI system that performs security and privacy reviews of product designs and changes.","description":"Clearly AI automates the review work that security and privacy engineers do by hand, assessing designs, features, and changes with judgment aimed at matching an experienced practitioner. Product security teams use it to cover far more launches than manual review allows. Founded in 2024, it raised a seed round in 2026.","category":"appsec-code-security","tags":[],"founded":"2024","funding":"$13M raised (Seed, 2026)","funding_stage":"seed","url":"https://clearly-ai.com","docs_url":"","linkedin":"","bh_tier":"Startup City","bh_booth":"5909","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"cloaked","name":"Cloaked","slug":"cloaked","logo":"","brief_summary":"Consumer app for creating email, phone, and card aliases and removing personal data from brokers.","description":"Cloaked lets individuals generate throwaway identities, including email addresses, phone numbers, and payment cards, so their real details stay out of company databases. It also handles data broker removal and identity monitoring. Aimed at privacy-conscious consumers, the company was founded in 2020 and has raised over $400M.","category":"privacy-exec-protection","tags":[],"founded":"2020","funding":"$375M raised (Growth, 2026); $400M+ total","funding_stage":"venture","url":"https://www.cloaked.com","docs_url":"","linkedin":"","bh_tier":"Exhibitor","bh_booth":"6029","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"cloudflare","name":"Cloudflare","slug":"cloudflare","logo":"","brief_summary":"Global edge network providing DDoS protection, WAF, bot management, and zero trust access.","description":"Cloudflare fronts websites and applications with DDoS protection, WAF, and bot management from its global edge network, and extends the same network into zero trust access and secure web gateway for workforces. Its scale gives it visibility into a meaningful share of internet traffic. Founded in 2009 and publicly traded.","category":"network-zero-trust","tags":[],"founded":"2009","funding":"Public company","funding_stage":"public","url":"https://www.cloudflare.com","docs_url":"","linkedin":"","bh_tier":"Platinum","bh_booth":"3157","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"clover-security","name":"Clover Security","slug":"clover-security","logo":"","brief_summary":"Application security platform embedding AI agents into design and coding stages of development.","description":"Clover Security places AI agents inside developer tools so security issues get addressed at design and coding time rather than in post-hoc scans. It is built for engineering organizations whose developers already work alongside AI coding assistants. Founded in 2023.","category":"appsec-code-security","tags":[],"founded":"2023","funding":"$36M raised (Venture Round, 2026)","funding_stage":"venture","url":"https://www.clover.security","docs_url":"","linkedin":"","bh_tier":"Platinum","bh_booth":"4731","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"coalfire","name":"Coalfire","slug":"coalfire","logo":"","brief_summary":"Cybersecurity firm providing compliance assessments, advisory services, and offensive security testing.","description":"Coalfire is a services firm spanning audit and offense. It performs compliance assessments such as FedRAMP, PCI, and HIPAA validation, advises on security programs, and runs penetration testing and red team engagements. Cloud providers and enterprises use it when certification and technical assurance are both required.","category":"platforms-integrators","tags":[],"founded":"","funding":"","funding_stage":"","url":"https://www.coalfire.com","docs_url":"","linkedin":"","bh_tier":"Cyber District","bh_booth":"","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"cobalt","name":"Cobalt","slug":"cobalt","logo":"","brief_summary":"Pentest-as-a-service platform pairing a vetted tester community with workflow and reporting software.","description":"Cobalt delivers penetration testing through a SaaS platform backed by a community of several hundred vetted security testers. Customers scope, launch, and track pentests in the platform, with findings flowing into their development tools. The company has refined this model since 2013 and now layers AI-assisted orchestration on top.","category":"pentesting-offensive-security","tags":[],"founded":"2013","funding":"$37M raised (Series B, 2020)","funding_stage":"series-b","url":"https://cobalt.io","docs_url":"","linkedin":"","bh_tier":"AI Zone","bh_booth":"4903","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"codewall","name":"CodeWall","slug":"codewall","logo":"","brief_summary":"London-based platform for finding and fixing security flaws in AI-generated code.","description":"CodeWall focuses on the security of code written by AI assistants and agents, catching vulnerabilities these tools introduce before they ship. It targets engineering organizations where a growing share of the codebase is machine-written. The company is based in London and early-stage.","category":"appsec-code-security","tags":[],"founded":"","funding":"No disclosed funding (early-stage)","funding_stage":"","url":"https://codewall.ai","docs_url":"","linkedin":"","bh_tier":"Startup City","bh_booth":"6113","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"cogent-security","name":"Cogent Security","slug":"cogent-security","logo":"","brief_summary":"AI agents automating vulnerability management triage, prioritization, and remediation tracking.","description":"Cogent Security fields a set of AI agents that take vulnerability findings through triage, ownership assignment, and remediation follow-up, work that usually consumes analyst and engineering hours. The pitch is vulnerability management operating at machine speed. The company was founded in 2024.","category":"ai-soc-secops","tags":[],"founded":"2024","funding":"$53M raised (Series A $42M, 2026, Bain Capital Ventures)","funding_stage":"series-a","url":"https://www.cogent.com","docs_url":"","linkedin":"","bh_tier":"Silver Plus","bh_booth":"5536","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"cohesity","name":"Cohesity","slug":"cohesity","logo":"","brief_summary":"Enterprise backup and cyber resilience platform for recovering data after ransomware and destructive attacks.","description":"Cohesity protects enterprise data with backup, immutable snapshots, and isolated vaulting, and orchestrates clean recovery after ransomware. Its merger with Veritas's data protection business made it one of the largest vendors in the category. AI features help classify and search protected data. For enterprises that treat recoverability as a security control.","category":"resilience-ransomware","tags":[],"founded":"2013","funding":"$960M raised (Venture Round, 2025)","funding_stage":"venture","url":"https://www.cohesity.com","docs_url":"","linkedin":"","bh_tier":"Platinum","bh_booth":"4543","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"conceal","name":"Conceal","slug":"conceal","logo":"","brief_summary":"Browser extension delivering zero trust protection and secure web access without a dedicated browser.","description":"Conceal embeds security service edge capabilities directly into the browsers employees already use, isolating risky sites and blocking phishing at the point of click. It suits organizations, and MSPs serving them, that want browser-level zero trust without forcing a browser replacement. The company has raised $35M.","category":"endpoint-browser-mobile","tags":[],"founded":"2012","funding":"$35M raised (Series B, 2025)","funding_stage":"series-b","url":"https://www.conceal.io","docs_url":"","linkedin":"","bh_tier":"Startup City","bh_booth":"5915","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"concentric-ai","name":"Concentric AI","slug":"concentric-ai","logo":"","brief_summary":"AI-driven data security posture management for discovering, classifying, and protecting sensitive data.","description":"Concentric AI scans structured and unstructured data stores to find sensitive content, map who can access it, and flag risky sharing or permissions. Its models classify data by meaning rather than pattern matching alone, and issues can be fixed automatically. Security teams use it for DSPM across cloud and on-premises repositories.","category":"data-security-dlp","tags":[],"founded":"2018","funding":"$67M raised (Series B, 2024)","funding_stage":"series-b","url":"https://concentric.ai","docs_url":"","linkedin":"","bh_tier":"Gold","bh_booth":"4920","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"controlmonkey","name":"ControlMonkey","slug":"controlmonkey","logo":"","brief_summary":"Disaster recovery for cloud configuration, versioning infrastructure and SaaS settings for fast restoration.","description":"ControlMonkey continuously captures and versions cloud infrastructure and SaaS configuration, so teams can detect drift and roll environments back after outages, mistakes, or attacks. It appeals to platform teams treating recoverability of configuration as seriously as recoverability of data. The company was founded in 2022.","category":"resilience-ransomware","tags":[],"founded":"2022","funding":"$7M raised (Seed, 2025)","funding_stage":"seed","url":"https://controlmonkey.io","docs_url":"","linkedin":"","bh_tier":"Startup City","bh_booth":"6013","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"corelight","name":"Corelight","slug":"corelight","logo":"","brief_summary":"Network detection and response platform built on the open source Zeek monitoring framework.","description":"Corelight generates detailed network evidence using Zeek, the open source monitoring framework its founders created, and layers detections and analytics on top. SOC teams use its data for investigations, threat hunting, and as ground truth for AI-assisted workflows. Founded in 2013.","category":"network-zero-trust","tags":[],"founded":"2013","funding":"$309M raised (Series E, 2024)","funding_stage":"series-e","url":"https://www.corelight.com","docs_url":"","linkedin":"","bh_tier":"Platinum","bh_booth":"3940","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"corridor","name":"Corridor","slug":"corridor","logo":"","brief_summary":"Security layer for AI-assisted coding that catches flaws before code is generated.","description":"Corridor adds security to AI coding workflows. Rather than scanning finished code, it works upstream, steering AI coding tools away from insecure patterns while software is being designed and written. Founded in 2025, the company is aimed at engineering teams adopting agent-driven development at scale.","category":"appsec-code-security","tags":[],"founded":"2025","funding":"$30.4M raised (Series A, 2026, Felicis; $200M valuation)","funding_stage":"series-a","url":"https://corridor.dev","docs_url":"","linkedin":"","bh_tier":"AI Zone","bh_booth":"5206","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"cranium","name":"Cranium","slug":"cranium","logo":"","brief_summary":"AI security and governance platform inventorying models, agents, and pipelines and producing compliance evidence.","description":"Cranium discovers the AI systems an organization builds and buys, maps their components and exposure, and generates evidence for AI governance and regulatory requirements. The company spun out of KPMG in 2023. It serves enterprises that need to locate their models and agents before they can secure or attest to them.","category":"ai-model-security-red-team","tags":[],"founded":"2023","funding":"$58M raised (Venture Round, 2026)","funding_stage":"venture","url":"https://www.cranium.ai","docs_url":"","linkedin":"","bh_tier":"Platinum","bh_booth":"1357","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"crash-override","name":"Crash Override","slug":"crash-override","logo":"","brief_summary":"Embeds metadata into builds so teams can trace software from source to production.","description":"Crash Override instruments the software build process itself. Its technology, built around the open-source Chalk project, stamps artifacts with metadata at build time so organizations know where code came from, who built it, and where it runs. Engineering and security teams use it to answer provenance questions instantly.","category":"supply-chain-secrets","tags":[],"founded":"2022","funding":"$47M raised (Seed, 2026)","funding_stage":"seed","url":"https://crashoverride.com","docs_url":"","linkedin":"","bh_tier":"Launch Pad","bh_booth":"6205","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"cribl","name":"Cribl","slug":"cribl","logo":"","brief_summary":"Telemetry pipeline routing, filtering, and transforming security and observability data.","description":"Cribl Stream sits between telemetry sources and analytics or storage destinations, letting teams filter, enrich, redact, and route security and observability data on the way through. Organizations use it to cut SIEM ingestion costs and avoid committing all data to one vendor. The company was founded in 2018.","category":"siem-security-data","tags":[],"founded":"2018","funding":"$721M raised (Secondary Market, 2025)","funding_stage":"venture","url":"https://cribl.io","docs_url":"","linkedin":"","bh_tier":"Silver Plus","bh_booth":"5527","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"critical-start","name":"Critical Start","slug":"critical-start","logo":"","brief_summary":"Managed detection and response pairing human analysts with AI-assisted alert triage.","description":"Critical Start runs a 24x7 MDR service in which analysts investigate alerts from a customer's endpoint, SIEM, and identity tools, with AI used to speed triage. Customers can see the same evidence the SOC sees, and response commitments are contractually defined. Founded in 2012, the company serves mid-market and enterprise clients.","category":"ai-soc-secops","tags":[],"founded":"2012","funding":"$255M raised (Private Equity, 2022)","funding_stage":"private-equity","url":"https://www.criticalstart.com","docs_url":"","linkedin":"","bh_tier":"Gold","bh_booth":"5126","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"crogl","name":"Crogl","slug":"crogl","logo":"","brief_summary":"AI system that autonomously investigates security alerts within the customer's own environment.","description":"Crogl gives SOC analysts an autonomous investigation engine. It works through alerts by querying the customer's data sources, assembling evidence, and drawing conclusions, and it runs customer-managed so data stays inside the organization's control. Founded in 2023, it targets teams facing more alerts than analysts.","category":"ai-soc-secops","tags":[],"founded":"2023","funding":"$30M raised (Series A, 2025)","funding_stage":"series-a","url":"https://www.crogl.com","docs_url":"","linkedin":"","bh_tier":"Lobby Lounge","bh_booth":"","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"crowdstrike","name":"CrowdStrike","slug":"crowdstrike","logo":"","brief_summary":"US endpoint and AI SOC vendor. Falcon and Charlotte AI are used by enterprise security operations teams for detection and response.","description":"CrowdStrike is a US cybersecurity company best known for the Falcon platform. Charlotte AI sits on that stack to help SOC analysts triage and investigate faster. The company is public and based in the United States. This directory lists it for the AI-assisted SOC work, not as a claim that every Falcon module is an AI product.","category":"ai-soc-secops","tags":[],"founded":"2011","funding":"Public company","funding_stage":"public","url":"https://www.crowdstrike.com","docs_url":"","linkedin":"https://www.linkedin.com/company/crowdstrike","bh_tier":"","bh_booth":"","publish_after":null,"date_added":"2026-08-13","source":"us-intake-2026-08-13"},{"id":"cyata","name":"Cyata","slug":"cyata","logo":"","brief_summary":"Identity control plane that discovers and governs the AI agents operating inside an enterprise.","description":"Cyata inventories the AI agents acting within an organization, explains what each one is and can do, and applies governance over their identities and access. It targets security teams facing a fast-growing population of non-human actors. Founded in 2024, it raised $8M in 2025.","category":"agent-security-governance","tags":[],"founded":"2024","funding":"$8M raised (2025)","funding_stage":"venture","url":"https://cyata.ai","docs_url":"","linkedin":"","bh_tier":"Startup City","bh_booth":"5710","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"cyberhaven","name":"Cyberhaven","slug":"cyberhaven","logo":"","brief_summary":"Data security platform tracing data lineage to unify DLP, DSPM, and insider risk.","description":"Cyberhaven follows how data moves and transforms across endpoints and SaaS applications, using that lineage to classify sensitivity and enforce policy. The approach unifies DLP, data posture, and insider risk in one product, including controls on data flowing into AI tools. The company was founded in 2016.","category":"data-security-dlp","tags":[],"founded":"2016","funding":"$236M raised (Series D, 2025)","funding_stage":"series-d","url":"https://cyberhaven.com","docs_url":"","linkedin":"","bh_tier":"Silver Plus","bh_booth":"2467","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"cyble","name":"Cyble","slug":"cyble","logo":"","brief_summary":"Threat intelligence platform covering dark web monitoring, brand protection, and external risk detection.","description":"Cyble monitors the open, deep, and dark web for threats to its customers: leaked credentials, stolen data for sale, planned attacks, and brand impersonation. Its AI-driven platform packages this into threat intelligence, digital risk protection, and attack surface management products. Founded in 2019, it serves enterprises and governments across regions.","category":"threat-intel-dfir","tags":[],"founded":"2019","funding":"$45M raised (Series B, 2023)","funding_stage":"series-b","url":"https://cyble.com","docs_url":"","linkedin":"","bh_tier":"Silver","bh_booth":"6032","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"cybrhawk","name":"CybrHawk","slug":"cybrhawk","logo":"","brief_summary":"Platform combining XDR, SIEM, and an around-the-clock staffed SOC service.","description":"CybrHawk packages extended detection and response, SIEM, and a staffed 24/7 security operations center into a single offering. It serves enterprises and government organizations that want monitoring, detection, and response handled through one vendor. The company has been bootstrapped since its founding in 2016.","category":"ai-soc-secops","tags":[],"founded":"2016","funding":"Bootstrapped (no disclosed funding)","funding_stage":"bootstrapped","url":"https://cybrhawk.com","docs_url":"","linkedin":"","bh_tier":"AI Zone","bh_booth":"5409","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"cyera","name":"Cyera","slug":"cyera","logo":"","brief_summary":"Data security posture management platform classifying sensitive data and governing human and AI access.","description":"Cyera scans cloud and on-premises stores to find and classify sensitive data, then shows which people and AI systems can reach it. Remediation and data loss prevention capabilities act on those findings. Founded in 2021, it has expanded quickly from posture management into a broader data security platform.","category":"data-security-dlp","tags":[],"founded":"2021","funding":"$2.3B raised (Series G, 2026)","funding_stage":"series-g","url":"https://www.cyera.io","docs_url":"","linkedin":"","bh_tier":"Platinum","bh_booth":"4152","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"cymulate","name":"Cymulate","slug":"cymulate","logo":"","brief_summary":"Breach and attack simulation platform testing security controls against realistic attack techniques.","description":"Cymulate runs simulated attacks against an organization's own environment to show which controls hold and which fail. Teams use the results to tune defenses, validate configuration changes, and track security effectiveness over time. It suits security teams that want continuous evidence of readiness instead of an annual penetration test snapshot.","category":"exposure-management-ctem","tags":[],"founded":"2016","funding":"$141M raised (Series D, 2022)","funding_stage":"series-d","url":"https://cymulate.com","docs_url":"","linkedin":"","bh_tier":"Diamond","bh_booth":"1639","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"cytix","name":"Cytix","slug":"cytix","logo":"","brief_summary":"Platform that matches each code change to the appropriate security testing automatically.","description":"Cytix watches development activity and routes every change to the right form of testing, whether automated scanning or human pentesting, so testing effort tracks what actually changed. It suits teams replacing point-in-time pentests with continuous, change-driven coverage. The UK company was founded in 2022.","category":"appsec-code-security","tags":[],"founded":"2022","funding":"$3M raised (Seed, 2024)","funding_stage":"seed","url":"https://cytix.io","docs_url":"","linkedin":"","bh_tier":"Startup City","bh_booth":"6212","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"d3-security","name":"D3 Security","slug":"d3-security","logo":"","brief_summary":"SOC automation vendor whose Morpheus platform investigates alerts without prewritten playbooks.","description":"D3 Security started in SOAR and now sells Morpheus, a platform that autonomously triages and investigates every incoming alert rather than depending on playbook coverage. It integrates with common EDR, SIEM, and identity stacks to gather evidence and take action. SOC teams use it to shrink alert queues and manual investigation work.","category":"ai-soc-secops","tags":[],"founded":"2012","funding":"$15M raised (Venture Round, 2021)","funding_stage":"venture","url":"https://d3security.com","docs_url":"","linkedin":"","bh_tier":"Gold","bh_booth":"1761","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"dam-secure","name":"Dam Secure","slug":"dam-secure","logo":"","brief_summary":"Tool that turns plain-English security policies into real-time guardrails for developers and AI agents.","description":"Dam Secure lets security teams write rules in natural language and enforces them live as code is written, by humans or by AI coding agents. This closes the gap between written policy and what actually ships. Founded in 2025, the company raised a seed round in 2026.","category":"appsec-code-security","tags":[],"founded":"2025","funding":"$4M raised (Seed, 2026)","funding_stage":"seed","url":"https://damsecure.ai","docs_url":"","linkedin":"","bh_tier":"Startup City","bh_booth":"6313","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"darktrace","name":"Darktrace","slug":"darktrace","logo":"","brief_summary":"Detects threats by modeling normal behavior across network, email, cloud, OT, and identity.","description":"Darktrace learns a baseline of how each organization's users, devices, and services normally behave, then flags and can contain deviations that indicate attacks, including ones with no known signature. Coverage spans network, email, cloud, OT, and identity. The UK company was founded in 2013 and was taken private by Thoma Bravo in 2024.","category":"ai-soc-secops","tags":[],"founded":"2013","funding":"$230M raised (2020)","funding_stage":"venture","url":"https://www.darktrace.com","docs_url":"","linkedin":"","bh_tier":"Gold","bh_booth":"5123","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"databahn","name":"DataBahn","slug":"databahn","logo":"","brief_summary":"Security data pipeline routing, filtering, and governing telemetry between sources and destinations.","description":"DataBahn sits between security data sources and destinations like SIEMs and data lakes, collecting from hundreds of source types, trimming noise, enriching events, and steering each stream to the most cost-effective destination. AI agents assist with pipeline management. Founded in 2024, it targets enterprises whose SIEM bills grow faster than their insight.","category":"siem-security-data","tags":[],"founded":"2024","funding":"$92M raised (Series B, 2026)","funding_stage":"series-b","url":"https://databahn.ai","docs_url":"","linkedin":"","bh_tier":"Silver","bh_booth":"5923","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"databricks","name":"Databricks","slug":"databricks","logo":"","brief_summary":"Data and AI platform used for security lakehouses, analytics, and building AI agents.","description":"Databricks provides a lakehouse platform that unifies data warehousing and machine learning on open formats. Security teams use it to store and analyze large volumes of telemetry at lower cost than traditional SIEM storage, and to build and govern their own AI agents. It is among the largest private software companies.","category":"siem-security-data","tags":[],"founded":"2013","funding":"$30.6B raised (Debt Financing, 2026)","funding_stage":"venture","url":"https://databricks.com","docs_url":"","linkedin":"","bh_tier":"AI Zone","bh_booth":"5106","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"datadog","name":"Datadog","slug":"datadog","logo":"","brief_summary":"Observability platform with cloud SIEM, cloud security, and application security products.","description":"Datadog monitors infrastructure, applications, and logs, and extends that telemetry into security with Cloud SIEM, cloud security management, and application security features. Engineering and security teams work from one shared data platform for detection and investigation. Founded in 2010 in New York, the company is publicly traded.","category":"siem-security-data","tags":[],"founded":"2010","funding":"Public company","funding_stage":"public","url":"https://www.datadoghq.com","docs_url":"","linkedin":"","bh_tier":"Gold","bh_booth":"1961","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"datadome","name":"DataDome","slug":"datadome","logo":"","brief_summary":"Bot and fraud protection blocking automated attacks on websites, mobile apps, and APIs.","description":"DataDome inspects traffic in real time to separate humans from malicious automation, stopping scraping, credential stuffing, carding, and account takeover. It deploys at the edge across common CDNs and web platforms and makes blocking decisions in milliseconds. E-commerce, classifieds, and ticketing companies are typical customers. The company was founded in Paris in 2015.","category":"network-zero-trust","tags":[],"founded":"2015","funding":"$81M raised (Series C, 2023)","funding_stage":"series-c","url":"https://datadome.co","docs_url":"","linkedin":"","bh_tier":"Gold","bh_booth":"4157","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"dataminr","name":"Dataminr","slug":"dataminr","logo":"","brief_summary":"Real-time event and threat detection platform analyzing public data signals with AI.","description":"Dataminr detects emerging events and threats by analyzing public data sources in real time, from social media to the deep web, and alerts the organizations affected. Its cyber product fuses those external signals with internal context to inform exposure decisions. Founded in 2009, it serves corporate security, cyber, and public sector teams.","category":"threat-intel-dfir","tags":[],"founded":"2009","funding":"$1.2B raised (Convertible Note, 2025)","funding_stage":"venture","url":"https://www.dataminr.com","docs_url":"","linkedin":"","bh_tier":"Platinum","bh_booth":"1848","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"dawnguard","name":"Dawnguard","slug":"dawnguard","logo":"","brief_summary":"Turns secure architecture designs into deployable infrastructure through AI automation.","description":"Dawnguard automates the path from security architecture to running systems. Its AI takes intended designs and produces infrastructure that is deployable and aligned with security requirements from the start, rather than reviewed after the fact. Founded in 2025, it aims at teams where architecture documents and reality drift apart.","category":"cloud-runtime-security","tags":[],"founded":"2025","funding":"$6M raised (Pre Seed, 2026)","funding_stage":"seed","url":"https://dawnguard.ai","docs_url":"","linkedin":"","bh_tier":"Launch Pad","bh_booth":"6005","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"deception-check","name":"Deception Check","slug":"deception-check","logo":"","brief_summary":"Startup building detection for deepfakes and other AI-enabled deception.","description":"Deception Check works on identifying synthetic media and AI-driven deception, helping organizations verify that the person or content they are dealing with is genuine. It addresses the rise of deepfake-enabled fraud and social engineering.","category":"social-engineering-human-risk","tags":[],"founded":"","funding":"","funding_stage":"","url":"https://deceptioncheck.ai","docs_url":"","linkedin":"","bh_tier":"Startup City","bh_booth":"5801","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"deepkeep","name":"DeepKeep","slug":"deepkeep","logo":"","brief_summary":"AI security product combining a firewall, usage visibility, and trust controls for LLM and vision models.","description":"DeepKeep protects AI applications across their lifecycle, screening inputs and outputs with a firewall, monitoring how models are used, and evaluating them for weaknesses. It covers both language and computer vision systems. The Israeli company was founded in 2021.","category":"ai-model-security-red-team","tags":[],"founded":"2021","funding":"$24M raised (Grant, 2025)","funding_stage":"venture","url":"https://www.deepkeep.ai","docs_url":"","linkedin":"","bh_tier":"Startup City","bh_booth":"5706","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"defendlab","name":"DefendLab","slug":"defendlab","logo":"","brief_summary":"AI-driven product security testing that uses source code context to find business logic flaws.","description":"DefendLab runs gray-box security testing that reads application source while probing the running product, surfacing logic vulnerabilities that black-box scanners miss. It functions as an AI product security engineer for teams without dedicated AppSec headcount for every application.","category":"appsec-code-security","tags":[],"founded":"2004","funding":"Funding undisclosed","funding_stage":"","url":"https://www.defendlab.com","docs_url":"","linkedin":"","bh_tier":"Startup City","bh_booth":"6213","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"deleteme","name":"DeleteMe","slug":"deleteme","logo":"","brief_summary":"Service removing personal information from data broker sites to protect employees from targeted attacks.","description":"DeleteMe continuously finds and removes its subscribers' personal details from data broker and people-search sites. Its business offering treats employee exposure as an attack surface, since doxxed home addresses and phone numbers fuel phishing, impersonation, and physical threats against staff and executives. The service has operated since 2010.","category":"privacy-exec-protection","tags":[],"founded":"2010","funding":"Venture-backed (Abine Inc.; investors incl. General Catalyst, Atlas Venture; amounts undisclosed)","funding_stage":"","url":"https://joindeleteme.com","docs_url":"","linkedin":"","bh_tier":"Silver","bh_booth":"5638","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"delinea","name":"Delinea","slug":"delinea","logo":"","brief_summary":"Privileged access management and authorization for human and machine identities.","description":"Delinea secures privileged accounts with credential vaulting, session control, and continuous authorization across cloud and on-premises systems, extending classic PAM toward broader identity security. The company was formed from the merger of Thycotic and Centrify and is owned by private equity firm TPG.","category":"identity-access","tags":[],"founded":"2021","funding":"PE-owned (TPG; Thycotic+Centrify merger, IPO explored 2025)","funding_stage":"","url":"https://delinea.com","docs_url":"","linkedin":"","bh_tier":"Silver Plus","bh_booth":"2367","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"depthfirst","name":"depthfirst","slug":"depthfirst","logo":"","brief_summary":"AI systems that analyze code, infrastructure, and business logic to uncover exploitable vulnerabilities.","description":"depthfirst builds AI that reasons across a company's source code, infrastructure, and application logic to surface vulnerabilities that single-purpose scanners miss. The approach targets chained and logic-level flaws rather than pattern-matched findings, working with limited human involvement. The company was founded in 2024 and raised a Series B in 2026.","category":"appsec-code-security","tags":[],"founded":"2024","funding":"$120M raised (Series B, 2026)","funding_stage":"series-b","url":"https://depthfirst.com","docs_url":"","linkedin":"","bh_tier":"Gold","bh_booth":"4550","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"devarmor","name":"DevArmor","slug":"devarmor","logo":"","brief_summary":"San Francisco startup building application security tooling for AI-assisted development.","description":"DevArmor is an early-stage company working on application security for the era of AI-generated code, where development velocity outpaces traditional review. Founded in 2024, it is backed by Work-Bench and targets engineering teams adopting AI coding tools at scale.","category":"appsec-code-security","tags":[],"founded":"2024","funding":"$2.7M raised (Seed, 2025, Work-Bench)","funding_stage":"seed","url":"https://www.devarmor.com","docs_url":"","linkedin":"","bh_tier":"Startup City","bh_booth":"5808","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"digital-ai","name":"Digital.ai","slug":"digital-ai","logo":"","brief_summary":"DevOps and application protection suite, including Arxan hardening against reverse engineering.","description":"Digital.ai combines software delivery, agile planning, and application protection products. Its Arxan-derived hardening technology shields mobile, web, and desktop applications from reverse engineering and tampering through obfuscation and runtime checks. The company was formed in 2020 by merging CollabNet VersionOne, XebiaLabs, and Arxan under TPG Capital.","category":"endpoint-browser-mobile","tags":[],"founded":"2020","funding":"PE-owned (TPG Capital; formed 2020 from CollabNet VersionOne + XebiaLabs + Arxan)","funding_stage":"","url":"https://digital.ai","docs_url":"","linkedin":"","bh_tier":"AI Zone","bh_booth":"8008","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"dispel","name":"Dispel","slug":"dispel","logo":"","brief_summary":"Zero trust remote access platform built for industrial control systems and OT networks.","description":"Dispel provides zero trust remote access designed for factories, utilities, and other operational technology environments, brokering vendor and engineer connections without exposing control networks. Sessions are isolated, recorded, and governed by policy. It fits industrial operators that must let outside parties reach OT systems without standing VPN access.","category":"ot-cyber-physical","tags":[],"founded":"2014","funding":"$30M raised (Series B, 2024)","funding_stage":"series-b","url":"https://dispel.com","docs_url":"","linkedin":"","bh_tier":"Platinum Plus","bh_booth":"2652","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"dnsfilter","name":"DNSFilter","slug":"dnsfilter","logo":"","brief_summary":"Protective DNS service blocking malicious and unwanted domains before connections complete.","description":"DNSFilter blocks phishing, malware, and unwanted content at the DNS layer, using machine learning to classify domains, including newly registered ones that static feeds miss. Deployment is light: point resolvers at the service and set policy. Founded in 2015, it is popular with MSPs and lean IT teams.","category":"network-zero-trust","tags":[],"founded":"2015","funding":"$62M raised (Series A, 2023)","funding_stage":"series-a","url":"https://www.dnsfilter.com","docs_url":"","linkedin":"","bh_tier":"Platinum","bh_booth":"3948","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"doppel","name":"Doppel","slug":"doppel","logo":"","brief_summary":"Detects and takes down impersonation across domains, social media, apps, and ads.","description":"Doppel hunts for spoofed domains, fake social media accounts, malicious ads, and executive impersonation, then automates takedown requests with the relevant platforms and registrars. Machine learning separates genuine threats from lookalike noise at scale. The company was founded in 2022.","category":"social-engineering-human-risk","tags":[],"founded":"2022","funding":"$129M raised (Series C, 2025)","funding_stage":"series-c","url":"https://www.doppel.com","docs_url":"","linkedin":"","bh_tier":"Silver Plus","bh_booth":"3367","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"dragos","name":"Dragos","slug":"dragos","logo":"","brief_summary":"OT security platform, threat intelligence, and services for industrial control systems.","description":"Dragos monitors industrial control system networks for threats, publishes intelligence on adversary groups targeting critical infrastructure, and backs both with incident response services. Its platform maps OT assets and detects attacker behavior specific to industrial protocols. Founded in 2016 by practitioners with US intelligence backgrounds, it serves utilities, oil and gas, and manufacturing.","category":"ot-cyber-physical","tags":[],"founded":"2016","funding":"$438M raised (Debt Financing, 2025)","funding_stage":"venture","url":"https://www.dragos.com","docs_url":"","linkedin":"","bh_tier":"Gold","bh_booth":"4508","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"drata","name":"Drata","slug":"drata","logo":"","brief_summary":"Compliance automation continuously monitoring controls for SOC 2, ISO 27001, and other frameworks.","description":"Drata connects to a company's systems to collect evidence and continuously test controls across frameworks including SOC 2, ISO 27001, GDPR, and HIPAA, with risk management and trust center features layered on top. It targets companies that treat compliance as an ongoing state rather than an annual scramble. Founded in 2020.","category":"grc-tprm","tags":[],"founded":"2020","funding":"$328M raised (Series C, 2022)","funding_stage":"series-c","url":"https://drata.com","docs_url":"","linkedin":"","bh_tier":"Silver Plus","bh_booth":"5335","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"dropzone-ai","name":"Dropzone AI","slug":"dropzone-ai","logo":"","brief_summary":"AI analysts that autonomously investigate security alerts and document findings for SOC teams.","description":"Dropzone AI provides AI analysts that work an alert the way a tier-1 human would: gathering context, following the evidence, and writing up a conclusion. Teams use it to investigate every alert instead of sampling, and to extend coverage without hiring. Founded in 2023.","category":"ai-soc-secops","tags":[],"founded":"2023","funding":"$57M raised (Corporate Round, 2026)","funding_stage":"venture","url":"https://dropzone.ai","docs_url":"","linkedin":"","bh_tier":"Platinum Plus","bh_booth":"3740","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"druva","name":"Druva","slug":"druva","logo":"","brief_summary":"SaaS platform for data backup, recovery, and cyber resilience across cloud workloads.","description":"Druva delivers data protection as a fully managed SaaS service. It backs up endpoints, data center workloads, and cloud applications, and supports ransomware recovery with immutable, isolated copies. Organizations use it to retire backup infrastructure they would otherwise have to run and secure themselves.","category":"resilience-ransomware","tags":[],"founded":"2008","funding":"$475M raised (Series H, 2021)","funding_stage":"venture","url":"https://www.druva.com","docs_url":"","linkedin":"","bh_tier":"AI Zone","bh_booth":"5105","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"dynanic","name":"DYNANIC","slug":"dynanic","logo":"","brief_summary":"FPGA-based SmartNICs that run intrusion detection and packet inspection at 100-400Gbps.","description":"DYNANIC builds programmable network cards that offload IDS and deep packet inspection to FPGA hardware, keeping full visibility at speeds where software-based inspection drops packets. It targets operators of high-throughput networks that cannot trade performance for monitoring. The company was founded in 2021.","category":"network-zero-trust","tags":[],"founded":"2021","funding":"$581K raised (Pre Seed, 2024)","funding_stage":"seed","url":"https://dyna-nic.com","docs_url":"","linkedin":"","bh_tier":"Startup City","bh_booth":"6215","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"echo","name":"Echo","slug":"echo","logo":"","brief_summary":"Container images and packages kept free of known vulnerabilities by AI-driven rebuilds.","description":"Echo supplies container images and open source packages that are continuously rebuilt and patched by AI agents so they ship without known CVEs. Engineering teams use them as drop-in replacements for standard base images to shrink vulnerability backlogs. The company was founded in 2025.","category":"supply-chain-secrets","tags":[],"founded":"2025","funding":"$50M raised (Series A, 2025)","funding_stage":"series-a","url":"https://www.echo.ai","docs_url":"","linkedin":"","bh_tier":"Silver Plus","bh_booth":"5718","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"elastic","name":"Elastic","slug":"elastic","logo":"","brief_summary":"Search and analytics company offering SIEM, endpoint security, and analytics on the Elastic Stack.","description":"Elastic applies its search technology to security, offering SIEM, endpoint protection, and analytics on the same stack many teams already use for logging and observability. Its detection rules are published openly and its query language is familiar to engineers. Suited to teams that want security analytics tightly coupled to their data platform.","category":"siem-security-data","tags":[],"founded":"2012","funding":"Public company","funding_stage":"public","url":"https://www.elastic.co","docs_url":"","linkedin":"","bh_tier":"Platinum Plus","bh_booth":"3444","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"endace","name":"Endace","slug":"endace","logo":"","brief_summary":"Packet capture appliances recording full network traffic as evidence for security investigations.","description":"Endace builds high-speed packet capture infrastructure that records complete network traffic continuously, so responders can rewind to any moment of an incident and see exactly what crossed the wire. Its appliances integrate with common security tools for pivot-to-packets workflows. Founded in 2001 in New Zealand, it serves enterprises, carriers, and governments.","category":"network-zero-trust","tags":[],"founded":"2001","funding":"Private (management buyout 2015; ex-AIM listed, ex-Emulex)","funding_stage":"","url":"https://www.endace.com","docs_url":"","linkedin":"","bh_tier":"Silver","bh_booth":"2370","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"endor-labs","name":"Endor Labs","slug":"endor-labs","logo":"","brief_summary":"Application security platform prioritizing and fixing risks in dependencies and AI-written code.","description":"Endor Labs helps appsec teams cut through vulnerability noise. Its reachability analysis determines whether flagged dependency and code risks are actually exploitable in context, and the platform extends the same treatment to code produced by AI assistants. Engineering organizations use it to focus remediation on findings that matter.","category":"appsec-code-security","tags":[],"founded":"2021","funding":"$188M raised (Series B, 2025)","funding_stage":"series-b","url":"https://www.endorlabs.com","docs_url":"","linkedin":"","bh_tier":"Cyber District","bh_booth":"","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"ent","name":"Ent","slug":"ent","logo":"","brief_summary":"Endpoint platform evaluating the intent behind human and AI-driven activity.","description":"Ent builds an endpoint product that reasons about what users and AI agents are actually trying to do, applying security decisions to modern AI-assisted work rather than relying on static signatures. Its founders previously built RiskIQ. The company was founded in 2025 with a large seed round in 2026.","category":"endpoint-browser-mobile","tags":[],"founded":"2025","funding":"$100M raised (Seed, 2026)","funding_stage":"seed","url":"https://ent.ai","docs_url":"","linkedin":"","bh_tier":"Silver Plus","bh_booth":"5341","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"esentire","name":"eSentire","slug":"esentire","logo":"","brief_summary":"Managed detection and response pairing agentic AI with 24x7 human SOC analysts.","description":"eSentire delivers MDR in which AI handles triage and investigation while human analysts keep judgment over escalation and response actions. The company serves more than 2,000 organizations across industries. Founded in 2001, it is headquartered in Waterloo, Canada.","category":"ai-soc-secops","tags":[],"founded":"2001","funding":"$411M raised (Private Equity, 2022)","funding_stage":"private-equity","url":"https://www.esentire.com","docs_url":"","linkedin":"","bh_tier":"Silver Plus","bh_booth":"5736","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"eset","name":"ESET","slug":"eset","logo":"","brief_summary":"Endpoint protection, encryption, and MDR from a privately held Slovak security company.","description":"ESET sells antimalware, endpoint detection and response, encryption, and managed detection services for businesses and consumers. Its detection work combines machine learning with a long-running human research organization that regularly publishes threat findings. Headquartered in Bratislava, the company has been privately held since it was established in 1992.","category":"endpoint-browser-mobile","tags":[],"founded":"1992","funding":"Private, founder-owned (est. 1992, ~EUR 526M revenue)","funding_stage":"","url":"https://www.eset.com","docs_url":"","linkedin":"","bh_tier":"Gold","bh_booth":"4917","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"eshard","name":"eShard","slug":"eshard","logo":"","brief_summary":"Security testing tools and services for chips, embedded hardware, and mobile applications.","description":"eShard specializes in the low-level end of security testing: side-channel and fault injection analysis of chips, evaluation of secure elements, and testing of mobile applications against reverse engineering. It sells both tooling and expert services. Founded in 2015 in France, it serves semiconductor vendors, device makers, and security labs.","category":"pentesting-offensive-security","tags":[],"founded":"2015","funding":"Bootstrapped (no disclosed VC)","funding_stage":"bootstrapped","url":"https://www.eshard.com","docs_url":"","linkedin":"","bh_tier":"Silver","bh_booth":"5645","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"eve-security","name":"Eve Security","slug":"eve-security","logo":"","brief_summary":"Runtime security and observability for AI agent interactions and protocols.","description":"Eve Security watches agentic AI while it runs. The platform provides visibility into interactions between agents, tools, and protocols such as MCP, and detects threats in that traffic at runtime. It is aimed at organizations moving agents into production that need monitoring designed for how agents actually communicate.","category":"agent-security-governance","tags":[],"founded":"","funding":"$3M raised (Seed, 2025, LiveOak Ventures)","funding_stage":"seed","url":"https://eve.security","docs_url":"","linkedin":"","bh_tier":"Launch Pad","bh_booth":"6202","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"exaforce","name":"Exaforce","slug":"exaforce","logo":"","brief_summary":"SOC platform pairing AI agents with security data exploration to speed alert triage and investigation.","description":"Exaforce combines AI agents with large-scale security data exploration so SOC teams can triage and investigate faster. The agents handle routine analysis while human analysts keep control of decisions and escalations. Founded in 2023, it is aimed at teams trying to raise analyst throughput without growing headcount.","category":"ai-soc-secops","tags":[],"founded":"2023","funding":"$201M raised (Series B, 2026)","funding_stage":"series-b","url":"https://www.exaforce.com","docs_url":"","linkedin":"","bh_tier":"Diamond","bh_booth":"4144","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"extrahop","name":"ExtraHop","slug":"extrahop","logo":"","brief_summary":"Network detection and response analyzing wire traffic for threats and forensic context.","description":"ExtraHop passively analyzes network traffic in real time, decoding protocols to detect attacker behavior that endpoint and log tools can miss and giving responders detailed forensic context. It covers on-premises, cloud, and hybrid networks. The company was founded in 2007 and is based in Seattle.","category":"network-zero-trust","tags":[],"founded":"2007","funding":"$162M raised (2024)","funding_stage":"venture","url":"https://www.extrahop.com","docs_url":"","linkedin":"","bh_tier":"Silver Plus","bh_booth":"5512","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"f5","name":"F5","slug":"f5","logo":"","brief_summary":"Application delivery and security products protecting apps and APIs across data centers and clouds.","description":"F5 sells load balancing, web application firewalls, API security, and bot defense, delivered as hardware, software, and SaaS through its BIG-IP, NGINX, and Distributed Cloud product lines. Enterprises use it to keep applications available and protected wherever they run. The company was founded in 1996, is publicly traded, and is based in Seattle.","category":"network-zero-trust","tags":[],"founded":"1996","funding":"Public company","funding_stage":"public","url":"https://www.f5.com","docs_url":"","linkedin":"","bh_tier":"Gold","bh_booth":"4505","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"fable-security","name":"Fable Security","slug":"fable-security","logo":"","brief_summary":"Human risk platform that changes risky employee behavior through targeted, individualized interventions.","description":"Fable Security measures which employees exhibit risky security behavior and delivers precise nudges and interventions to change it, rather than running generic awareness training. Security teams use it to reduce human-driven incidents measurably. The company has raised $31M.","category":"social-engineering-human-risk","tags":[],"founded":"2012","funding":"$31M raised (Series A, 2025)","funding_stage":"series-a","url":"https://fablesecurity.com","docs_url":"","linkedin":"","bh_tier":"Startup City","bh_booth":"6011","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"fencer","name":"Fencer","slug":"fencer","logo":"","brief_summary":"AI agents that operate as a security team, from finding vulnerabilities through remediation.","description":"Fencer provides an agentic layer that covers an organization's attack surface end to end, discovering issues and carrying them through to fixes rather than stopping at a report. It targets companies that lack the headcount for a full security function. Founded in 2025, it raised seed funding from MHS Capital.","category":"appsec-code-security","tags":[],"founded":"2025","funding":"$5.5M raised (Seed, 2026, MHS Capital)","funding_stage":"seed","url":"https://www.fencer.dev","docs_url":"","linkedin":"","bh_tier":"Startup City","bh_booth":"5902","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"feroot-security","name":"Feroot Security","slug":"feroot-security","logo":"","brief_summary":"Platform for monitoring client-side scripts on websites to protect user data and meet compliance rules.","description":"Feroot watches the JavaScript, pixels, and trackers running in visitors' browsers, flagging scripts that collect personal data or violate rules like PCI DSS 4.0 and HIPAA. Compliance and security teams use it to inventory third-party code and prevent client-side data leakage. The company was founded in 2017.","category":"grc-tprm","tags":[],"founded":"2017","funding":"$26M raised (Series A, 2025)","funding_stage":"series-a","url":"https://www.feroot.com","docs_url":"","linkedin":"","bh_tier":"Exhibitor","bh_booth":"6026","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"fiddler-ai","name":"Fiddler AI","slug":"fiddler-ai","logo":"","brief_summary":"US AI observability platform for model performance, fairness, and LLM monitoring in production.","description":"Fiddler AI is a US platform for watching models and LLM applications in production. Teams use it to see performance, fairness, and safety issues after deploy. It is an observability product with a security-relevant monitoring slice, not an auditor. This listing describes the public product.","category":"ai-model-security-red-team","tags":[],"founded":"2018","funding":"","funding_stage":"venture","url":"https://www.fiddler.ai","docs_url":"","linkedin":"https://www.linkedin.com/company/fiddler-ai","bh_tier":"","bh_booth":"","publish_after":null,"date_added":"2026-08-13","source":"us-intake-2026-08-13"},{"id":"files-com","name":"Files.com","slug":"files-com","logo":"","brief_summary":"Managed file transfer platform for exchanging sensitive files between organizations, clouds, and partners.","description":"Files.com provides hosted managed file transfer with support for SFTP, FTPS, and AS2, plus workflow automation, integrations with major cloud storage services, and granular access controls. Companies use it to exchange sensitive files with partners while preserving encryption and audit requirements. It typically replaces self-hosted transfer servers with a managed service.","category":"data-security-dlp","tags":[],"founded":"2008","funding":"$46M raised (Series A, 2021)","funding_stage":"series-a","url":"https://www.files.com","docs_url":"","linkedin":"","bh_tier":"Gold","bh_booth":"5320","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"filigran","name":"Filigran","slug":"filigran","logo":"","brief_summary":"Open-source threat intelligence and attack simulation software, maker of OpenCTI and OpenBAS.","description":"Filigran develops OpenCTI for threat intelligence management and OpenBAS for breach and attack simulation, forming a threat-informed exposure management suite on an open-source foundation with commercial enterprise editions. The French company was founded in 2022.","category":"exposure-management-ctem","tags":[],"founded":"2022","funding":"$115M raised (Series C, 2025)","funding_stage":"series-c","url":"https://www.filigran.io","docs_url":"","linkedin":"","bh_tier":"Silver Plus","bh_booth":"5730","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"firemon","name":"FireMon","slug":"firemon","logo":"","brief_summary":"Network security policy management auditing firewall rules and segmentation at scale.","description":"FireMon inventories firewall and cloud security policies, finds risky, redundant, or non-compliant rules, validates segmentation, and automates change workflows across large hybrid networks. Enterprises with hundreds of firewalls from multiple vendors are the typical customer. The company was founded in 2004.","category":"network-zero-trust","tags":[],"founded":"2004","funding":"$40M raised (Debt Financing, 2020)","funding_stage":"venture","url":"https://www.firemon.com","docs_url":"","linkedin":"","bh_tier":"Silver Plus","bh_booth":"5339","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"firetail","name":"FireTail","slug":"firetail","logo":"","brief_summary":"Platform for discovering AI use across an organization and applying guardrails to AI you build.","description":"FireTail covers both sides of enterprise AI risk: finding the shadow AI employees already use, and securing the AI-powered applications and APIs the company builds itself. Security teams get one view of AI adoption and its controls. The company was founded in 2021.","category":"agent-security-governance","tags":[],"founded":"2021","funding":"$5M raised (Seed, 2022)","funding_stage":"seed","url":"https://www.firetail.ai","docs_url":"","linkedin":"","bh_tier":"Startup City","bh_booth":"5908","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"flint-ai","name":"Flint AI","slug":"flint-ai","logo":"","brief_summary":"Platform for testing and validating AI agents so they behave safely before production deployment.","description":"Flint AI addresses the operational gap between building an AI agent and trusting it: the platform tests agent behavior, validates it against safety and correctness expectations, and gates what reaches production. It targets engineering teams shipping agentic features who need evidence, not hope, that agents will behave.","category":"agent-security-governance","tags":[],"founded":"","funding":"","funding_stage":"","url":"https://www.flintai.dev","docs_url":"","linkedin":"","bh_tier":"Silver","bh_booth":"6027","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"forcepoint","name":"Forcepoint","slug":"forcepoint","logo":"","brief_summary":"Data security platform combining DLP, DSPM, and secure service edge controls.","description":"Forcepoint organizes its platform around data. It discovers and classifies sensitive information with DSPM, enforces DLP policies across endpoints and cloud services, and delivers SSE controls for web and application access. Owned by Francisco Partners, it serves enterprises and government customers with data-centric security requirements.","category":"data-security-dlp","tags":[],"founded":"1994","funding":"PE-owned (Francisco Partners, since 2021)","funding_stage":"","url":"https://www.forcepoint.com","docs_url":"","linkedin":"","bh_tier":"","bh_booth":"","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"fortaegis-technologies","name":"Fortaegis Technologies","slug":"fortaegis-technologies","logo":"","brief_summary":"Quantum-resistant network traffic security architecture aimed at critical infrastructure.","description":"Fortaegis builds hardware-anchored security for protecting traffic against future quantum-capable adversaries, targeting operators of critical infrastructure with long asset lifetimes. The Dutch company was founded in 2023 and counts Prodrive Technologies among its strategic backers.","category":"pki-crypto-quantum","tags":[],"founded":"2023","funding":"Venture-backed; prior rounds EUR 15M+, new strategic round w/ Prodrive (2025)","funding_stage":"venture","url":"https://fortaegis.com","docs_url":"","linkedin":"","bh_tier":"Startup City","bh_booth":"5907","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"fortinet","name":"Fortinet","slug":"fortinet","logo":"","brief_summary":"Network security vendor built around FortiGate firewalls, extending into SD-WAN, SASE, and security operations.","description":"Fortinet builds network security products around its FortiGate firewall line and the shared FortiOS operating system, extending into SD-WAN, SASE, and security operations. It designs its own ASICs to run inspection at high throughput. A common choice for organizations standardizing network security on one ecosystem. Public since 2009.","category":"network-zero-trust","tags":[],"founded":"2000","funding":"Public company","funding_stage":"public","url":"https://www.fortinet.com","docs_url":"","linkedin":"","bh_tier":"Platinum Plus","bh_booth":"2644","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"fortra","name":"Fortra","slug":"fortra","logo":"","brief_summary":"Portfolio security vendor spanning data protection, email security, offensive security tools, and infrastructure defense.","description":"Fortra assembles a set of acquired security products into one portfolio, including data loss prevention, email security, infrastructure protection, and offensive security tooling such as Cobalt Strike. It appeals to organizations that would rather consolidate several security functions under a single vendor relationship than manage many point products.","category":"platforms-integrators","tags":[],"founded":"","funding":"","funding_stage":"","url":"https://www.fortra.com","docs_url":"","linkedin":"","bh_tier":"Diamond","bh_booth":"2939","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"forward","name":"Forward","slug":"forward","logo":"","brief_summary":"Network digital twin software that models exact network behavior to verify security and change impact.","description":"Forward Networks builds a mathematically precise software copy of an organization's network, computing every path traffic can take across devices and clouds. Teams query it to verify segmentation, find unintended reachability, and prove a change is safe before pushing it. Founded in 2013 by Stanford PhDs, it serves large enterprises and agencies.","category":"network-zero-trust","tags":[],"founded":"2013","funding":"$112M raised (Series D, 2023)","funding_stage":"series-d","url":"https://forwardnetworks.com","docs_url":"","linkedin":"","bh_tier":"Silver","bh_booth":"5929","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"frame-security","name":"Frame Security","slug":"frame-security","logo":"","brief_summary":"Protects organizations from AI-generated phishing, deepfakes, and social engineering campaigns.","description":"Frame Security focuses on the human attack surface, building defenses against phishing, voice and video deepfakes, and impersonation campaigns produced with generative AI. Its protections adjust as attacker techniques evolve rather than relying on fixed detection rules. The company was founded in 2025 and raised venture funding in 2026.","category":"social-engineering-human-risk","tags":[],"founded":"2025","funding":"$50M raised (Venture Round, 2026)","funding_stage":"venture","url":"https://www.framesecurity.com","docs_url":"","linkedin":"","bh_tier":"Gold","bh_booth":"1361","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"fusionauth","name":"FusionAuth","slug":"fusionauth","logo":"","brief_summary":"Customer identity and access management platform built for developers to integrate and self-host.","description":"FusionAuth provides authentication, authorization, and user management for customer-facing applications, with an API-first design that developers can run anywhere: self-hosted or in FusionAuth's cloud. It covers login, SSO, MFA, and passwordless flows without per-user pricing surprises. Founded in 2009, it competes with hosted-only CIAM providers on control and flexibility.","category":"identity-access","tags":[],"founded":"2009","funding":"$65M raised (Venture Round, 2023)","funding_stage":"venture","url":"https://fusionauth.io","docs_url":"","linkedin":"","bh_tier":"Silver","bh_booth":"5642","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"gambit","name":"Gambit","slug":"gambit","logo":"","brief_summary":"Recovery readiness platform governing resilience across cloud infrastructure, backups, and infrastructure as code.","description":"Gambit focuses on whether an organization could actually recover from a destructive attack. It maps dependencies across cloud, backups, and infrastructure as code, surfaces gaps that would break recovery, and keeps readiness continuously governed. Founded in 2024, it suits teams treating recovery as an engineering discipline rather than an annual DR exercise.","category":"resilience-ransomware","tags":[],"founded":"2024","funding":"$61M raised (Series A, 2026)","funding_stage":"series-a","url":"https://www.gambit.security","docs_url":"","linkedin":"","bh_tier":"Platinum","bh_booth":"4931","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"gecko-security","name":"Gecko Security","slug":"gecko-security","logo":"","brief_summary":"AI code analysis engine that finds business logic vulnerabilities traditional scanners cannot detect.","description":"Gecko applies AI reasoning to static analysis, understanding what code is supposed to do so it can spot logic flaws, broken authorization, and other bugs pattern-matching tools miss. It targets AppSec teams frustrated by scanner blind spots. The company was founded in 2024 and went through Y Combinator.","category":"appsec-code-security","tags":[],"founded":"2024","funding":"$0.5M raised (YC F24 seed, 2024)","funding_stage":"seed","url":"https://www.gecko.security","docs_url":"","linkedin":"","bh_tier":"Startup City","bh_booth":"5713","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"geordie","name":"Geordie","slug":"geordie","logo":"","brief_summary":"Platform that maps what every AI agent in the enterprise can access and steers it away from risk.","description":"Geordie discovers deployed AI agents, builds a map of the systems and data each one touches, and applies governance to keep their behavior inside acceptable bounds. It targets enterprises scaling agent deployments faster than their security review process. Founded in 2025, it raised a $42M Series A in 2026.","category":"agent-security-governance","tags":[],"founded":"2025","funding":"$42M raised (Series A, 2026)","funding_stage":"series-a","url":"https://www.geordie.ai","docs_url":"","linkedin":"","bh_tier":"Startup City","bh_booth":"5903","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"getreal-security","name":"GetReal Security","slug":"getreal-security","logo":"","brief_summary":"Deepfake detection across voice, video, and images, protecting high-stakes communications.","description":"GetReal verifies the authenticity of media and participants in critical communications, detecting synthetic audio and video used in fraud and impersonation. It serves enterprises worried about deepfaked executives on calls and manipulated content. Founded in 2024, it raised an $18M Series A in 2025.","category":"social-engineering-human-risk","tags":[],"founded":"2024","funding":"$18M raised (Series A, 2025)","funding_stage":"series-a","url":"https://getrealsecurity.com","docs_url":"","linkedin":"","bh_tier":"Startup City","bh_booth":"5809","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"ghosteye","name":"GhostEye","slug":"ghosteye","logo":"","brief_summary":"Autonomous system that tests employees against realistic attacks and closes the exposures it finds.","description":"GhostEye runs a continuous loop against an organization's human attack surface, simulating the social engineering employees actually face and then remediating the weaknesses it uncovers. Founded in 2025 and part of Y Combinator's S25 batch, it targets teams replacing static phishing simulations.","category":"social-engineering-human-risk","tags":[],"founded":"2025","funding":"$500K raised (YC S25 batch, 2025)","funding_stage":"venture","url":"https://ghosteye.ai","docs_url":"","linkedin":"","bh_tier":"Startup City","bh_booth":"6315","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"gitguardian","name":"GitGuardian","slug":"gitguardian","logo":"","brief_summary":"Secrets detection platform finding leaked credentials in code and managing non-human identities.","description":"GitGuardian scans repositories, pipelines, and collaboration tools for leaked API keys, tokens, and passwords, and has expanded into governing the wider population of non-human identities that machines and AI agents use to authenticate. Its public GitHub monitoring has made it a reference point for secrets sprawl research. Founded in 2017 in Paris.","category":"supply-chain-secrets","tags":[],"founded":"2017","funding":"$106M raised (Series C, 2026)","funding_stage":"series-c","url":"https://www.gitguardian.com","docs_url":"","linkedin":"","bh_tier":"Silver","bh_booth":"1970","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"github","name":"GitHub","slug":"github","logo":"","brief_summary":"US developer platform. Advanced Security and Copilot security features cover code scanning, secrets, and AI-assisted review.","description":"GitHub is a US developer platform owned by Microsoft. This listing is for GitHub Advanced Security and the security side of Copilot: code scanning, secret scanning, and AI-assisted review on the pull request. Microsoft is already listed separately as a platform. This is the developer-facing security product.","category":"appsec-code-security","tags":[],"founded":"2008","funding":"Public company (Microsoft)","funding_stage":"public","url":"https://github.com/security","docs_url":"https://docs.github.com/en/code-security","linkedin":"https://www.linkedin.com/company/github","bh_tier":"","bh_booth":"","publish_after":null,"date_added":"2026-08-13","source":"us-intake-2026-08-13"},{"id":"gitlab","name":"GitLab","slug":"gitlab","logo":"","brief_summary":"DevSecOps platform covering source control, CI/CD, planning, and built-in security scanning.","description":"GitLab provides a single application for the software delivery lifecycle, from source control and CI/CD through planning and release. Security scanning for code, dependencies, containers, and secrets is built into the pipeline, and the platform increasingly supports AI agents as contributors. Enterprises use it to consolidate separate DevOps tools.","category":"appsec-code-security","tags":[],"founded":"2014","funding":"Public company","funding_stage":"public","url":"https://about.gitlab.com","docs_url":"","linkedin":"","bh_tier":"AI Zone","bh_booth":"5009","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"glow","name":"Glow","slug":"glow","logo":"","brief_summary":"Israeli agency that produces event activations and experiential marketing for conferences.","description":"Glow is an Israeli company that designs and runs event activations. It is not a security vendor itself; it appears in the security ecosystem by producing branded experiences and activations at industry events. Companies engage it for exhibition presence and experiential marketing.","category":"platforms-integrators","tags":[],"founded":"","funding":"","funding_stage":"","url":"https://www.glow.io","docs_url":"","linkedin":"","bh_tier":"Activation Area","bh_booth":"","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"google-cloud","name":"Google Cloud","slug":"google-cloud","logo":"","brief_summary":"Cloud platform combining Mandiant incident response, threat intelligence, and AI-assisted security operations tooling.","description":"Google Cloud pairs its cloud platform with the Mandiant incident response and threat intelligence practice and Gemini-assisted tooling in Google SecOps. Customers get frontline breach expertise alongside SIEM and threat intelligence products. Aimed at enterprises that want cloud, intelligence, and security operations from one provider.","category":"platforms-integrators","tags":[],"founded":"","funding":"","funding_stage":"","url":"https://cloud.google.com","docs_url":"","linkedin":"","bh_tier":"Platinum Plus","bh_booth":"2152","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"gradient-technologies","name":"Gradient Technologies","slug":"gradient-technologies","logo":"","brief_summary":"Identity platform binding credentials to trusted hardware so they cannot be phished.","description":"Gradient makes authentication phishing resistant by rooting credentials in the devices that use them. Human users and machine workloads authenticate with keys anchored to trusted hardware, removing the passwords and bearer tokens attackers steal. The company targets enterprises hardening identity for both people and machine-to-machine access.","category":"identity-access","tags":[],"founded":"2018","funding":"$10M+ raised (early-stage VC: Wing VC, First Star, Prime Impact)","funding_stage":"venture","url":"https://www.gradient.tech","docs_url":"","linkedin":"","bh_tier":"AI Zone","bh_booth":"8205","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"gravwell","name":"Gravwell","slug":"gravwell","logo":"","brief_summary":"Security data lake with unlimited ingest pricing, removing the incentive to drop telemetry.","description":"Gravwell is a data lake for security and machine data that prices by infrastructure rather than data volume, so teams can keep every log instead of rationing ingest to control SIEM costs. Its query language supports investigation across structured and binary data. Founded in 2017, it appeals to teams with blind spots created by ingest-based billing.","category":"siem-security-data","tags":[],"founded":"2017","funding":"$15.4M Series A (2025, Two Bear Capital)","funding_stage":"series-a","url":"https://www.gravwell.io","docs_url":"","linkedin":"","bh_tier":"Silver","bh_booth":"6033","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"gray-swan","name":"Gray Swan","slug":"gray-swan","logo":"","brief_summary":"AI security research company that stress-tests and hardens frontier models.","description":"Gray Swan AI runs adversarial research on advanced AI systems. It operates large public red-teaming competitions, builds automated attack tooling, and develops defenses that make models more resistant to jailbreaks and misuse. Frontier labs and enterprises use its findings and benchmarks to gauge how robust their models really are.","category":"ai-model-security-red-team","tags":[],"founded":"2024","funding":"$40M raised (2026)","funding_stage":"venture","url":"https://www.grayswan.ai","docs_url":"","linkedin":"","bh_tier":"AI Zone","bh_booth":"5407","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"gtb-technologies","name":"GTB Technologies","slug":"gtb-technologies","logo":"","brief_summary":"Data protection platform combining DLP, data discovery, and AI governance with deterministic detection.","description":"GTB Technologies detects and blocks sensitive data leaving an organization, using deterministic fingerprinting methods intended to minimize false positives, and covers discovery, classification, and control of data flowing to AI tools. The company has been self-funded since its founding in 2004.","category":"data-security-dlp","tags":[],"founded":"2004","funding":"Bootstrapped (self-funded since 2004)","funding_stage":"bootstrapped","url":"https://gttb.com","docs_url":"","linkedin":"","bh_tier":"Silver Plus","bh_booth":"5535","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"guidepoint-security","name":"GuidePoint Security","slug":"guidepoint-security","logo":"","brief_summary":"Cybersecurity solutions integrator providing advisory services and vendor selection guidance.","description":"GuidePoint Security helps organizations design and build their security programs. As an integrator, it evaluates products across the vendor landscape, recommends fits for each customer's environment, and delivers implementation and advisory services. US enterprises and government agencies use it as an intermediary between their needs and a crowded market.","category":"platforms-integrators","tags":[],"founded":"","funding":"","funding_stage":"","url":"https://www.guidepointsecurity.com","docs_url":"","linkedin":"","bh_tier":"Cyber District","bh_booth":"","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"gurucul","name":"Gurucul","slug":"gurucul","logo":"","brief_summary":"SIEM platform unifying detection, investigation, and response with behavior analytics.","description":"Gurucul layers user and entity behavior analytics, identity analytics, and AI-assisted investigation on a next-generation SIEM, aiming to consolidate the SOC tool stack into one platform. The company was founded in 2010 and has grown without outside funding.","category":"ai-soc-secops","tags":[],"founded":"2010","funding":"Bootstrapped (self-funded, profitable)","funding_stage":"bootstrapped","url":"https://gurucul.com","docs_url":"","linkedin":"","bh_tier":"Silver Plus","bh_booth":"4912","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"hackerone-inc","name":"HackerOne Inc.","slug":"hackerone-inc","logo":"","brief_summary":"Platform connecting organizations with security researchers for bug bounties and penetration tests.","description":"HackerOne runs bug bounty programs, vulnerability disclosure programs, and pentest engagements that draw on a large community of vetted researchers, with AI increasingly assisting triage and testing. Customers include technology companies, enterprises, and government agencies. The company was founded in 2012 and is headquartered in San Francisco.","category":"pentesting-offensive-security","tags":[],"founded":"2012","funding":"$159M raised (Venture Round, 2022)","funding_stage":"venture","url":"https://www.hackerone.com","docs_url":"","linkedin":"","bh_tier":"Gold","bh_booth":"4747","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"hacknotice","name":"HackNotice","slug":"hacknotice","logo":"","brief_summary":"Threat intelligence service showing which of your vendors are actively under attack.","description":"HackNotice applies adversary intelligence to third-party risk. Instead of relying on questionnaires, it monitors breach activity, stolen credentials, and attacker chatter to flag which vendors in a company's supply chain are being attacked or already compromised. Risk teams use it to act on live signals rather than annual reviews.","category":"grc-tprm","tags":[],"founded":"2018","funding":"$7M raised (Series A, 2022)","funding_stage":"series-a","url":"https://hacknotice.com","docs_url":"","linkedin":"","bh_tier":"AI Zone","bh_booth":"5008","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"hadrian","name":"Hadrian","slug":"hadrian","logo":"","brief_summary":"External attack surface management platform testing exposures the way an attacker would.","description":"Hadrian continuously discovers an organization's internet-facing assets and probes them offensively, using AI to chain findings the way a real attacker would rather than just flagging open ports. The result is a validated, prioritized view of external risk. Founded in 2021 in Amsterdam, it serves European and global enterprises.","category":"exposure-management-ctem","tags":[],"founded":"2021","funding":"$14M raised (Series Unknown, 2023)","funding_stage":"venture","url":"https://www.hadrian.io","docs_url":"","linkedin":"","bh_tier":"Silver","bh_booth":"2570","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"halcyon","name":"Halcyon","slug":"halcyon","logo":"","brief_summary":"Dedicated anti-ransomware layer stopping encryption and extortion that slips past EDR.","description":"Halcyon runs alongside existing endpoint tools as a ransomware-specific defense layer, detecting and blocking encryption behavior, capturing keys to enable recovery when needed, and countering data extortion. It is built on the premise that general-purpose EDR misses ransomware tradecraft. The company was founded in 2017.","category":"resilience-ransomware","tags":[],"founded":"2017","funding":"$190M raised (Series C, 2024)","funding_stage":"series-c","url":"https://www.halcyon.ai","docs_url":"","linkedin":"","bh_tier":"Silver Plus","bh_booth":"4915","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"haproxy-technologies","name":"HAProxy Technologies","slug":"haproxy-technologies","logo":"","brief_summary":"Maker of the HAProxy load balancer, with enterprise application delivery and edge security products.","description":"HAProxy Technologies maintains HAProxy, the widely deployed open source software load balancer, and sells enterprise editions that add WAF, bot management, and rate limiting. Its products sit in front of some of the highest-traffic applications on the internet. The company bootstrapped for roughly a decade before taking outside investment in 2024.","category":"network-zero-trust","tags":[],"founded":"2013","funding":"$10M Series A (2024, FOCUS Capital Partners); long-bootstrapped before","funding_stage":"series-a","url":"https://www.haproxy.com","docs_url":"","linkedin":"","bh_tier":"Platinum","bh_booth":"4208","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"harmonic-security","name":"Harmonic Security","slug":"harmonic-security","logo":"","brief_summary":"Prevents employees from leaking sensitive data into generative AI tools.","description":"Harmonic Security addresses data loss through GenAI usage. It watches what employees paste and upload into AI tools, identifies sensitive material using purpose-built language models rather than pattern matching, and blocks or coaches in the moment. Security teams use it to allow AI adoption without losing control of confidential data.","category":"data-security-dlp","tags":[],"founded":"2023","funding":"$24M raised (Series A, 2024)","funding_stage":"series-a","url":"https://www.harmonic.security","docs_url":"","linkedin":"","bh_tier":"AI Zone","bh_booth":"5209","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"harness","name":"Harness","slug":"harness","logo":"","brief_summary":"Software delivery platform with built-in code scanning, supply chain security, and WAAP.","description":"Harness is a CI/CD and software delivery platform that folds security into the pipeline, including code and dependency scanning, supply chain integrity, chaos engineering, and web application and API protection. Engineering organizations use it to ship and secure software from one system. It was founded in 2016 by Jyoti Bansal, who previously founded AppDynamics.","category":"appsec-code-security","tags":[],"founded":"2016","funding":"$775M raised (Series E, 2025)","funding_stage":"series-e","url":"https://www.harness.io","docs_url":"","linkedin":"","bh_tier":"Gold","bh_booth":"2161","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"hashicorp","name":"HashiCorp","slug":"hashicorp","logo":"","brief_summary":"Infrastructure automation company behind Terraform and Vault, now owned by IBM.","description":"HashiCorp builds the tools much of the industry uses to provision and secure cloud infrastructure: Terraform for infrastructure as code, Vault for secrets management and encryption, plus Consul and Boundary for service networking and access. Founded in 2012 and acquired by IBM in 2025, it anchors many enterprises' security lifecycle automation.","category":"supply-chain-secrets","tags":[],"founded":"2012","funding":"$349M raised (Secondary Market, 2021)","funding_stage":"venture","url":"https://www.hashicorp.com","docs_url":"","linkedin":"","bh_tier":"Silver","bh_booth":"2770","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"heeler","name":"Heeler","slug":"heeler","logo":"","brief_summary":"Application security platform for AI-driven development, spanning prevention, fixes, and audit.","description":"Heeler secures the software development lifecycle as AI agents take on more of the coding, preventing risky changes, fixing issues, and keeping an auditable record across the SDLC. It targets engineering organizations where agentic development is becoming the norm. The company was founded in 2023.","category":"appsec-code-security","tags":[],"founded":"2023","funding":"$8M raised (Seed, 2024)","funding_stage":"seed","url":"https://www.heeler.com","docs_url":"","linkedin":"","bh_tier":"Startup City","bh_booth":"5816","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"hexnode","name":"Hexnode","slug":"hexnode","logo":"","brief_summary":"Unified endpoint management with added XDR and identity capabilities, from Mitsogo.","description":"Hexnode manages devices across Windows, macOS, iOS, Android, and Linux from a single console, with policy enforcement, kiosk modes, and newer XDR and identity features. It is the flagship product of Mitsogo, a bootstrapped company founded in 2013.","category":"endpoint-browser-mobile","tags":[],"founded":"2013","funding":"Bootstrapped (Mitsogo division)","funding_stage":"bootstrapped","url":"https://www.hexnode.com","docs_url":"","linkedin":"","bh_tier":"Silver Plus","bh_booth":"5735","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"hid-global","name":"HID Global","slug":"hid-global","logo":"","brief_summary":"Identity products spanning physical access badges, readers, biometrics, and digital credentials.","description":"HID Global makes access control readers and cards, government ID technology, biometrics, and digital identity credentials used both to open doors and to authenticate to systems. It serves enterprises, governments, and OEMs worldwide, and operates as part of the Assa Abloy group.","category":"identity-access","tags":[],"founded":"2001","funding":"$19M raised (2010)","funding_stage":"venture","url":"https://www.hidglobal.com","docs_url":"","linkedin":"","bh_tier":"Silver Plus","bh_booth":"5311","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"hiddenlayer","name":"HiddenLayer","slug":"hiddenlayer","logo":"","brief_summary":"Platform protecting machine learning models from adversarial attacks across their lifecycle.","description":"HiddenLayer secures AI systems end to end. The platform discovers models in use, scans them and their supply chain for tampering or embedded malicious code, simulates attacks, and monitors runtime behavior for adversarial inputs. Enterprises and government agencies use it to defend models the way endpoint tools defend machines.","category":"ai-model-security-red-team","tags":[],"founded":"2022","funding":"$56M raised (Series A, 2023)","funding_stage":"series-a","url":"https://hiddenlayer.com","docs_url":"","linkedin":"","bh_tier":"AI Zone","bh_booth":"5607","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"honeycake","name":"Honeycake","slug":"honeycake","logo":"","brief_summary":"Embeds access controls into files so sharing can be revoked or redacted later.","description":"Honeycake protects data at the file level. Access rules travel with each document, so owners can revoke or redact what a recipient sees even after the file has been shared with people or AI agents. Founded in 2025, it targets teams whose sensitive files routinely leave their own systems.","category":"data-security-dlp","tags":[],"founded":"2025","funding":"$200K raised (Seed, 2025)","funding_stage":"seed","url":"https://honeycakefiles.com","docs_url":"","linkedin":"","bh_tier":"Launch Pad","bh_booth":"6101","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"horizon3-ai","name":"Horizon3.ai","slug":"horizon3-ai","logo":"","brief_summary":"Autonomous penetration testing that exploits and verifies weaknesses in live environments.","description":"Horizon3.ai's NodeZero runs continuous, self-service penetration tests against internal and external environments, chaining real exploits to prove which weaknesses are actually reachable. Teams receive verified attack paths and fix guidance instead of raw scanner output. The company was founded in 2019 by offensive security practitioners from military and industry backgrounds.","category":"pentesting-offensive-security","tags":[],"founded":"2019","funding":"$178M raised (Venture Round, 2026)","funding_stage":"venture","url":"https://www.horizon3.ai","docs_url":"","linkedin":"","bh_tier":"Gold","bh_booth":"4357","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"hoxhunt","name":"Hoxhunt","slug":"hoxhunt","logo":"","brief_summary":"Phishing simulation and awareness training that adapts to each employee's behavior.","description":"Hoxhunt trains employees to spot phishing through individually tailored simulations that get harder as people improve, applying behavioral science and gamification to keep engagement high. Security teams get measurable risk reduction rather than annual-training checkbox compliance. Founded in 2016 in Helsinki, it serves large enterprises across industries.","category":"social-engineering-human-risk","tags":[],"founded":"2016","funding":"$43M raised (Series B, 2022)","funding_stage":"series-b","url":"https://www.hoxhunt.com","docs_url":"","linkedin":"","bh_tier":"Silver","bh_booth":"5927","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"hpe","name":"HPE","slug":"hpe","logo":"","brief_summary":"Enterprise IT vendor providing servers, storage, and AI-driven networking through Aruba and Juniper.","description":"Hewlett Packard Enterprise supplies infrastructure for data centers, edge, and cloud. Its networking business, built around Aruba and the acquisition of Juniper Networks, applies AI to network operations and enforces security through zero trust access controls. Large organizations buy from HPE across compute, storage, and connectivity.","category":"platforms-integrators","tags":[],"founded":"","funding":"","funding_stage":"","url":"https://www.hpe.com","docs_url":"","linkedin":"","bh_tier":"AI Zone","bh_booth":"4905","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"huntress","name":"Huntress","slug":"huntress","logo":"","brief_summary":"Managed security platform with a 24/7 human SOC built for small and mid-sized businesses.","description":"Huntress pairs its endpoint, identity, and email security products with a 24/7 human SOC that investigates and responds on customers' behalf. It is built and priced for SMBs and the MSPs that serve them, a segment most enterprise vendors ignore. Founded in 2015 by former NSA operators.","category":"ai-soc-secops","tags":[],"founded":"2015","funding":"$310M raised (Series D, 2024)","funding_stage":"series-d","url":"https://huntresslabs.com","docs_url":"","linkedin":"","bh_tier":"Platinum","bh_booth":"1845","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"hush-security","name":"Hush Security","slug":"hush-security","logo":"","brief_summary":"Replaces static machine credentials with just-in-time, expiring access for workloads and AI agents.","description":"Hush Security tackles the sprawl of non-human identities. It maps machine identities and their secrets, then swaps long-lived keys and credentials for access grants issued at request time and expiring after use. The approach covers workloads and AI agents alike, shrinking what attackers can steal from vaults or code.","category":"agent-security-governance","tags":[],"founded":"2024","funding":"$41M raised (Series A, 2026)","funding_stage":"series-a","url":"https://www.hush.security","docs_url":"","linkedin":"","bh_tier":"AI Zone","bh_booth":"5306","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"iboss","name":"iboss","slug":"iboss","logo":"","brief_summary":"Cloud-delivered zero trust platform for secure web access, DLP, and private applications.","description":"iboss routes user and device traffic through its cloud to enforce web filtering, malware inspection, data loss prevention, and zero trust access to internal applications. It sells to enterprises and public sector organizations replacing on-premises proxy appliances. The platform also gives administrators visibility into generative AI use across the workforce.","category":"network-zero-trust","tags":[],"founded":"2003","funding":"$180M raised (Series B, 2021)","funding_stage":"series-b","url":"https://www.iboss.com","docs_url":"","linkedin":"","bh_tier":"Gold","bh_booth":"3957","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"illumio","name":"Illumio","slug":"illumio","logo":"","brief_summary":"Zero trust segmentation platform restricting lateral movement between workloads, endpoints, and cloud resources.","description":"Illumio maps traffic flows between workloads and enforces segmentation policy so a compromise of one system cannot spread freely. It operates across data centers, cloud, and endpoints without depending on network hardware. Founded in 2013, it is used by enterprises putting zero trust principles into practice at the network layer.","category":"network-zero-trust","tags":[],"founded":"2013","funding":"$558M raised (Series F, 2021)","funding_stage":"series-f","url":"https://www.illumio.com","docs_url":"","linkedin":"","bh_tier":"Platinum","bh_booth":"4743","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"impart","name":"Impart","slug":"impart","logo":"","brief_summary":"Runtime protection for APIs and applications, built as a modern WAF alternative.","description":"Impart Security provides an application and API protection layer that runs inline at runtime. It combines WAF-style filtering with API-aware detection and response, managed as code and designed to cut the false positives that plague older appliances. Security engineering teams deploy it in front of production services.","category":"appsec-code-security","tags":[],"founded":"2021","funding":"$20M raised (Series A $12M, 2025)","funding_stage":"series-a","url":"https://www.impart.security","docs_url":"","linkedin":"","bh_tier":"AI Zone","bh_booth":"8108","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"infisical","name":"Infisical","slug":"infisical","logo":"","brief_summary":"Open source platform for managing application secrets, certificates, and SSH access.","description":"Infisical centralizes the secrets that applications and infrastructure depend on: API keys, database credentials, certificates, and SSH access, synced across environments and injected into workloads. The core platform is open source and can be self-hosted, which appeals to teams wary of black-box secret stores. Founded in 2022, it raised a $19M Series A.","category":"supply-chain-secrets","tags":[],"founded":"2022","funding":"$19M raised (Series A, 2025)","funding_stage":"series-a","url":"https://infisical.com","docs_url":"","linkedin":"","bh_tier":"Silver","bh_booth":"2870","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"infoblox","name":"Infoblox","slug":"infoblox","logo":"","brief_summary":"DNS, DHCP, and IP address management platform with DNS-layer threat detection and blocking.","description":"Infoblox provides core network services, DNS, DHCP, and IP address management, and layers security on top by using DNS as both a control point and a detection signal. Its threat intelligence focuses on malicious infrastructure and lookalike domains. Founded in 1999, it suits organizations that want networking and security teams working from shared data.","category":"network-zero-trust","tags":[],"founded":"1999","funding":"$53M raised (Private Equity, 2020)","funding_stage":"private-equity","url":"https://www.infoblox.com","docs_url":"","linkedin":"","bh_tier":"Platinum","bh_booth":"2357","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"insight","name":"Insight","slug":"insight","logo":"","brief_summary":"Technology solutions integrator supplying hardware, software, and services for enterprise transformation.","description":"Insight Enterprises is a solutions integrator that helps organizations buy, deploy, and manage technology. Its services span cloud, data, AI, and cybersecurity, layered on top of a large hardware and software supply business. Enterprises use Insight as a single partner for sourcing and implementation across those domains.","category":"platforms-integrators","tags":[],"founded":"","funding":"","funding_stage":"","url":"https://www.insight.com","docs_url":"","linkedin":"","bh_tier":"AI Zone","bh_booth":"8607","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"intel-471","name":"Intel 471","slug":"intel-471","logo":"","brief_summary":"Cybercrime intelligence collected by human sources inside underground forums and marketplaces.","description":"Intel 471 gathers intelligence from within criminal forums, marketplaces, and messaging channels, tracking threat actors, malware operations, and compromised credentials, with AI applied on top of human-led collection. Security teams use it for early warning and attribution. Founded in 2014, the company is backed by Thoma Bravo.","category":"threat-intel-dfir","tags":[],"founded":"2014","funding":"PE-owned (Thoma Bravo, 2021)","funding_stage":"","url":"https://intel471.com","docs_url":"","linkedin":"","bh_tier":"Silver Plus","bh_booth":"5723","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"intezer","name":"Intezer","slug":"intezer","logo":"","brief_summary":"Automated alert triage and investigation escalating only confirmed threats to analysts.","description":"Intezer connects to EDR, email, and SIEM alert queues, investigates each alert automatically using techniques that include code genetic analysis, closes false positives, and hands analysts only real incidents with supporting evidence. Lean security teams use it as a first line of triage. The Israeli company was founded in 2016.","category":"ai-soc-secops","tags":[],"founded":"2016","funding":"$58M raised (Series C, 2024)","funding_stage":"series-c","url":"https://intezer.com","docs_url":"","linkedin":"","bh_tier":"Silver Plus","bh_booth":"5524","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"introw","name":"Introw","slug":"introw","logo":"","brief_summary":"Partner relationship management tool that works inside Slack, Teams, and the CRM.","description":"Introw runs partner programs through the channels people already use, connecting partners via Slack and Microsoft Teams and syncing activity into the CRM, with agentic automation handling routine coordination. It targets channel and alliance teams at B2B companies, including security vendors.","category":"platforms-integrators","tags":[],"founded":"","funding":"","funding_stage":"","url":"https://www.introw.io","docs_url":"","linkedin":"","bh_tier":"Startup City","bh_booth":"6012","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"invicti-security","name":"Invicti Security","slug":"invicti-security","logo":"","brief_summary":"Web application and API security testing combining DAST scanning with ASPM.","description":"Invicti, the company behind the Netsparker and Acunetix scanners, tests running web applications and APIs dynamically and verifies many findings automatically through proof-based scanning, layering application security posture management on top. The company took its current form in 2018 and is majority owned by Summit Partners.","category":"appsec-code-security","tags":[],"founded":"2018","funding":"PE-owned (Summit Partners majority, $625M investment 2021)","funding_stage":"","url":"https://www.invicti.com","docs_url":"","linkedin":"","bh_tier":"Silver Plus","bh_booth":"3267","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"invisirisk","name":"InvisiRisk","slug":"invisirisk","logo":"","brief_summary":"Firewall for CI/CD pipelines that enforces security policy on builds in real time.","description":"InvisiRisk applies a firewall model to the software build process. Sitting in the CI/CD pipeline, it inspects what builds fetch and produce, enforcing policy on dependencies, tools, and outbound connections while jobs run. It targets teams concerned about supply chain attacks that strike during the build itself.","category":"supply-chain-secrets","tags":[],"founded":"2024","funding":"No disclosed funding","funding_stage":"","url":"https://www.invisirisk.com","docs_url":"","linkedin":"","bh_tier":"Launch Pad","bh_booth":"6000","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"ionix","name":"IONIX","slug":"ionix","logo":"","brief_summary":"Attack surface management platform that discovers, tests, and prioritizes an organization's internet-facing assets and exposures.","description":"IONIX maps an organization's external attack surface, including assets owned by third parties and digital supply chain connections, then tests which exposures are actually exploitable. Security teams use it to run continuous threat exposure management programs with findings ranked by real-world risk rather than raw scanner output. The company was founded in 2017.","category":"exposure-management-ctem","tags":[],"founded":"2017","funding":"$50M raised (Series A, 2024)","funding_stage":"series-a","url":"https://www.ionix.io","docs_url":"","linkedin":"","bh_tier":"Silver Plus","bh_booth":"4914","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"ipinfo","name":"IPinfo","slug":"ipinfo","logo":"","brief_summary":"IP address intelligence provider offering geolocation, ASN, VPN, and proxy detection data via API.","description":"IPinfo maintains datasets that describe IP addresses: where they are located, which network operates them, and whether they belong to VPNs, proxies, or hosting providers. Security teams, fraud analysts, and developers consume the data through APIs and downloadable databases to enrich logs, score risk, and investigate traffic. The company has been bootstrapped since 2013.","category":"threat-intel-dfir","tags":[],"founded":"2013","funding":"Bootstrapped (founded 2013)","funding_stage":"bootstrapped","url":"https://ipinfo.io","docs_url":"","linkedin":"","bh_tier":"Silver Plus","bh_booth":"2867","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"ironcircle","name":"IronCircle","slug":"ironcircle","logo":"","brief_summary":"Cybersecurity workforce training platform using AI to build practitioner skills.","description":"IronCircle trains security professionals through an AI-driven learning platform. It was formed in 2025 when NightDragon and Francisco Partners carved training assets out of ThriveDX, and it focuses on hands-on skills development for security teams and people entering the field. Organizations use it to close internal skills gaps.","category":"social-engineering-human-risk","tags":[],"founded":"2025","funding":"PE/VC-backed carve-out (NightDragon & Francisco Partners, 2025)","funding_stage":"","url":"https://www.ironcircle.com","docs_url":"","linkedin":"","bh_tier":"AI Zone","bh_booth":"5600","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"iru","name":"Iru","slug":"iru","logo":"","brief_summary":"Identity, device management, and compliance platform spun out of Rippling's IT product line.","description":"Iru combines identity and access management, endpoint management, inventory, and compliance automation in one system tied to employee records. It began as Rippling's IT product before becoming a separate brand. IT and security teams at growing companies use it to run onboarding, device policy, and access changes from a single place.","category":"identity-access","tags":[],"founded":"2018","funding":"$288M raised (Series D, 2024)","funding_stage":"series-d","url":"https://www.iru.com","docs_url":"","linkedin":"","bh_tier":"Gold","bh_booth":"2764","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"island","name":"Island","slug":"island","logo":"","brief_summary":"Chromium-based enterprise browser with built-in security, data controls, and application management.","description":"Island builds a Chromium-based browser for work that embeds data loss controls, application boundaries, and policy at the point where users touch applications. Organizations deploy it to secure contractors, BYOD, and SaaS-heavy workflows without resorting to VDI. Founded in 2020, it is one of the companies that established the enterprise browser category.","category":"endpoint-browser-mobile","tags":[],"founded":"2020","funding":"$810M raised (Secondary Market, 2025)","funding_stage":"venture","url":"https://www.island.io","docs_url":"","linkedin":"","bh_tier":"Platinum","bh_booth":"3952","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"jamf","name":"Jamf","slug":"jamf","logo":"","brief_summary":"Device management and endpoint security software for Apple fleets in organizations.","description":"Jamf manages and secures Mac, iPhone, iPad, and Apple TV at scale, covering deployment, configuration, identity integration, and endpoint protection built specifically for Apple operating systems. Enterprises and schools that standardize on Apple hardware are its core customers. The company was founded in 2002 and is publicly traded.","category":"endpoint-browser-mobile","tags":[],"founded":"2002","funding":"Public company","funding_stage":"public","url":"https://www.jamf.com","docs_url":"","linkedin":"","bh_tier":"Gold","bh_booth":"3161","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"jazz","name":"Jazz","slug":"jazz","logo":"","brief_summary":"Data security product pairing an endpoint sensor with AI investigation as an alternative to legacy DLP.","description":"Jazz approaches data loss prevention with two components: an endpoint agent that records file activity in forensic detail, and an AI system that investigates suspicious data movement instead of relying on static rules. It targets security teams frustrated by the false positives of pattern-matching DLP. Founded in 2024, the company raised a $61M Series A.","category":"data-security-dlp","tags":[],"founded":"2024","funding":"$61M raised (Series A, 2026)","funding_stage":"series-a","url":"https://jazz.security","docs_url":"","linkedin":"","bh_tier":"Silver Plus","bh_booth":"5118","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"jetstream-security","name":"JetStream Security","slug":"jetstream-security","logo":"","brief_summary":"Gives enterprises visibility, governance, and audit evidence over workforce and agent AI use.","description":"JetStream Security tracks how AI tools and agents are used inside an organization, applies governance policies to that activity, and produces evidence suitable for audits and reviews. It targets security and compliance teams that want to enable AI adoption while remaining accountable for it. The company launched in 2025.","category":"agent-security-governance","tags":[],"founded":"2025","funding":"$34M raised (Seed, 2026)","funding_stage":"seed","url":"https://www.jetstream.security","docs_url":"","linkedin":"","bh_tier":"Gold","bh_booth":"4705","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"kai","name":"Kai","slug":"kai","logo":"","brief_summary":"Agentic AI platform automating asset, exposure, and identity operations for security teams.","description":"Kai applies AI agents to routine security operations work spanning asset management, exposure management, and identity operations, aiming to consolidate what several point tools do today into autonomous workflows. Founded in 2025, it targets teams whose operational security backlog grows faster than their headcount.","category":"ai-soc-secops","tags":[],"founded":"2025","funding":"$125M raised (Series A, 2026)","funding_stage":"series-a","url":"https://www.kai.security","docs_url":"","linkedin":"","bh_tier":"Platinum","bh_booth":"3245","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"keeper-security","name":"Keeper Security","slug":"keeper-security","logo":"","brief_summary":"Zero-knowledge password, secrets, and privileged access management for people, machines, and AI agents.","description":"Keeper Security manages passwords, secrets, and privileged access under zero-knowledge encryption, meaning Keeper itself cannot read what customers store. The platform spans consumer vaults, business password management, and privileged access management, including credentials used by machine identities and AI agents. Founded in 2011.","category":"identity-access","tags":[],"founded":"2011","funding":"$60M raised (Private Equity, 2023)","funding_stage":"private-equity","url":"https://www.keepersecurity.com","docs_url":"","linkedin":"","bh_tier":"Platinum","bh_booth":"2157","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"keyfactor","name":"Keyfactor","slug":"keyfactor","logo":"","brief_summary":"PKI and certificate lifecycle management for machine identities across devices and workloads.","description":"Keyfactor issues, discovers, and automates the lifecycle of digital certificates and keys, combining hosted PKI with certificate lifecycle management software. It serves enterprises dealing with shortening certificate lifetimes and growing machine, workload, and agent identities, and supports post-quantum migration planning. IoT manufacturers also use it to embed identity into devices.","category":"pki-crypto-quantum","tags":[],"founded":"2001","funding":"$1.2B raised (Private Equity, 2026)","funding_stage":"private-equity","url":"https://www.keyfactor.com","docs_url":"","linkedin":"","bh_tier":"Gold","bh_booth":"5144","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"keystrike","name":"Keystrike","slug":"keystrike","logo":"","brief_summary":"Technology that cryptographically proves remote session input came from a human at an approved device.","description":"Keystrike attests every action in a remote session, confirming that keystrokes originate from a real person on sanctioned hardware rather than from malware or a hijacked connection. It defends privileged remote access against session takeover. The Icelandic company was founded in 2023.","category":"identity-access","tags":[],"founded":"2023","funding":"$11M raised (Pre Seed, 2025)","funding_stage":"seed","url":"https://www.keystrike.com","docs_url":"","linkedin":"","bh_tier":"Startup City","bh_booth":"5811","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"kindo","name":"Kindo","slug":"kindo","logo":"","brief_summary":"Enterprise platform for deploying and governing AI agents in DevOps and security operations.","description":"Kindo gives enterprises a control layer for running AI agents in DevOps and security operations, with central management of model access, data policies, and audit trails. It also develops WhiteRabbitNeo, a family of models trained for security work. Founded in 2022, it suits organizations that want agent adoption with governance from the start.","category":"agent-security-governance","tags":[],"founded":"2022","funding":"$28M raised (Series A, 2024)","funding_stage":"series-a","url":"https://www.kindo.ai","docs_url":"","linkedin":"","bh_tier":"Platinum","bh_booth":"3757","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"knocknoc-io","name":"knocknoc.io","slug":"knocknoc-io","logo":"","brief_summary":"Access control that exposes network services only while a user is authenticated.","description":"Knocknoc ties network reachability to identity: services stay dark until a user authenticates, then open only to that user for the duration of their session. It gives teams just-in-time exposure control in front of VPNs, admin panels, and internal services. The Australian company was founded in 2022.","category":"network-zero-trust","tags":[],"founded":"2022","funding":"Seed raised (2025, Decibel Partners; amount undisclosed)","funding_stage":"","url":"https://knocknoc.io","docs_url":"","linkedin":"","bh_tier":"Startup City","bh_booth":"5712","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"knowbe4","name":"KnowBe4","slug":"knowbe4","logo":"","brief_summary":"Security awareness training and phishing simulation platform for measuring and reducing human risk.","description":"KnowBe4 trains employees to recognize phishing and social engineering, reinforced by simulated attack campaigns and per-user risk scoring. Tens of thousands of organizations run their awareness programs on it. Founded in 2010, it remains the reference point most competitors in human risk management measure themselves against.","category":"social-engineering-human-risk","tags":[],"founded":"2010","funding":"$2.2B raised (Debt Financing, 2025)","funding_stage":"venture","url":"https://www.knowbe4.com","docs_url":"","linkedin":"","bh_tier":"Diamond","bh_booth":"2439","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"lakera","name":"Lakera","slug":"lakera","logo":"","brief_summary":"Zurich real-time GenAI security platform for guarding LLM applications against prompt injection and unsafe outputs.","description":"Lakera is a Swiss AI security company based in Zurich. It sells real-time protection for generative AI applications, including prompt-injection defense and output controls, with a large in-house red team. Enterprises use it when they need a guardrail layer that does not add much latency. This listing describes the public product. It is not a certification claim.","category":"ai-model-security-red-team","tags":[],"founded":"2021","funding":"Series A","funding_stage":"series-a","url":"https://www.lakera.ai","docs_url":"","linkedin":"https://www.linkedin.com/company/lakera-ai","bh_tier":"","bh_booth":"","publish_after":null,"date_added":"2026-08-13","source":"eu-il-intake-2026-08-13"},{"id":"lasso-security","name":"Lasso Security","slug":"lasso-security","logo":"","brief_summary":"Israeli AI security platform for visibility and control across enterprise models, agents, and GenAI apps.","description":"Lasso Security is an Israeli company. Its platform is built for enterprises moving from employee GenAI use to agentic systems: discover, assess, and protect models, agents, and apps. It is a software product, not an auditor. This listing describes the public product.","category":"agent-security-governance","tags":[],"founded":"2023","funding":"","funding_stage":"venture","url":"https://www.lasso.security","docs_url":"","linkedin":"https://www.linkedin.com/company/lasso-security","bh_tier":"","bh_booth":"","publish_after":null,"date_added":"2026-08-13","source":"eu-il-intake-2026-08-13"},{"id":"lastpass","name":"LastPass","slug":"lastpass","logo":"","brief_summary":"Password manager for businesses and individuals, extended with access controls for SaaS and AI applications.","description":"LastPass stores and fills credentials, generates strong passwords, and gives IT teams centralized control over how employees sign in to applications. Its business offering has grown toward broader access management, including visibility into SaaS and AI tool usage. Founded in 2008, the company became independent from GoTo in 2024 under private equity ownership.","category":"identity-access","tags":[],"founded":"2008","funding":"PE-owned (Francisco Partners & Elliott; spun out of GoTo 2024)","funding_stage":"","url":"https://www.lastpass.com","docs_url":"","linkedin":"","bh_tier":"Silver Plus","bh_booth":"5112","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"legion-security","name":"Legion Security","slug":"legion-security","logo":"","brief_summary":"Security automation that drives tools through the browser instead of depending on APIs.","description":"Legion Security builds automation that operates security tools through their web interfaces, so workflows are not limited to products that expose usable APIs. Teams can automate across legacy consoles and SaaS applications alike, covering steps that traditional SOAR integrations cannot reach. The company was founded in 2024.","category":"ai-soc-secops","tags":[],"founded":"2024","funding":"$38M raised (Series A, 2025)","funding_stage":"series-a","url":"https://www.legionsecurity.ai","docs_url":"","linkedin":"","bh_tier":"Gold","bh_booth":"5150","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"limacharlie","name":"LimaCharlie","slug":"limacharlie","logo":"","brief_summary":"Programmable security operations platform giving service providers infrastructure-style building blocks.","description":"LimaCharlie delivers security operations capabilities the way cloud providers deliver compute: as composable, pay-per-use primitives covering endpoint telemetry, detection rules, response automation, and integrations. MSSPs and product teams build their own offerings on top instead of reselling monolithic tools. Founded in 2018, it increasingly supports agentic automation in SecOps.","category":"ai-soc-secops","tags":[],"founded":"2018","funding":"$19M raised (Debt Financing, 2026)","funding_stage":"venture","url":"https://limacharlie.io","docs_url":"","linkedin":"","bh_tier":"Silver","bh_booth":"5917","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"lockheed-martin","name":"Lockheed Martin","slug":"lockheed-martin","logo":"","brief_summary":"Aerospace and defense contractor with cybersecurity programs spanning national security and defense systems.","description":"Lockheed Martin is one of the world's largest defense contractors, building aircraft, missiles, space systems, and command and control platforms. Its cyber work spans securing its own weapons programs, supporting government cyber operations, and research that shaped industry practice, including the original Cyber Kill Chain model used in intrusion analysis.","category":"platforms-integrators","tags":[],"founded":"","funding":"","funding_stage":"","url":"https://www.lockheedmartin.com","docs_url":"","linkedin":"","bh_tier":"Silver Plus","bh_booth":"2567","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"lucid-software","name":"Lucid Software","slug":"lucid-software","logo":"","brief_summary":"Visual collaboration company behind Lucidchart and Lucidspark diagramming and whiteboarding tools.","description":"Lucid Software makes Lucidchart for diagramming and Lucidspark for collaborative whiteboarding, used by teams to map systems, processes, and architectures. In security contexts its tools are common for documenting networks, threat models, and incident timelines. The suite has added AI features for generating and refining visuals.","category":"platforms-integrators","tags":[],"founded":"","funding":"","funding_stage":"","url":"https://lucid.co","docs_url":"","linkedin":"","bh_tier":"Silver","bh_booth":"5842","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"magnet-forensics","name":"Magnet Forensics","slug":"magnet-forensics","logo":"","brief_summary":"Digital forensics software for recovering and analyzing evidence in investigations and incident response.","description":"Magnet Forensics builds tools that acquire and examine digital evidence from computers, phones, and cloud services. Products such as Magnet Axiom are used by law enforcement and corporate teams for criminal investigations and incident response. The company automates evidence processing so examiners can keep up with growing caseloads.","category":"threat-intel-dfir","tags":[],"founded":"2009","funding":"$74M raised (Post-IPO Secondary, 2021)","funding_stage":"public","url":"https://www.magnetforensics.com","docs_url":"","linkedin":"","bh_tier":"AI Zone","bh_booth":"8507","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"magnitude","name":"Magnitude","slug":"magnitude","logo":"","brief_summary":"AI analysts that automate third-party risk assessments across extended vendor chains.","description":"Magnitude applies autonomous AI to third-party risk management. Its analyst agents evaluate vendors continuously, following dependencies past direct suppliers into fourth parties and beyond. TPRM teams use it to replace point-in-time questionnaires with ongoing assessments grounded in evidence rather than self-attestation.","category":"grc-tprm","tags":[],"founded":"2024","funding":"$10M raised (Seed, 2026)","funding_stage":"seed","url":"https://magnitude.ai","docs_url":"","linkedin":"","bh_tier":"AI Zone","bh_booth":"7906","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"mallory","name":"Mallory","slug":"mallory","logo":"","brief_summary":"AI agents that merge global threat intelligence and correlate it against your specific attack surface.","description":"Mallory consolidates threat intelligence from many sources and uses agents to connect it to the customer's actual assets and exposures, so teams see which global threats apply to them. Founded in 2024, it is backed by Decibel Partners and targets teams drowning in unprioritized intel feeds.","category":"threat-intel-dfir","tags":[],"founded":"2024","funding":"Seed (undisclosed, 2026, led by Decibel Partners)","funding_stage":"","url":"https://mallory.ai","docs_url":"","linkedin":"","bh_tier":"Startup City","bh_booth":"5803","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"manageengine","name":"ManageEngine","slug":"manageengine","logo":"","brief_summary":"Zoho division selling IT management software across identity, endpoint management, and security operations.","description":"ManageEngine, part of Zoho, offers a broad catalog of IT management software including Active Directory administration, endpoint management, SIEM, and privileged access tools. It is priced and packaged for mid-market IT teams that want capable tooling without enterprise platform costs, and everything is developed in-house rather than acquired.","category":"platforms-integrators","tags":[],"founded":"","funding":"","funding_stage":"","url":"https://www.zoho.com","docs_url":"","linkedin":"","bh_tier":"Platinum Plus","bh_booth":"2944","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"manifold-security","name":"Manifold Security","slug":"manifold-security","logo":"","brief_summary":"Finds AI agents running on endpoints and secures their MCP and plugin supply chain.","description":"Manifold Security gives enterprises visibility into the AI agents employees run on their machines. It inventories agents along with the MCP servers, plugins, and extensions they load, then evaluates and controls that supply chain. Founded in 2025, it serves security teams facing unsanctioned agent adoption across the workforce.","category":"agent-security-governance","tags":[],"founded":"2025","funding":"$8M raised (Seed, 2026)","funding_stage":"seed","url":"https://www.manifold.security","docs_url":"","linkedin":"","bh_tier":"AI Zone","bh_booth":"5400","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"mars-security","name":"Mars Security","slug":"mars-security","logo":"","brief_summary":"Converts threat intelligence into deployed production detections through automated threat hunting.","description":"Mars Security automates the path from intelligence to detection. Its platform ingests threat intel, hunts for corresponding activity, and turns confirmed techniques into production detection rules delivered via API. Founded in 2025 and backed by TLV Partners, it serves detection engineering teams with more intel than they can operationalize.","category":"ai-soc-secops","tags":[],"founded":"2025","funding":"$8.5M raised (Seed, TLV Partners, 2026)","funding_stage":"seed","url":"https://marssec.ai","docs_url":"","linkedin":"","bh_tier":"Launch Pad","bh_booth":"6002","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"mate-security","name":"Mate Security","slug":"mate-security","logo":"","brief_summary":"AI SOC platform running detection and response on a graph of security context.","description":"Mate Security assembles signals from across a customer's stack into a context graph, then runs AI-driven detection, investigation, and response on top of it. The goal is continuous coverage at a volume that human-only teams cannot sustain. The company was founded in 2025 and raised a Series A in 2026.","category":"ai-soc-secops","tags":[],"founded":"2025","funding":"$50M raised (Series A, 2026)","funding_stage":"series-a","url":"https://mate.security","docs_url":"","linkedin":"","bh_tier":"Gold","bh_booth":"4717","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"material-security","name":"Material Security","slug":"material-security","logo":"","brief_summary":"Security platform for Google Workspace and Microsoft 365 covering email, files, and accounts.","description":"Material Security protects cloud office suites as a whole rather than just the inbox: it defends against phishing, locks down sensitive content sitting in old email and shared drives, and detects account takeover across Google Workspace and Microsoft 365. Founded in 2017, it is used by enterprises consolidating email and SaaS security.","category":"social-engineering-human-risk","tags":[],"founded":"2017","funding":"$166M raised (Series C $100M, 2022; $1.1B val)","funding_stage":"series-c","url":"https://material.security","docs_url":"","linkedin":"","bh_tier":"Silver","bh_booth":"6021","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"memcyco-inc","name":"Memcyco Inc","slug":"memcyco-inc","logo":"","brief_summary":"Real-time protection against website impersonation and account takeover during the attack itself.","description":"Memcyco detects phishing sites that clone a company's web presence and acts while victims are being targeted, identifying affected users and disrupting the fraud before stolen credentials are used. Banks and consumer brands use it against ATO and brandjacking. Founded in 2021, it raised a $47M Series A in 2026.","category":"social-engineering-human-risk","tags":[],"founded":"2021","funding":"$47M raised (Series A, 2026)","funding_stage":"series-a","url":"https://www.memcyco.com","docs_url":"","linkedin":"","bh_tier":"Startup City","bh_booth":"5906","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"mend-io","name":"Mend.io","slug":"mend-io","logo":"","brief_summary":"Application security platform combining open source scanning, static analysis, and controls for AI-generated code.","description":"Mend.io, formerly WhiteSource, helps development teams find and fix vulnerabilities in their own code and in open source dependencies, with automated remediation built into developer workflows. The platform spans SCA, SAST, and container scanning, and has extended into securing AI coding assistants and agents. Founded in 2011, it serves enterprise engineering organizations.","category":"appsec-code-security","tags":[],"founded":"2011","funding":"$121M raised (Series D, 2021)","funding_stage":"series-d","url":"https://www.mend.io","docs_url":"","linkedin":"","bh_tier":"Silver Plus","bh_booth":"5347","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"menlo-security","name":"Menlo Security","slug":"menlo-security","logo":"","brief_summary":"Browser security company isolating web sessions to keep threats off endpoints for users and AI agents.","description":"Menlo Security executes web content in a cloud isolation layer so malware and phishing pages never run on the user's device. The platform manages and protects browsing for employees and, increasingly, for AI agents that operate inside browsers. Founded in 2012, it is used by enterprises and government agencies with strict security requirements.","category":"endpoint-browser-mobile","tags":[],"founded":"2012","funding":"$251M raised (Series E, 2020)","funding_stage":"series-e","url":"https://www.menlosecurity.com","docs_url":"","linkedin":"","bh_tier":"Silver Plus","bh_booth":"4702","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"mesh-security","name":"Mesh Security","slug":"mesh-security","logo":"","brief_summary":"Zero trust posture management platform mapping and enforcing trust across cloud environments.","description":"Mesh Security gives organizations a live map of identities, assets, and trust relationships across their cloud estate, then measures the environment against zero trust principles and highlights where implicit trust remains. It targets security architects turning zero trust from slideware into verifiable state. Founded in 2022, the Israeli company raised a Series A in 2026.","category":"cloud-runtime-security","tags":[],"founded":"2022","funding":"$18M raised (Series A, 2026)","funding_stage":"series-a","url":"https://mesh.security","docs_url":"","linkedin":"","bh_tier":"Silver","bh_booth":"2670","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"microsoft","name":"Microsoft","slug":"microsoft","logo":"","brief_summary":"Platform vendor whose security line spans endpoint, cloud, SIEM, identity, and data governance.","description":"Microsoft's security business spans Defender for endpoints and cloud, Sentinel for SIEM, Entra for identity, and Purview for data governance, with Security Copilot layering AI assistance across them. Detections draw on telemetry from the global Windows and Azure install base. The default consideration for Microsoft-centric enterprises.","category":"platforms-integrators","tags":[],"founded":"","funding":"","funding_stage":"","url":"https://www.microsoft.com","docs_url":"","linkedin":"","bh_tier":"Platinum Plus","bh_booth":"2144","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"mimecast","name":"Mimecast","slug":"mimecast","logo":"","brief_summary":"Email and collaboration security platform with human risk scoring and management.","description":"Mimecast protects email and collaboration tools against phishing, impersonation, and data leakage, and scores human risk so security teams can aim training and controls at the users most likely to be targeted or to slip. Founded in 2003, it protects tens of thousands of organizations worldwide.","category":"social-engineering-human-risk","tags":[],"founded":"2003","funding":"$90M raised (2017)","funding_stage":"venture","url":"https://www.mimecast.com","docs_url":"","linkedin":"","bh_tier":"Platinum","bh_booth":"3248","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"mimic","name":"Mimic","slug":"mimic","logo":"","brief_summary":"Ransomware defense operating at the kernel level to stop encryption before it executes.","description":"Mimic focuses exclusively on ransomware, using kernel-level controls to block unauthorized encryption and destructive changes at the moment of execution, with rapid recovery if anything gets through. The bet is that a dedicated anti-ransomware layer catches what general-purpose EDR misses. Founded in 2023, it raised a $77M Series A.","category":"resilience-ransomware","tags":[],"founded":"2023","funding":"$77M raised (Series A, 2025)","funding_stage":"series-a","url":"https://mimic.com","docs_url":"","linkedin":"","bh_tier":"Silver","bh_booth":"5841","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"mind","name":"MIND","slug":"mind","logo":"","brief_summary":"Data loss prevention platform using AI to classify sensitive data and cut false alerts.","description":"MIND applies AI to data loss prevention, classifying sensitive content accurately enough to cut the alert noise that makes traditional DLP painful to operate. It covers data moving through email, SaaS, and endpoints as well as data at rest. Built for security teams that want DLP coverage without a dedicated operations crew.","category":"data-security-dlp","tags":[],"founded":"2023","funding":"$41M raised (Series A, 2025)","funding_stage":"series-a","url":"https://mind.io","docs_url":"","linkedin":"","bh_tier":"Diamond","bh_booth":"4527","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"mindgard","name":"Mindgard","slug":"mindgard","logo":"","brief_summary":"Automated red teaming and security testing for AI models and applications.","description":"Mindgard tests AI systems the way attackers would. Spun out of research at Lancaster University, its platform runs automated adversarial attacks against models and AI applications to surface risks that conventional appsec tools miss. Security teams use it for continuous AI testing rather than one-off assessments.","category":"ai-model-security-red-team","tags":[],"founded":"2022","funding":"$12M raised (Venture Round, 2024)","funding_stage":"venture","url":"https://mindgard.ai","docs_url":"","linkedin":"","bh_tier":"AI Zone","bh_booth":"5000","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"minimus","name":"Minimus","slug":"minimus","logo":"","brief_summary":"Minimal hardened container and VM images that cut vulnerability counts in cloud workloads.","description":"Minimus builds container and virtual machine images from source containing only what applications need, stripping out the packages where most CVEs accumulate. Teams swap their base images and watch vulnerability backlogs shrink instead of patching endlessly. It was founded by the team behind Twistlock and launched with a large seed round in 2025.","category":"supply-chain-secrets","tags":[],"founded":"2022","funding":"$51M raised (Seed, 2025)","funding_stage":"seed","url":"https://www.minimus.io","docs_url":"","linkedin":"","bh_tier":"Platinum","bh_booth":"3748","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"mint-security","name":"Mint Security","slug":"mint-security","logo":"","brief_summary":"Israeli startup operating in stealth, working on security for AI systems and agents.","description":"Mint Security is an early-stage Israeli company that has not yet publicly disclosed its product. Its stated focus area is the security of AI systems and autonomous agents, one of the fastest-moving segments in cybersecurity. Details on the platform, customers, and funding remain undisclosed while the company is in stealth.","category":"agent-security-governance","tags":[],"founded":"","funding":"Funding undisclosed","funding_stage":"","url":"https://mint.security","docs_url":"","linkedin":"","bh_tier":"Silver Plus","bh_booth":"4708","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"mirror-security","name":"Mirror Security","slug":"mirror-security","logo":"","brief_summary":"Early-stage Dublin company building a platform for securing AI systems.","description":"Mirror Security is an early-stage company working on the security of AI systems. Founded in 2024 and based in Dublin, it raised pre-seed funding in 2025. Public detail on the product remains limited; the company positions itself in AI model security and testing.","category":"ai-model-security-red-team","tags":[],"founded":"2024","funding":"$2.5M raised (Pre-Seed, 2025)","funding_stage":"pre-seed","url":"https://mirrorsecurity.io","docs_url":"","linkedin":"","bh_tier":"AI Zone","bh_booth":"5005","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"mokn","name":"MokN","slug":"mokn","logo":"","brief_summary":"Decoy login pages that capture credentials phishers steal and render them useless.","description":"MokN deploys fake login portals that attract attackers using phished or stolen credentials, capturing the attempts and invalidating the credentials before they work anywhere real. This turns credential theft into a detection signal. The French company raised a Series A led by GV in 2026.","category":"social-engineering-human-risk","tags":[],"founded":"","funding":"$18M raised (Series A $15M, 2026, GV)","funding_stage":"series-a","url":"https://www.mokn.io","docs_url":"","linkedin":"","bh_tier":"Startup City","bh_booth":"6316","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"mondoo","name":"Mondoo","slug":"mondoo","logo":"","brief_summary":"Managed vulnerability service using agentic automation to drive fixes, not just findings.","description":"Mondoo combines vulnerability management software with a service layer that pushes issues through to remediation. Built on its open-source cnquery and cnspec tooling, the platform assesses cloud, infrastructure, and endpoints, and its agentic workflows prepare and track the actual fixes. It suits teams tired of scanner reports nobody acts on.","category":"exposure-management-ctem","tags":[],"founded":"2020","funding":"$32M+ raised (Series A ext $17.5M, HV Capital, 2025)","funding_stage":"series-a","url":"https://mondoo.com","docs_url":"","linkedin":"","bh_tier":"AI Zone","bh_booth":"5100","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"n-able","name":"N-able","slug":"n-able","logo":"","brief_summary":"IT management and security software built for managed service providers and IT teams.","description":"N-able sells remote monitoring and management, backup, endpoint protection, and MDR products designed for managed service providers that run IT and security for many client organizations at once. Internal IT departments use the same stack. The company is publicly traded and was spun out of SolarWinds in 2021.","category":"platforms-integrators","tags":[],"founded":"","funding":"","funding_stage":"","url":"https://www.n-able.com","docs_url":"","linkedin":"","bh_tier":"Gold","bh_booth":"3364","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"native","name":"Native","slug":"native","logo":"","brief_summary":"Cloud security platform that turns providers' own controls into automated defense across major clouds.","description":"Native takes the security capabilities already present in AWS, Azure, GCP, and OCI and operationalizes them, so organizations defend their environments with first-party cloud controls rather than bolt-on agents. The approach aims to reduce tool sprawl and act on threats where the cloud provider can enforce. Founded in 2024, the company raised a $42M Series A.","category":"cloud-runtime-security","tags":[],"founded":"2024","funding":"$42M raised (Series A, 2026)","funding_stage":"series-a","url":"https://native.security","docs_url":"","linkedin":"","bh_tier":"Silver Plus","bh_booth":"5338","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"nebulock","name":"Nebulock","slug":"nebulock","logo":"","brief_summary":"Threat hunting platform that organizes hunts and detection work around a graph of environment context.","description":"Nebulock builds security operations around proactive hunting rather than alert triage. The platform maintains a graph of an organization's entities and activity, and uses it to run repeatable hunts and manage detections in one place. It targets SOC and detection engineering teams that want to find attackers before alerts fire. Founded in 2023.","category":"ai-soc-secops","tags":[],"founded":"2023","funding":"$31M raised (Series A, 2026)","funding_stage":"series-a","url":"https://nebulock.io","docs_url":"","linkedin":"","bh_tier":"Silver Plus","bh_booth":"5312","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"netrise","name":"NetRise","slug":"netrise","logo":"","brief_summary":"Supply chain security platform analyzing firmware and binaries to reveal inherited software risk.","description":"NetRise takes apart the compiled software and firmware inside devices and applications, producing detailed inventories of components, vulnerabilities, and risky artifacts that no source-level SBOM captures. It serves organizations that must trust hardware and software they did not build, including critical infrastructure operators. Founded in 2020, it raised $25M.","category":"supply-chain-secrets","tags":[],"founded":"2020","funding":"$25M raised (2025)","funding_stage":"venture","url":"https://www.netrise.io","docs_url":"","linkedin":"","bh_tier":"Silver","bh_booth":"5547","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"netscout","name":"NETSCOUT","slug":"netscout","logo":"","brief_summary":"Network observability and DDoS protection vendor analyzing packet data at wire speed.","description":"NETSCOUT instruments networks with deep packet inspection to deliver performance observability and security analysis, and its Arbor product line defends against DDoS attacks. The same visibility data serves both network operations and security teams. Founded in 1984 and publicly traded, it sells mainly to carriers and large enterprises.","category":"network-zero-trust","tags":[],"founded":"1984","funding":"Public company","funding_stage":"public","url":"https://www.netscout.com","docs_url":"","linkedin":"","bh_tier":"Platinum","bh_booth":"4923","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"netskope","name":"Netskope","slug":"netskope","logo":"","brief_summary":"SASE platform combining secure web gateway, CASB, ZTNA, and data protection.","description":"Netskope inspects web, SaaS, and private application traffic through its global cloud, applying threat protection and data controls based on user, application, and content context. Enterprises use it to secure remote work and SaaS adoption under one policy engine. Founded in 2012, the company went public in 2025.","category":"network-zero-trust","tags":[],"founded":"2012","funding":"Public company","funding_stage":"public","url":"https://www.netskope.com","docs_url":"","linkedin":"","bh_tier":"Gold","bh_booth":"4753","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"neuraltrust","name":"NeuralTrust","slug":"neuraltrust","logo":"","brief_summary":"Discovers AI agents, blocks attacks against them, and prevents data leakage.","description":"NeuralTrust secures generative AI applications and agents in production. The platform maps which agents and LLM endpoints an organization exposes, screens traffic for prompt injection and abuse, and stops sensitive data from leaking through responses. Built around a gateway architecture, it targets enterprises deploying customer-facing AI.","category":"agent-security-governance","tags":[],"founded":"2024","funding":"$23M raised (Seed, 2026)","funding_stage":"seed","url":"https://neuraltrust.ai","docs_url":"","linkedin":"","bh_tier":"AI Zone","bh_booth":"8106","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"newcore","name":"NewCore","slug":"newcore","logo":"","brief_summary":"Identity and access platform built to cover AI agents and workforce users together.","description":"NewCore builds an identity platform designed from the ground up around security, treating AI agents and human users under one access model rather than bolting agent identity onto legacy IAM. The founding team comes from Israel's Unit 8200 and the company is backed by Cyberstarts. It was founded in 2025.","category":"identity-access","tags":[],"founded":"2025","funding":"$66M raised (Series A, 2026)","funding_stage":"series-a","url":"https://newcore.com","docs_url":"","linkedin":"","bh_tier":"Gold","bh_booth":"7508","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"nightfall-ai","name":"Nightfall AI","slug":"nightfall-ai","logo":"","brief_summary":"San Francisco AI-native DLP platform for stopping sensitive data leaks across SaaS, endpoints, and AI apps.","description":"Nightfall AI is a US company based in San Francisco. It sells AI-native data loss prevention for SaaS, endpoints, email, browsers, and generative AI apps. Security teams use it when they need to see and block sensitive data leaving approved systems. This listing describes the public product.","category":"data-security-dlp","tags":[],"founded":"2018","funding":"","funding_stage":"venture","url":"https://www.nightfall.ai","docs_url":"","linkedin":"https://www.linkedin.com/company/nightfall-ai","bh_tier":"","bh_booth":"","publish_after":null,"date_added":"2026-08-13","source":"us-intake-2026-08-13"},{"id":"ninjaone","name":"NinjaOne","slug":"ninjaone","logo":"","brief_summary":"Endpoint management platform unifying monitoring, patching, and backup for IT teams.","description":"NinjaOne gives IT teams one console to monitor endpoints, deploy patches, manage software, and run backups across distributed fleets. Its patch automation makes it security-relevant: unpatched endpoints remain a dominant breach vector. The platform serves tens of thousands of organizations, from MSPs to internal IT departments.","category":"platforms-integrators","tags":[],"founded":"","funding":"","funding_stage":"","url":"https://www.ninjaone.com","docs_url":"","linkedin":"","bh_tier":"Silver","bh_booth":"5738","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"nokod-security","name":"Nokod Security","slug":"nokod-security","logo":"","brief_summary":"Security for low-code applications and citizen-built AI agents on platforms like Power Apps and Copilot Studio.","description":"Kanopy, formerly Nokod Security, finds and remediates risk in applications and agents that business users build on low-code and no-code platforms, a layer invisible to traditional AppSec tooling. Security teams use it to govern Power Platform, Copilot Studio, and similar environments. The company was founded in 2023.","category":"agent-security-governance","tags":[],"founded":"2023","funding":"$8M raised (Seed, 2023)","funding_stage":"seed","url":"https://kanopysecurity.com","docs_url":"","linkedin":"","bh_tier":"Startup City","bh_booth":"","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"noma-security","name":"Noma Security","slug":"noma-security","logo":"","brief_summary":"Secures AI agents and applications across development, deployment, and runtime.","description":"Noma Security covers the AI application lifecycle, from scanning models, notebooks, and pipelines during development to monitoring agents in production, including those built on low-code platforms and MCP servers. Security teams get an inventory of AI assets and controls for each. The Israeli company was founded in 2023.","category":"agent-security-governance","tags":[],"founded":"2023","funding":"$132M raised (Series B, 2025)","funding_stage":"series-b","url":"https://noma.security","docs_url":"","linkedin":"","bh_tier":"Gold","bh_booth":"3164","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"novee","name":"Novee","slug":"novee","logo":"","brief_summary":"Early-stage AI security company still in stealth, product not yet disclosed.","description":"Novee is a startup working on AI security that remains in stealth, and its product has not been publicly described. The company was founded in 2025 and has raised funding ahead of launch. Details about the team, technology, and target market have not yet been announced.","category":"agent-security-governance","tags":[],"founded":"2025","funding":"$52M raised (Debt Financing, 2025)","funding_stage":"venture","url":"https://novee.security","docs_url":"","linkedin":"","bh_tier":"Gold","bh_booth":"5323","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"nowsecure","name":"NowSecure","slug":"nowsecure","logo":"","brief_summary":"Mobile application security testing platform analyzing what shipped iOS and Android apps actually do.","description":"NowSecure tests mobile apps as they ship, running automated and expert analysis on real binaries to reveal vulnerabilities, privacy leaks, and undisclosed data flows to third parties. Customers use it for their own apps and to vet third-party apps employees rely on. Founded in 2009, it also contributes to mobile app security standards.","category":"endpoint-browser-mobile","tags":[],"founded":"2009","funding":"$28M raised (Debt Financing, 2022)","funding_stage":"venture","url":"https://www.nowsecure.com","docs_url":"","linkedin":"","bh_tier":"Silver","bh_booth":"5545","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"nucleus-security","name":"Nucleus Security","slug":"nucleus-security","logo":"","brief_summary":"Vulnerability and exposure management platform aggregating findings from hundreds of scanners into one prioritized workflow.","description":"Nucleus Security ingests vulnerability data from more than 200 scanning and assessment tools, deduplicates it, and applies business context so teams work a single prioritized queue instead of siloed reports. It also automates ticketing and ownership routing. Founded in 2019, it serves enterprises and government agencies running large vulnerability management programs.","category":"exposure-management-ctem","tags":[],"founded":"2019","funding":"$56M raised (Series C, 2026)","funding_stage":"series-c","url":"https://www.nucleussec.com","docs_url":"","linkedin":"","bh_tier":"Silver Plus","bh_booth":"5533","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"nullify","name":"Nullify","slug":"nullify","logo":"","brief_summary":"AI application security engineer that finds, triages, and fixes code vulnerabilities autonomously.","description":"Nullify runs AI agents across the software development lifecycle to find security issues, deduplicate and triage findings, and open fixes as pull requests. It aims to perform the application security work most engineering organizations never staff for. Founded in 2022, it targets teams whose developer count far outnumbers their security engineers.","category":"appsec-code-security","tags":[],"founded":"2022","funding":"$17M raised (Seed, 2026)","funding_stage":"seed","url":"https://nullify.ai","docs_url":"","linkedin":"","bh_tier":"Platinum","bh_booth":"1557","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"oak","name":"Oak","slug":"oak","logo":"","brief_summary":"Identity platform mapping human, machine, and AI agent identities into one governed access graph.","description":"Oak maintains a continuously updated graph of identities and their access, covering employees, service accounts, and AI agents alike. AI agents built into the platform carry out governance work such as access reviews and policy enforcement. Founded in 2026, it targets identity teams confronting the spread of non-human and agent identities.","category":"identity-access","tags":[],"founded":"2026","funding":"$60M raised (Seed, 2026)","funding_stage":"seed","url":"https://www.oak.id","docs_url":"","linkedin":"","bh_tier":"Diamond","bh_booth":"4203","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"octopwn","name":"Octopwn","slug":"octopwn","logo":"","brief_summary":"Browser-based toolkit for internal network penetration testing, focused on Windows environments.","description":"OctoPwn packs internal network attack tooling into a suite that runs in the browser, letting pentesters assess Active Directory and Windows networks without deploying agents or VMs. It positions itself as an interactive workbench for internal engagements. The company was founded in 2024 and is founder-owned.","category":"pentesting-offensive-security","tags":[],"founded":"2024","funding":"Bootstrapped (founder-owned GmbH)","funding_stage":"bootstrapped","url":"https://www.octopwn.com","docs_url":"","linkedin":"","bh_tier":"Startup City","bh_booth":"6312","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"offroad","name":"Offroad","slug":"offroad","logo":"","brief_summary":"AI agents that perform identity security operations, from investigation to remediation.","description":"Offroad automates the operational work of identity security, using agents to investigate access issues, chase down risky entitlements, and drive fixes through to completion. It targets IAM teams whose backlog of identity hygiene work keeps growing. The company was founded in 2026 with a $7M seed.","category":"identity-access","tags":[],"founded":"2026","funding":"$7M raised (Seed, 2026)","funding_stage":"seed","url":"https://www.offroad.ai","docs_url":"","linkedin":"","bh_tier":"Startup City","bh_booth":"6114","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"okta","name":"Okta","slug":"okta","logo":"","brief_summary":"Identity and access management platform for workforce, customers, and machine identities.","description":"Okta provides cloud-based identity: single sign-on, multi-factor authentication, lifecycle management, and customer identity through Auth0. It has extended the platform to govern non-human identities and AI agents alongside people. Thousands of organizations use Okta as the control point for who and what can access their applications.","category":"identity-access","tags":[],"founded":"2009","funding":"Public company","funding_stage":"public","url":"https://www.okta.com","docs_url":"","linkedin":"","bh_tier":"AI Zone","bh_booth":"5202 / 5203","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"oligo-security","name":"Oligo Security","slug":"oligo-security","logo":"","brief_summary":"Runtime application security detecting and stopping attacks on live cloud workloads.","description":"Oligo Security watches application behavior at runtime, using library-level monitoring to spot active exploitation in cloud workloads and AI services. Because it sees which components are actually loaded and reachable, it separates real risk from theoretical CVE findings. The Israeli company was founded in 2022.","category":"cloud-runtime-security","tags":[],"founded":"2022","funding":"$78M raised (Series B, 2025)","funding_stage":"series-b","url":"https://www.oligo.security","docs_url":"","linkedin":"","bh_tier":"Gold","bh_booth":"2163","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"one-identity","name":"One Identity","slug":"one-identity","logo":"","brief_summary":"Identity governance and administration vendor unifying accounts, entitlements, and privileged access.","description":"One Identity covers the governance side of identity: who has which accounts and entitlements, whether that access is appropriate, and how privileged credentials are controlled. Its portfolio spans IGA, privileged access management, and Active Directory management. Operating under Quest Software's private equity ownership, it serves large enterprises with complex identity estates.","category":"identity-access","tags":[],"founded":"2016","funding":"PE-owned (Clearlake Capital, via Quest Software)","funding_stage":"","url":"https://www.oneidentity.com","docs_url":"","linkedin":"","bh_tier":"Silver","bh_booth":"5648","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"onyx-security","name":"Onyx Security","slug":"onyx-security","logo":"","brief_summary":"Control plane for securing, governing, and auditing enterprise AI agent activity.","description":"Onyx Security gives enterprises one place to control AI agents: what they may access, how they are permitted to behave, and a record of what they did. It addresses the gap between fast agent adoption and security tooling built for human users. Founded in 2024.","category":"agent-security-governance","tags":[],"founded":"2024","funding":"$153M raised (Series B, 2026)","funding_stage":"series-b","url":"https://onyx.security","docs_url":"","linkedin":"","bh_tier":"Platinum","bh_booth":"4939","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"openai","name":"OpenAI","slug":"openai","logo":"","brief_summary":"AI research company behind GPT models and ChatGPT, with security research on frontier AI systems.","description":"OpenAI develops frontier AI models including the GPT series and ChatGPT, used by consumers, developers, and enterprises. Its security work covers two directions: protecting frontier models from misuse and attack, and applying model capabilities to security problems such as code analysis and threat detection. The company was founded in 2015.","category":"ai-model-security-red-team","tags":[],"founded":"2015","funding":"$211.1B raised (Series Unknown, 2026)","funding_stage":"venture","url":"https://openai.com","docs_url":"","linkedin":"","bh_tier":"Silver Plus","bh_booth":"2967","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"openlayer","name":"Openlayer","slug":"openlayer","logo":"","brief_summary":"Governance and evaluation platform verifying that AI systems follow policy in production.","description":"Openlayer helps teams test and govern AI systems. It evaluates models and LLM applications against defined quality and safety criteria, then monitors production behavior to demonstrate those policies are actually being enforced. It serves organizations that need evidence of AI compliance rather than documented intentions.","category":"grc-tprm","tags":[],"founded":"2021","funding":"$20M raised (Series A, 2025)","funding_stage":"series-a","url":"https://www.openlayer.com","docs_url":"","linkedin":"","bh_tier":"AI Zone","bh_booth":"8608","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"openvpn","name":"OpenVPN","slug":"openvpn","logo":"","brief_summary":"Business VPN and zero trust network access built on the open source OpenVPN protocol.","description":"OpenVPN commercializes the protocol its founders released as open source in 2002, offering CloudConnexa, a hosted service, and Access Server, a self-hosted option, for secure connectivity between employees, sites, and applications. The products add ZTNA-style access controls on top of the widely audited protocol. The company has grown without outside funding.","category":"network-zero-trust","tags":[],"founded":"2002","funding":"Bootstrapped (no outside funding)","funding_stage":"bootstrapped","url":"https://openvpn.net","docs_url":"","linkedin":"","bh_tier":"Silver","bh_booth":"6020","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"opnova","name":"Opnova","slug":"opnova","logo":"","brief_summary":"Connects applications lacking native integrations into existing IGA and ITSM systems.","description":"Opnova extends identity governance to disconnected applications, automating the onboarding of apps that lack SCIM or API integrations into the IGA and ITSM tools a company already runs. IAM teams use it to close governance gaps without manual provisioning work. The company was founded in 2024.","category":"identity-access","tags":[],"founded":"2024","funding":"$4M raised (Pre Seed, 2024)","funding_stage":"seed","url":"https://opnova.ai","docs_url":"","linkedin":"","bh_tier":"Startup City","bh_booth":"5802","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"opswat","name":"OPSWAT","slug":"opswat","logo":"","brief_summary":"Critical infrastructure protection vendor focused on file, device, and cross-domain threat prevention.","description":"OPSWAT protects critical infrastructure with prevention-focused controls: scanning files with many antivirus engines at once, sanitizing documents through content disarm and reconstruction, securing removable media, and guarding data transfers between IT and OT domains. Founded in 2002, its customers include utilities, manufacturers, and government agencies.","category":"ot-cyber-physical","tags":[],"founded":"2002","funding":"$125M raised (Private Equity, 2021)","funding_stage":"private-equity","url":"https://www.opswat.com","docs_url":"","linkedin":"","bh_tier":"Platinum","bh_booth":"2957","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"optiv","name":"Optiv","slug":"optiv","logo":"","brief_summary":"Security services firm providing advisory, technology integration, and managed security programs.","description":"Optiv is a services company rather than a product vendor: it advises on security strategy, integrates and resells technology from hundreds of vendors, and operates managed security programs. Enterprises engage it to design, build, and run their security stack instead of assembling every capability internally.","category":"platforms-integrators","tags":[],"founded":"","funding":"","funding_stage":"","url":"https://www.optiv.com","docs_url":"","linkedin":"","bh_tier":"Platinum","bh_booth":"2448","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"orca-security","name":"Orca Security","slug":"orca-security","logo":"","brief_summary":"Agentless cloud security platform scanning workloads and configurations through cloud provider APIs.","description":"Orca Security scans cloud environments without deploying agents, using snapshot-based access to inspect workloads, configurations, identities, and data across AWS, Azure, and GCP. The platform combines posture management, vulnerability scanning, and AI risk visibility with context-based prioritization of what is actually exploitable. Founded in 2019, it serves enterprises running multi-cloud estates.","category":"cloud-runtime-security","tags":[],"founded":"2019","funding":"$632M raised (Series C, 2021)","funding_stage":"series-c","url":"https://orca.security","docs_url":"","linkedin":"","bh_tier":"Silver Plus","bh_booth":"5115","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"orion-security","name":"ORION Security","slug":"orion-security","logo":"","brief_summary":"Data loss prevention platform tracking data flows across endpoints, SaaS applications, and AI tools.","description":"ORION Security reframes DLP around data movement: instead of classifying files with static rules, it models how information travels between endpoints, cloud applications, and AI tools, and uses AI to flag flows that indicate leakage or exfiltration. It targets security teams covering modern SaaS-heavy environments. Founded in 2024, it raised a $38M Series A.","category":"data-security-dlp","tags":[],"founded":"2024","funding":"$38M raised (Series A, 2026)","funding_stage":"series-a","url":"https://orionsec.io","docs_url":"","linkedin":"","bh_tier":"Silver Plus","bh_booth":"7708","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"orryx-ai","name":"Orryx AI","slug":"orryx-ai","logo":"","brief_summary":"AI SOC platform automating routine security operations with verified outcomes.","description":"Orryx AI, part of Beyon Cyber, applies agentic automation to security operations. Its agents take on repetitive SOC work such as triage and investigation, and each automated action is checked against its expected outcome. The platform targets operations teams that want automation they can audit.","category":"ai-soc-secops","tags":[],"founded":"","funding":"Corporate-owned (Beyon Cyber / Beyon Group)","funding_stage":"","url":"https://orryxai.com","docs_url":"","linkedin":"","bh_tier":"AI Zone","bh_booth":"5307","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"ox-security","name":"OX Security","slug":"ox-security","logo":"","brief_summary":"Application security posture management platform covering code from AI-assisted authoring through production.","description":"OX Security gives AppSec teams one view of software risk across the development lifecycle, connecting findings from source code, pipelines, dependencies, and running services. It traces issues back to code owners and covers code produced by AI assistants as well as humans. Founded in 2021, it raised a $94M Series B.","category":"appsec-code-security","tags":[],"founded":"2021","funding":"$94M raised (Series B, 2025)","funding_stage":"series-b","url":"https://www.ox.security","docs_url":"","linkedin":"","bh_tier":"Silver Plus","bh_booth":"5117","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"palo-alto-networks","name":"Palo Alto Networks","slug":"palo-alto-networks","logo":"","brief_summary":"Cybersecurity platform vendor spanning network, cloud, security operations, and identity.","description":"Palo Alto Networks sells security platforms across network, cloud, and operations. Its portfolio covers firewalls and SASE, cloud security, and AI-driven security operations with Cortex, extended into identity through its CyberArk acquisition. Large enterprises consolidate multiple security functions onto its platforms.","category":"platforms-integrators","tags":[],"founded":"","funding":"","funding_stage":"","url":"https://www.paloaltonetworks.com","docs_url":"","linkedin":"","bh_tier":"Cyber District","bh_booth":"","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"panther","name":"Panther","slug":"panther","logo":"","brief_summary":"Security monitoring platform pairing a data lake, detection-as-code, and AI-assisted triage.","description":"Panther ingests security logs into a data lake and runs detections written and versioned as code, with AI agents assisting investigation and triage. It appeals to security teams with engineering practices that want SIEM capability at cloud scale. The company was founded in 2018.","category":"ai-soc-secops","tags":[],"founded":"2018","funding":"$140M raised (2021)","funding_stage":"venture","url":"https://panther.com","docs_url":"","linkedin":"","bh_tier":"Gold","bh_booth":"2167","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"parameter","name":"Parameter","slug":"parameter","logo":"","brief_summary":"Autonomous AI pentesting agents that validate findings with working proof-of-concept exploits.","description":"Parameter runs AI agents against applications and infrastructure the way human pentesters would, and backs each finding with a working proof of concept rather than a scanner-style guess. It targets teams that want continuous offensive testing with evidence they can trust.","category":"pentesting-offensive-security","tags":[],"founded":"","funding":"No disclosed funding (early-stage)","funding_stage":"","url":"https://www.parameter.ai","docs_url":"","linkedin":"","bh_tier":"Startup City","bh_booth":"5701","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"patronus-ai","name":"Patronus AI","slug":"patronus-ai","logo":"","brief_summary":"New York LLM evaluation and scoring platform for catching hallucinations, policy breaks, and unsafe outputs.","description":"Patronus AI is a US company based in New York. It builds evaluation and scoring tools that test LLM applications for hallucinations, policy breaks, and unsafe outputs before and after launch. It is a software product, not an audit firm. This listing describes the public product.","category":"ai-model-security-red-team","tags":[],"founded":"2023","funding":"","funding_stage":"venture","url":"https://www.patronus.ai","docs_url":"","linkedin":"https://www.linkedin.com/company/patronus-ai","bh_tier":"","bh_booth":"","publish_after":null,"date_added":"2026-08-13","source":"us-intake-2026-08-13"},{"id":"penlink","name":"Penlink","slug":"penlink","logo":"","brief_summary":"Digital intelligence platform for investigating threat actors across open, deep, and dark web.","description":"Penlink supplies OSINT and lawful intelligence tooling to government and corporate investigators. Following its merger with Cobwebs Technologies, its platform collects and links data from public web, deep web, and dark web sources to map threat actors and their networks. The company has served investigative agencies since 1987.","category":"threat-intel-dfir","tags":[],"founded":"1987","funding":"PE-owned (Spire Capital; merged with Cobwebs Technologies 2023)","funding_stage":"","url":"https://www.penlink.com","docs_url":"","linkedin":"","bh_tier":"AI Zone","bh_booth":"4906","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"pentera","name":"Pentera","slug":"pentera","logo":"","brief_summary":"Automated penetration testing platform continuously validating which attack paths work against an environment.","description":"Pentera runs safe automated penetration tests against production environments to show which attack paths an intruder could actually complete. Teams validate controls continuously as infrastructure changes rather than waiting for the next consulting engagement. Founded in 2015, it is used mainly by enterprises with mature vulnerability management programs.","category":"pentesting-offensive-security","tags":[],"founded":"2015","funding":"$250M raised (Series D, 2025)","funding_stage":"series-d","url":"https://www.pentera.io","docs_url":"","linkedin":"","bh_tier":"Platinum Plus","bh_booth":"1652","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"perpetual-systems","name":"Perpetual Systems","slug":"perpetual-systems","logo":"","brief_summary":"Integrated platform combining AI SOC agents, a SIEM engine, and an open-standards security data lakehouse.","description":"Perpetual Systems builds security operations as one system: agents that handle SOC work, a SIEM core for detection, and a lakehouse on open data standards underneath. This avoids stitching together separate vendors for data, detection, and automation. The company is backed by a16z and Picus Capital.","category":"ai-soc-secops","tags":[],"founded":"","funding":"Venture-backed (a16z, Picus Capital; amount undisclosed)","funding_stage":"","url":"https://www.perpetualsystems.com","docs_url":"","linkedin":"","bh_tier":"Startup City","bh_booth":"6111","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"phoenix-security","name":"Phoenix Security","slug":"phoenix-security","logo":"","brief_summary":"ASPM platform that merges code and cloud findings into a single prioritized remediation list.","description":"Phoenix Security correlates vulnerabilities from application scanners and cloud tools, deduplicates them, and ranks what to fix based on business context and exploitability. AppSec teams use it to hand engineering one worklist instead of many scanner exports. The company was founded in 2021.","category":"exposure-management-ctem","tags":[],"founded":"2021","funding":"$2M raised (Pre Seed, 2025)","funding_stage":"seed","url":"https://phoenix.security","docs_url":"","linkedin":"","bh_tier":"Startup City","bh_booth":"5702","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"pi-security","name":"Pi Security","slug":"pi-security","logo":"","brief_summary":"Product security platform applying AI agents across the SDLC from design to production.","description":"Pi Security uses AI agents to carry out product security work, from design review through code analysis and deployment checks in production. It aims to give lean security teams coverage across the whole development lifecycle. Its founders previously held security roles at Microsoft and Tesla, and the company was founded in 2025.","category":"appsec-code-security","tags":[],"founded":"2025","funding":"$35M raised (Series A, 2026)","funding_stage":"series-a","url":"https://www.pi.security","docs_url":"","linkedin":"","bh_tier":"Gold","bh_booth":"3561","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"picus-security","name":"Picus Security","slug":"picus-security","logo":"","brief_summary":"Security validation platform combining breach and attack simulation with automated penetration testing.","description":"Picus simulates attacks to test whether an organization's controls prevent and detect them, then supplies mitigation guidance mapped to the specific products in use. Founded in 2013, it was among the earliest breach and attack simulation vendors and has since added automated penetration testing and exposure validation.","category":"exposure-management-ctem","tags":[],"founded":"2013","funding":"$78M raised (Series C, 2024)","funding_stage":"series-c","url":"https://www.picussecurity.com","docs_url":"","linkedin":"","bh_tier":"Platinum","bh_booth":"4539","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"pillar-security-inc","name":"Pillar Security Inc.","slug":"pillar-security-inc","logo":"","brief_summary":"Platform that finds, tests, and protects AI agents and workflows across code, cloud, and SaaS.","description":"Pillar covers the AI security lifecycle in one product: discovering every agent and AI workflow an organization runs, red-teaming them for weaknesses, and protecting them at runtime. It spans AI living in codebases, cloud environments, and SaaS tools. Founded in 2023, it raised a $9M seed in 2025.","category":"agent-security-governance","tags":[],"founded":"2023","funding":"$9M raised (Seed, 2025)","funding_stage":"seed","url":"https://www.pillar.security","docs_url":"","linkedin":"","bh_tier":"Startup City","bh_booth":"5711","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"pindrop","name":"Pindrop","slug":"pindrop","logo":"","brief_summary":"Voice security platform detecting deepfakes and verifying callers in contact centers.","description":"Pindrop analyzes voice, device, and behavior signals to authenticate legitimate callers and expose fraudsters in phone channels, including synthetic and deepfake audio detection as voice cloning becomes an attack tool. Banks, insurers, and large contact centers use it to cut fraud losses and authentication friction. Founded in 2011 from Georgia Tech research.","category":"social-engineering-human-risk","tags":[],"founded":"2011","funding":"$323M raised (Debt Financing, 2024)","funding_stage":"venture","url":"https://www.pindrop.com","docs_url":"","linkedin":"","bh_tier":"Silver","bh_booth":"5747","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"plainsea","name":"Plainsea","slug":"plainsea","logo":"","brief_summary":"Platform for managing and delivering penetration testing engagements.","description":"Plainsea streamlines how pentest providers and internal teams run engagements, covering scoping, delivery, reporting, and client collaboration in one workspace. Based in Sofia and spun out of security services firm AMATAS, it was founded in 2022.","category":"pentesting-offensive-security","tags":[],"founded":"2022","funding":"Backed by Ocean Investments (AMATAS spinout)","funding_stage":"","url":"https://plainsea.com","docs_url":"","linkedin":"","bh_tier":"Startup City","bh_booth":"5916","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"plextrac","name":"PlexTrac","slug":"plextrac","logo":"","brief_summary":"Reporting and workflow platform for penetration testers and red teams to deliver and track findings.","description":"PlexTrac replaces the document-based grind of pentest reporting with a purpose-built platform: testers write up findings once, generate client reports, and track remediation over time. It serves both internal security teams and consultancies delivering offensive security services, and has expanded into broader exposure assessment workflows. Founded in 2016.","category":"pentesting-offensive-security","tags":[],"founded":"2016","funding":"$81M raised (Series B, 2022)","funding_stage":"series-b","url":"https://plextrac.com","docs_url":"","linkedin":"","bh_tier":"Silver Plus","bh_booth":"5344","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"port0","name":"Port0","slug":"port0","logo":"","brief_summary":"Early-stage Tel Aviv startup building secure access technology for infrastructure environments.","description":"Port0 is an early-stage Israeli company working on secure access to infrastructure. Founded in 2025 and backed by investors including IN Venture, it operates in the identity and access space.","category":"identity-access","tags":[],"founded":"2025","funding":"Seed-stage (undisclosed; investors incl. IN Venture)","funding_stage":"","url":"https://port0.io","docs_url":"","linkedin":"","bh_tier":"Startup City","bh_booth":"5714","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"portswigger","name":"PortSwigger","slug":"portswigger","logo":"","brief_summary":"Creator of Burp Suite, the widely used toolkit for testing web application security.","description":"PortSwigger develops Burp Suite, the intercepting proxy and testing toolkit that most web application penetration testers rely on daily. The product line spans a free community edition, a professional edition for testers, and an enterprise scanner for continuous automated testing. The UK company also runs the Web Security Academy, a free training resource.","category":"pentesting-offensive-security","tags":[],"founded":"2008","funding":"$112M raised (Private Equity, 2024)","funding_stage":"private-equity","url":"https://portswigger.net","docs_url":"","linkedin":"","bh_tier":"Silver Plus","bh_booth":"5342","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"preamble","name":"Preamble","slug":"preamble","logo":"","brief_summary":"Pittsburgh AI security firm for prompt-injection defense, red teaming, and AI agent assessments.","description":"Preamble is a US AI security company based in Pittsburgh. It is known for prompt-injection research and sells defense, red teaming, and assessment work for organizations deploying AI agents. This listing describes the public product and services. It is not a certification claim.","category":"ai-model-security-red-team","tags":[],"founded":"2020","funding":"","funding_stage":"","url":"https://www.preamble.com","docs_url":"","linkedin":"https://www.linkedin.com/company/preamble-ai","bh_tier":"","bh_booth":"","publish_after":null,"date_added":"2026-08-13","source":"us-intake-2026-08-13"},{"id":"prescient-security","name":"Prescient Security","slug":"prescient-security","logo":"","brief_summary":"Penetration testing and compliance audit firm holding CREST certification.","description":"Prescient Security is a services firm delivering penetration tests, security assessments, and compliance audits, with CREST certification backing its testing methodology. Its combined testing-plus-audit model suits companies pursuing SOC 2, ISO 27001, and similar attestations that also need credible offensive testing. Founded in 2018.","category":"pentesting-offensive-security","tags":[],"founded":"2018","funding":"Private services firm; no disclosed funding","funding_stage":"","url":"https://www.prescientsecurity.com","docs_url":"","linkedin":"","bh_tier":"Silver","bh_booth":"6024","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"primary","name":"Primary","slug":"primary","logo":"","brief_summary":"Zero trust control plane enforcing access policy across human and non-human identities.","description":"Primary offers a single control plane for zero trust access policy spanning people, service accounts, and machine identities. Teams define policy once and enforce it consistently instead of maintaining separate rules in every system. The company was founded in 2022.","category":"identity-access","tags":[],"founded":"2022","funding":"Funding undisclosed","funding_stage":"","url":"https://www.primary.ai","docs_url":"","linkedin":"","bh_tier":"Diamond","bh_booth":"4215","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"primesec-inc","name":"PrimeSec Inc.","slug":"primesec-inc","logo":"","brief_summary":"AI agents for product security work such as design reviews and threat modeling in development.","description":"PrimeSec builds AI agents that take on product security tasks that normally bottleneck on scarce security engineers, including reviewing designs, threat modeling, and answering developers' security questions with organizational context. It targets AppSec teams that cannot manually review every feature. Founded in 2023, the company raised a $26M Series A.","category":"appsec-code-security","tags":[],"founded":"2023","funding":"$26M raised (Series A, 2025)","funding_stage":"series-a","url":"https://www.primesec.ai","docs_url":"","linkedin":"","bh_tier":"Silver Plus","bh_booth":"5530","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"projectdiscovery","name":"ProjectDiscovery","slug":"projectdiscovery","logo":"","brief_summary":"Maintains open-source security tools, including Nuclei, for attack surface discovery and testing.","description":"ProjectDiscovery builds widely adopted open-source security tooling. Nuclei, its template-driven vulnerability scanner, along with tools like Subfinder and httpx, underpin many attack surface and bug bounty workflows. A commercial cloud platform adds management, automation, and continuous monitoring on top of the open-source core.","category":"pentesting-offensive-security","tags":[],"founded":"2020","funding":"$25M raised (Series A, 2023, CRV)","funding_stage":"series-a","url":"https://projectdiscovery.io","docs_url":"","linkedin":"","bh_tier":"AI Zone","bh_booth":"5108","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"prompt-security","name":"Prompt Security","slug":"prompt-security","logo":"","brief_summary":"Israeli GenAI security platform for discovering shadow AI, governing employee use, and protecting LLM applications.","description":"Prompt Security is an Israeli company that sells a GenAI security platform. It covers shadow-AI discovery, employee use of public AI tools, and protection for applications teams build on LLMs. Buyers are security teams rolling out AI without a dedicated AI-security staff. This listing describes the public product. It is not a certification claim.","category":"agent-security-governance","tags":[],"founded":"2023","funding":"","funding_stage":"venture","url":"https://prompt.security","docs_url":"","linkedin":"https://www.linkedin.com/company/prompt-security","bh_tier":"","bh_booth":"","publish_after":null,"date_added":"2026-08-13","source":"eu-il-intake-2026-08-13"},{"id":"promptfoo","name":"Promptfoo","slug":"promptfoo","logo":"","brief_summary":"US open-source LLM evaluation and red-teaming toolkit for testing prompts, agents, and RAG apps.","description":"Promptfoo is a US open-source project and company for evaluating and red-teaming LLM applications. Engineers use it to test prompts, agents, and RAG systems for failures before they ship. It is a developer tool, not an auditor. This listing describes the public product.","category":"ai-model-security-red-team","tags":[],"founded":"2023","funding":"","funding_stage":"","url":"https://www.promptfoo.dev","docs_url":"https://www.promptfoo.dev/docs/intro/","linkedin":"","bh_tier":"","bh_booth":"","publish_after":null,"date_added":"2026-08-13","source":"us-intake-2026-08-13"},{"id":"proofpoint-365-total-protection","name":"Proofpoint 365 Total Protection","slug":"proofpoint-365-total-protection","logo":"","brief_summary":"Microsoft 365 security suite covering email protection, backup, and compliance, from Hornetsecurity.","description":"365 Total Protection bundles security and data protection for Microsoft 365 tenants: email filtering, advanced threat defense, archiving, backup, and permission management. Built by Hornetsecurity, it became part of Proofpoint through the 2025 acquisition. It is aimed at businesses and MSPs standardizing on Microsoft 365.","category":"social-engineering-human-risk","tags":[],"founded":"2007","funding":"Hornetsecurity acquired by Proofpoint ($1.8B, 2025)","funding_stage":"acquired","url":"https://www.hornetsecurity.com","docs_url":"","linkedin":"","bh_tier":"","bh_booth":"","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"proofpoint-inc","name":"Proofpoint, Inc.","slug":"proofpoint-inc","logo":"","brief_summary":"Email and collaboration security protecting people, data, and communications from targeted attacks.","description":"Proofpoint centers its products on people rather than infrastructure. The platform defends email and collaboration channels against phishing, impersonation, and account takeover, adds data loss prevention and insider risk monitoring, and runs security awareness programs. It is one of the largest vendors in email security.","category":"social-engineering-human-risk","tags":[],"founded":"2002","funding":"$886M raised (2019)","funding_stage":"venture","url":"https://www.proofpoint.com","docs_url":"","linkedin":"","bh_tier":"AI Zone","bh_booth":"5508","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"prophet-security","name":"Prophet Security","slug":"prophet-security","logo":"","brief_summary":"AI analyst platform triaging and investigating security alerts to reduce SOC workload.","description":"Prophet Security's AI analysts pick up alerts from existing detection tools, investigate them with supporting evidence, and close or escalate each one with documented reasoning. The aim is fewer hours lost to false positives and faster handling of real incidents. Founded in 2023 and backed by Accel.","category":"ai-soc-secops","tags":[],"founded":"2023","funding":"$41M raised (Series A, 2025, Accel)","funding_stage":"series-a","url":"https://www.prophetsecurity.ai","docs_url":"","linkedin":"","bh_tier":"Diamond","bh_booth":"4140","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"prowler","name":"Prowler","slug":"prowler","logo":"","brief_summary":"Cloud security platform built on a widely used open source scanner, with agentic capabilities.","description":"Prowler commercializes its open source cloud security tool, adding an agentic layer that assesses and defends multi-cloud environments, SaaS, and infrastructure-as-code. Cloud security teams start with the free scanner and grow into the platform. The company behind it formed in 2023 and raised a $12M seed.","category":"cloud-runtime-security","tags":[],"founded":"2023","funding":"$12M raised (Seed, 2025)","funding_stage":"seed","url":"https://www.prowler.com","docs_url":"","linkedin":"","bh_tier":"Startup City","bh_booth":"5913","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"psybercog-labs","name":"PsyberCog Labs","slug":"psybercog-labs","logo":"","brief_summary":"Research startup studying the human and cognitive factors behind cybersecurity failures.","description":"PsyberCog Labs applies psychology and cognitive science to security, researching why people fall for attacks and how defenses can account for human behavior. Founded in 2025, it is at the pre-funding stage and completed the Founder Institute accelerator.","category":"social-engineering-human-risk","tags":[],"founded":"2025","funding":"Pre-funding (Founder Institute accelerator grad, 2026)","funding_stage":"","url":"https://www.psybercog.com","docs_url":"","linkedin":"","bh_tier":"Startup City","bh_booth":"","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"puppygraph","name":"PuppyGraph","slug":"puppygraph","logo":"","brief_summary":"Graph query engine that runs on existing data stores without ETL.","description":"PuppyGraph lets teams query relational data as a graph without standing up a separate graph database. It connects to existing warehouses and lakes and executes graph queries federated across them. Security teams use this for attack path analysis and entity link investigation over data already in place.","category":"siem-security-data","tags":[],"founded":"2023","funding":"$5M raised (Seed, 2024)","funding_stage":"seed","url":"https://www.puppygraph.com","docs_url":"","linkedin":"","bh_tier":"Launch Pad","bh_booth":"6105","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"push-security","name":"Push Security","slug":"push-security","logo":"","brief_summary":"Browser-based identity security platform stopping phishing and account takeover where users sign in.","description":"Push Security works from a browser extension, watching logins and app usage to block phishing pages, detect stolen or reused credentials, and surface shadow SaaS and risky AI tool use. Attacks on identity get stopped in the browser where they happen. Founded in 2021, it suits teams that treat identity as the primary attack surface.","category":"endpoint-browser-mobile","tags":[],"founded":"2021","funding":"$49M raised (Series B, 2025)","funding_stage":"series-b","url":"https://pushsecurity.com","docs_url":"","linkedin":"","bh_tier":"Platinum","bh_booth":"4723","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"qodo","name":"Qodo","slug":"qodo","logo":"","brief_summary":"AI code integrity platform reviewing, testing, and validating code written by humans and AI.","description":"Qodo, formerly Codium, builds AI agents that review pull requests, generate tests, and enforce quality standards, aimed squarely at the flood of AI-generated code entering production. The premise is that code generation needs an independent verification layer. Founded in 2022 in Tel Aviv, it raised a $121M Series B.","category":"appsec-code-security","tags":[],"founded":"2022","funding":"$121M raised (Series B, 2026)","funding_stage":"series-b","url":"https://www.qodo.ai","docs_url":"","linkedin":"","bh_tier":"Silver","bh_booth":"7606","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"qualys","name":"Qualys","slug":"qualys","logo":"","brief_summary":"Cloud platform for vulnerability management, compliance, and exposure risk measurement across enterprise IT assets.","description":"Qualys inventories IT assets, finds vulnerabilities and misconfigurations, and helps teams prioritize fixes based on business risk. The company has delivered vulnerability management from the cloud since 1999 and now frames its platform around measuring and reducing overall exposure. Its buyers are enterprise security and compliance teams running large scanning programs.","category":"exposure-management-ctem","tags":[],"founded":"1999","funding":"Public company","funding_stage":"public","url":"https://www.qualys.com","docs_url":"","linkedin":"","bh_tier":"Titanium","bh_booth":"2333 / 5509","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"radware","name":"Radware","slug":"radware","logo":"","brief_summary":"DDoS mitigation, WAF, bot management, and API protection for applications and infrastructure.","description":"Radware defends applications and network infrastructure with DDoS mitigation, web application firewalls, bot management, and API protection, delivered as cloud services or appliances. Service providers, carriers, and enterprises are its main customers. The Israeli company was founded in 1997 and is publicly traded.","category":"network-zero-trust","tags":[],"founded":"1997","funding":"Public company","funding_stage":"public","url":"https://www.radware.com","docs_url":"","linkedin":"","bh_tier":"Gold","bh_booth":"5138","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"rapid7","name":"Rapid7","slug":"rapid7","logo":"","brief_summary":"Security operations vendor spanning vulnerability management, detection and response, and managed services.","description":"Rapid7's platform covers vulnerability management, detection and response, and cloud security, with managed services layered on top for teams that want outcomes rather than another console to run. It also maintains Metasploit, the open source exploitation framework used across the industry. Founded in 2000 and publicly traded.","category":"ai-soc-secops","tags":[],"founded":"2000","funding":"Public company","funding_stage":"public","url":"https://www.rapid7.com","docs_url":"","linkedin":"","bh_tier":"Platinum","bh_booth":"2445","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"rapidfort","name":"RapidFort","slug":"rapidfort","logo":"","brief_summary":"Tool that strips unused components from containers, shrinking attack surface without code changes.","description":"RapidFort profiles what software containers actually use at runtime and removes the rest, eliminating vulnerable packages and reducing CVE counts without touching application code. DevSecOps teams use it to harden images and cut patching workload. Founded in 2020, it raised a $53M Series A in 2026.","category":"supply-chain-secrets","tags":[],"founded":"2020","funding":"$53M raised (Series A, 2026)","funding_stage":"series-a","url":"https://www.rapidfort.com","docs_url":"","linkedin":"","bh_tier":"Startup City","bh_booth":"5704","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"raxis","name":"Raxis","slug":"raxis","logo":"","brief_summary":"US penetration testing firm delivering manual, human-led tests across networks and applications.","description":"Raxis is a dedicated penetration testing company whose US-based team runs hundreds of engagements a year across networks, web applications, social engineering, and physical intrusion. It also offers a continuous PTaaS model between annual tests. Founded in 2011, it positions human creativity, not scanner output, as the core of its assessments.","category":"pentesting-offensive-security","tags":[],"founded":"2011","funding":"PE-backed (RCP Equity growth investment, 2020)","funding_stage":"","url":"https://raxis.com","docs_url":"","linkedin":"","bh_tier":"Silver","bh_booth":"6018","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"ray-security","name":"Ray Security","slug":"ray-security","logo":"","brief_summary":"Data security layer governing how AI assistants, agents, and applications access enterprise data.","description":"Ray Security controls the data pathways of enterprise AI, deciding what assistants, agents, and AI apps can read and preventing sensitive information from flowing where it should not. It targets organizations connecting AI to internal data stores. Founded in 2024, it raised an $11M seed in 2025.","category":"data-security-dlp","tags":[],"founded":"2024","funding":"$11M raised (Seed, 2025)","funding_stage":"seed","url":"https://raysecurity.io","docs_url":"","linkedin":"","bh_tier":"Startup City","bh_booth":"5812","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"reco","name":"Reco","slug":"reco","logo":"","brief_summary":"SaaS security platform monitoring and governing what users and AI agents do across applications.","description":"Reco maps identities, permissions, and activity across SaaS applications and flags risky behavior, extending that visibility to autonomous AI agents operating in the same apps. It grew out of SaaS security posture management into agent governance. For security teams accountable for sprawling app estates now touched by agents. Founded in 2020.","category":"agent-security-governance","tags":[],"founded":"2020","funding":"$85M raised (Series B $30M, 2026)","funding_stage":"series-b","url":"https://www.reco.ai","docs_url":"","linkedin":"","bh_tier":"Platinum Plus","bh_booth":"1644","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"recorded-future-mastercard","name":"Recorded Future | Mastercard","slug":"recorded-future-mastercard","logo":"","brief_summary":"Threat intelligence provider linking adversaries, infrastructure, and targets, owned by Mastercard.","description":"Recorded Future collects and links threat data at scale into its Intelligence Graph, giving analysts context on adversaries, malware, infrastructure, and victims. Founded in 2009, it is one of the largest dedicated threat intelligence vendors. Mastercard acquired the company in 2024.","category":"threat-intel-dfir","tags":[],"founded":"2009","funding":"$79M raised (2022)","funding_stage":"venture","url":"https://www.recordedfuture.com","docs_url":"","linkedin":"","bh_tier":"Platinum","bh_booth":"4517","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"red-hat","name":"Red Hat","slug":"red-hat","logo":"","brief_summary":"Enterprise open source company behind RHEL, OpenShift, and Ansible.","description":"Red Hat commercializes open source software for enterprises, with Red Hat Enterprise Linux, the OpenShift Kubernetes platform, and Ansible automation as its core products, each carrying platform and supply chain security features. It supports hybrid cloud infrastructure across regulated industries. The company has been an IBM subsidiary since 2019.","category":"platforms-integrators","tags":[],"founded":"","funding":"","funding_stage":"","url":"https://www.redhat.com","docs_url":"","linkedin":"","bh_tier":"Gold","bh_booth":"3361","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"redseal","name":"RedSeal","slug":"redseal","logo":"","brief_summary":"Network modeling platform mapping hybrid IT, OT, and IoT environments to expose attack paths.","description":"RedSeal builds a model of an organization's network from device configurations and cloud data, then computes how an attacker could move through it. Teams use the model to verify segmentation, prioritize vulnerabilities by reachability, and measure resilience across IT, OT, and IoT. Founded in 2004, it is established in government and large enterprise.","category":"exposure-management-ctem","tags":[],"founded":"2004","funding":"$91M raised (Private Equity, 2017)","funding_stage":"private-equity","url":"https://www.redseal.net","docs_url":"","linkedin":"","bh_tier":"Silver Plus","bh_booth":"5529","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"reliaquest","name":"ReliaQuest","slug":"reliaquest","logo":"","brief_summary":"Security operations platform automating detection, investigation, and response across an organization's existing security tools.","description":"ReliaQuest's GreyMatter platform connects to the security stack a company already owns and applies AI to triage alerts, run investigations, and execute response actions. It targets enterprise SOC teams that want faster outcomes without ripping out current tooling. The company was founded in 2007 and is based in Tampa.","category":"ai-soc-secops","tags":[],"founded":"2007","funding":"$830M raised (Private Equity, 2025)","funding_stage":"private-equity","url":"https://www.reliaquest.com","docs_url":"","linkedin":"","bh_tier":"Titanium","bh_booth":"2139 / 8505","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"relyance-inc","name":"Relyance Inc","slug":"relyance-inc","logo":"","brief_summary":"Automates data governance and privacy compliance by mapping how data actually flows.","description":"Relyance AI builds a live map of how personal and sensitive data moves through a company's code, vendors, and infrastructure. That map drives privacy work such as records of processing, data protection assessments, and contract checks. Privacy and security teams use it to replace static, manually maintained inventories.","category":"grc-tprm","tags":[],"founded":"2020","funding":"$62M raised (Series B, 2024)","funding_stage":"series-b","url":"https://www.relyance.ai","docs_url":"","linkedin":"","bh_tier":"AI Zone","bh_booth":"4902","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"reversinglabs","name":"ReversingLabs","slug":"reversinglabs","logo":"","brief_summary":"Binary analysis platform verifying files and software packages are free of threats and tampering.","description":"ReversingLabs performs deep static analysis on files and compiled software at scale, maintaining a reputation database of billions of binaries. Security teams use it to dissect suspicious files, while software producers and consumers use it to verify releases and third-party packages have not been tampered with. Founded in 2009.","category":"supply-chain-secrets","tags":[],"founded":"2009","funding":"$81M raised (Series B, 2021)","funding_stage":"series-b","url":"https://www.reversinglabs.com","docs_url":"","linkedin":"","bh_tier":"Silver","bh_booth":"5644","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"right-hand-cybersecurity","name":"Right-Hand Cybersecurity","slug":"right-hand-cybersecurity","logo":"","brief_summary":"Human risk management platform that adapts defenses to AI-generated social engineering.","description":"Right-Hand quantifies each employee's security risk and delivers adaptive training and interventions, updated for a threat landscape where attackers generate personalized lures with AI. Security awareness teams use it to move from annual training to continuous behavior change. The company was founded in 2019.","category":"social-engineering-human-risk","tags":[],"founded":"2019","funding":"$6M raised (Series A, 2023)","funding_stage":"series-a","url":"https://right-hand.ai","docs_url":"","linkedin":"","bh_tier":"Startup City","bh_booth":"6314","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"row-zero","name":"Row Zero","slug":"row-zero","logo":"","brief_summary":"Cloud spreadsheet that keeps sensitive data server-side while giving analysts familiar self-serve tools.","description":"Row Zero is a spreadsheet built for big, sensitive datasets: data stays in the cloud under governance instead of scattering across laptops as CSV exports, while users keep a familiar spreadsheet interface with the scale to handle billions of rows. It suits data teams balancing self-serve analytics with data security. The company was founded in 2021.","category":"data-security-dlp","tags":[],"founded":"2021","funding":"$13M raised (Seed $10M, IA Ventures, 2025)","funding_stage":"seed","url":"https://rowzero.com","docs_url":"","linkedin":"","bh_tier":"Startup City","bh_booth":"6116","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"rubrik","name":"Rubrik","slug":"rubrik","logo":"","brief_summary":"Data protection platform providing immutable backups, threat monitoring, and cyber recovery.","description":"Rubrik secures enterprise data with immutable backups, monitors it for signs of ransomware and sensitive data exposure, and orchestrates clean recovery after an incident. Its coverage extends to identity systems such as Active Directory and Entra ID. Founded in 2014 and publicly traded.","category":"resilience-ransomware","tags":[],"founded":"2014","funding":"Public company","funding_stage":"public","url":"https://www.rubrik.com","docs_url":"","linkedin":"","bh_tier":"Platinum","bh_booth":"3557","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"safe-security","name":"Safe Security","slug":"safe-security","logo":"","brief_summary":"Cyber risk platform combining risk quantification, exposure management, AI security posture, and third-party risk.","description":"Safe Security expresses cyber risk in financial terms, aggregating signals from vulnerabilities, controls, and vendors into a single risk model. Its scope spans risk quantification, continuous threat exposure management, AI security posture, and third-party risk. Built for CISOs who need to prioritize spending and report risk to boards in business language.","category":"grc-tprm","tags":[],"founded":"2012","funding":"$169M raised (Series C, 2025)","funding_stage":"series-c","url":"https://safe.security","docs_url":"","linkedin":"","bh_tier":"Titanium","bh_booth":"4422 / 5506","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"safebreach","name":"SafeBreach","slug":"safebreach","logo":"","brief_summary":"Breach and attack simulation validating security controls against real attacker techniques.","description":"SafeBreach continuously runs simulated attacks against an organization's defenses to show which techniques would succeed and which controls hold. Results feed exposure management programs with evidence rather than assumptions, and its Helm agent adds AI-driven orchestration of that testing. The company was founded in 2014.","category":"exposure-management-ctem","tags":[],"founded":"2014","funding":"$106M raised (Series D, 2021)","funding_stage":"series-d","url":"https://safebreach.com","docs_url":"","linkedin":"","bh_tier":"Gold","bh_booth":"1364","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"sahl","name":"Sahl","slug":"sahl","logo":"","brief_summary":"Riyadh-based startup automating security and regulatory compliance work.","description":"Sahl builds compliance automation software, helping organizations meet security and regulatory requirements with less manual effort. Based in Riyadh and founded in 2024, it is backed by 500 Global and serves companies navigating Saudi and regional compliance regimes.","category":"grc-tprm","tags":[],"founded":"2024","funding":"Seed (undisclosed, 500 Global, 2024)","funding_stage":"","url":"https://getsahl.io","docs_url":"","linkedin":"","bh_tier":"Startup City","bh_booth":"5804","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"sailpoint-technologies","name":"SailPoint Technologies","slug":"sailpoint-technologies","logo":"","brief_summary":"Enterprise identity security platform governing access for employees, machines, and AI identities.","description":"SailPoint is the largest pure-play identity governance vendor, automating who gets access to what across enterprise systems, certifying that access, and revoking it when roles change. Its AI-driven platform now extends to machine and agent identities alongside human ones. Founded in 2005, it returned to public markets in 2025 under Thoma Bravo's majority ownership.","category":"identity-access","tags":[],"founded":"2005","funding":"Public (NASDAQ: SAIL, re-IPO 2025; Thoma Bravo majority)","funding_stage":"public","url":"https://www.sailpoint.com","docs_url":"","linkedin":"","bh_tier":"Silver","bh_booth":"5639","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"salt-security","name":"Salt Security","slug":"salt-security","logo":"","brief_summary":"API security platform discovering APIs and blocking attacks using behavioral analysis.","description":"Salt Security discovers an organization's APIs, including forgotten and undocumented ones, then baselines normal behavior to catch the low-and-slow attacks that exploit API business logic. Coverage now extends to AI agents and MCP connections as machine-to-machine traffic grows. Founded in 2016, it has raised $271M and serves large API-heavy enterprises.","category":"appsec-code-security","tags":[],"founded":"2016","funding":"$271M raised (Series Unknown, 2022)","funding_stage":"venture","url":"https://salt.security","docs_url":"","linkedin":"","bh_tier":"Silver","bh_booth":"5938","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"sandfly-security","name":"Sandfly Security","slug":"sandfly-security","logo":"","brief_summary":"Agentless threat detection, hunting, and forensics for Linux systems.","description":"Sandfly inspects Linux hosts for compromise without installing agents, sweeping systems remotely for malware, rootkits, and suspicious activity. This makes it deployable on production and embedded Linux where agents are unwelcome or impossible. Founded in 2017, it serves teams running large or mission-critical Linux estates.","category":"endpoint-browser-mobile","tags":[],"founded":"2017","funding":"Seed (undisclosed, 2024, Gula Tech Adventures & Sorenson Capital)","funding_stage":"","url":"https://www.sandflysecurity.com","docs_url":"","linkedin":"","bh_tier":"Startup City","bh_booth":"6014","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"saviynt","name":"Saviynt","slug":"saviynt","logo":"","brief_summary":"Cloud identity governance and administration covering human, machine, and AI identities.","description":"Saviynt handles identity lifecycle, access requests, certifications, and privileged access from a converged cloud platform. It targets large enterprises with complex application estates and compliance obligations, and extends governance to service accounts and AI agents. The company was founded in 2010.","category":"identity-access","tags":[],"founded":"2010","funding":"$1.1B raised (Series B, 2025)","funding_stage":"series-b","url":"https://saviynt.com","docs_url":"","linkedin":"","bh_tier":"Gold","bh_booth":"4714","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"seceon","name":"Seceon","slug":"seceon","logo":"","brief_summary":"Threat detection and response platform built for MSSPs, with automated containment.","description":"Seceon gives managed security providers a multi-tenant platform combining SIEM, network analysis, and machine learning detection with automated response actions. MSSPs use it to deliver detection and response services to many customers from one console. Founded in 2014, the company has grown largely without outside capital.","category":"ai-soc-secops","tags":[],"founded":"2014","funding":"~$2M raised; largely self-funded","funding_stage":"venture","url":"https://seceon.com","docs_url":"","linkedin":"","bh_tier":"Exhibitor","bh_booth":"7705","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"securends","name":"SecurEnds","slug":"securends","logo":"","brief_summary":"Automates user access reviews, identity governance, and related compliance workflows.","description":"SecurEnds provides identity governance focused on access certification. It connects to applications and directories, gathers who has access to what, and runs the periodic review campaigns auditors require, with GRC workflows built in. Mid-sized enterprises use it to retire spreadsheet-driven access reviews.","category":"identity-access","tags":[],"founded":"2017","funding":"$21M raised (Series A, 2021)","funding_stage":"series-a","url":"https://www.securends.com","docs_url":"","linkedin":"","bh_tier":"AI Zone","bh_booth":"8006","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"seezo","name":"Seezo","slug":"seezo","logo":"","brief_summary":"Tool that automates security design reviews using AI, generating requirements before code is written.","description":"Seezo applies AI to the design phase of the SDLC, analyzing feature specs and architecture documents to produce security requirements and flag design flaws early. It targets AppSec teams that cannot manually review every feature. Founded in 2023, it raised a seed round in 2025.","category":"appsec-code-security","tags":[],"founded":"2023","funding":"$7M raised (Seed, 2025)","funding_stage":"seed","url":"https://seezo.io","docs_url":"","linkedin":"","bh_tier":"Exhibitor","bh_booth":"2070","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"segura","name":"Segura","slug":"segura","logo":"","brief_summary":"Privileged access management platform covering credential vaulting, session control, and certificate management.","description":"Segura provides PAM capabilities including password vaulting, session recording, DevOps secrets, and certificate lifecycle management in a single product. Originally from Brazil and now selling worldwide, it positions on fast deployment and lower cost than incumbent PAM suites. The company was founded in 2010.","category":"identity-access","tags":[],"founded":"2010","funding":"$13M raised (Series A, 2022)","funding_stage":"series-a","url":"https://segura.security","docs_url":"","linkedin":"","bh_tier":"Exhibitor","bh_booth":"6039","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"sekant-security","name":"Sekant Security","slug":"sekant-security","logo":"","brief_summary":"Browser-based detection models that block phishing, ClickFix lures, and malicious downloads.","description":"Sekant Security runs detection directly in the browser. Its models evaluate pages and downloads as users encounter them, blocking phishing sites, ClickFix-style social engineering, and unsafe files at the moment of interaction. Founded in 2025, it targets the web-borne attacks that reach users after email filtering has done its part.","category":"endpoint-browser-mobile","tags":[],"founded":"2025","funding":"No disclosed funding (founded 2025, early-stage)","funding_stage":"","url":"https://sekantsecurity.com","docs_url":"","linkedin":"","bh_tier":"Launch Pad","bh_booth":"6003","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"semgrep","name":"Semgrep","slug":"semgrep","logo":"","brief_summary":"Code security platform combining static analysis, dependency scanning, and secrets detection.","description":"Semgrep grew from an open source static analysis engine into a platform covering SAST, software composition analysis, and secrets scanning. Its rules read like the code they match, so engineers can write and tune them, and findings adapt to a codebase over time. Popular with teams that want application security developers will accept.","category":"appsec-code-security","tags":[],"founded":"2017","funding":"$193M raised (Series D, 2025)","funding_stage":"series-d","url":"https://semgrep.dev","docs_url":"","linkedin":"","bh_tier":"Platinum","bh_booth":"4943","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"semperis","name":"Semperis","slug":"semperis","logo":"","brief_summary":"Identity resilience platform defending and recovering Active Directory, Entra ID, and Okta.","description":"Semperis protects the identity systems attackers go after first. It hardens and monitors Active Directory, Entra ID, and Okta, detects attacks in progress, and can rebuild Active Directory cleanly after a compromise. Founded in 2013, it serves enterprises where the directory is a single point of failure.","category":"identity-access","tags":[],"founded":"2013","funding":"$498M raised (Series C, 2024)","funding_stage":"series-c","url":"https://semperis.com","docs_url":"","linkedin":"","bh_tier":"Platinum","bh_booth":"3357","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"sendmarc","name":"Sendmarc","slug":"sendmarc","logo":"","brief_summary":"DMARC management platform getting domains to email authentication enforcement quickly.","description":"Sendmarc automates the path to DMARC enforcement, stopping attackers from sending email that impersonates a company's domains. The platform handles SPF and DKIM alignment across email sources and keeps monitoring after enforcement is reached. Founded in 2018 in South Africa, it sells directly and through MSPs managing many customer domains.","category":"social-engineering-human-risk","tags":[],"founded":"2018","funding":"$7M raised (Series A, 2023)","funding_stage":"series-a","url":"https://sendmarc.com","docs_url":"","linkedin":"","bh_tier":"Silver","bh_booth":"5748","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"sentinelone","name":"SentinelOne","slug":"sentinelone","logo":"","brief_summary":"Endpoint protection platform applying AI-driven detection and response across endpoints, cloud workloads, and identities.","description":"SentinelOne's Singularity platform detects and responds to threats on endpoints, cloud workloads, and identity systems using machine-driven analysis. Its agents can act on their own, quarantining threats or rolling back malicious changes without waiting for a human. Founded in 2013 and publicly traded, it competes head-on with CrowdStrike and Microsoft in enterprise EDR.","category":"endpoint-browser-mobile","tags":[],"founded":"2013","funding":"Public company","funding_stage":"public","url":"https://www.sentinelone.com","docs_url":"","linkedin":"","bh_tier":"Titanium","bh_booth":"2933 / 5609","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"servicenow","name":"ServiceNow","slug":"servicenow","logo":"","brief_summary":"Enterprise workflow platform with modules for security incident response, vulnerability management, and AI agent orchestration.","description":"ServiceNow runs IT and business workflows for large organizations, and its security operations modules route incidents, vulnerabilities, and risk work through that same system. It is increasingly a control point for deploying AI agents across enterprise processes. A natural fit for companies already standardized on ServiceNow as their operational backbone.","category":"platforms-integrators","tags":[],"founded":"","funding":"","funding_stage":"","url":"https://www.servicenow.com","docs_url":"","linkedin":"","bh_tier":"Titanium","bh_booth":"1833 / 5608","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"silent-push","name":"Silent Push","slug":"silent-push","logo":"","brief_summary":"Threat intelligence platform mapping attacker infrastructure before it is used in campaigns.","description":"Silent Push scans and indexes internet infrastructure to spot attacker setups early. By analyzing DNS, hosting, and content patterns, it identifies domains and IPs being staged for phishing or malware campaigns so defenders can block them ahead of use. Security teams consume its data through feeds and an investigation console.","category":"threat-intel-dfir","tags":[],"founded":"2020","funding":"$30M raised (Series B, 2025)","funding_stage":"series-b","url":"https://www.silentpush.com","docs_url":"","linkedin":"","bh_tier":"AI Zone","bh_booth":"8105","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"silverfort","name":"Silverfort","slug":"silverfort","logo":"","brief_summary":"Extends MFA and identity protection to systems that could not previously support it.","description":"Silverfort enforces identity security at the authentication layer itself. By integrating with directory infrastructure rather than individual applications, it applies MFA and access policies to legacy systems, service accounts, and command-line tools that agents cannot cover. Enterprises use it to close identity gaps standard IAM tooling leaves open.","category":"identity-access","tags":[],"founded":"2016","funding":"$222M raised (Series D $116M, 2024, ~$1B valuation)","funding_stage":"series-d","url":"https://www.silverfort.com","docs_url":"","linkedin":"","bh_tier":"Cyber District","bh_booth":"","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"smallstep","name":"Smallstep","slug":"smallstep","logo":"","brief_summary":"Certificate-based device identity platform enforcing that only trusted hardware reaches company resources.","description":"Smallstep issues cryptographic certificates bound to device hardware, so access to networks, applications, and infrastructure can be limited to machines a company actually manages. The approach removes reliance on shared secrets and supports zero trust architectures. The company also maintains the open source step-ca certificate authority tooling. Founded in 2016.","category":"pki-crypto-quantum","tags":[],"founded":"2016","funding":"$26M raised (Series A, 2022)","funding_stage":"series-a","url":"https://smallstep.com","docs_url":"","linkedin":"","bh_tier":"Silver Plus","bh_booth":"5111","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"smishalert","name":"SmishAlert","slug":"smishalert","logo":"","brief_summary":"Detects SMS phishing and fraud campaigns targeting users through mobile messaging channels.","description":"SmishAlert focuses on smishing, the SMS variant of phishing that most security stacks do not inspect. Its technology identifies fraudulent messages aimed at mobile users so organizations can detect campaigns targeting their employees or customers. The company positions itself against a persistent blind spot in mobile-channel fraud detection.","category":"social-engineering-human-risk","tags":[],"founded":"","funding":"","funding_stage":"","url":"https://www.smishalert.com","docs_url":"","linkedin":"","bh_tier":"Launch Pad","bh_booth":"6100","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"snowflake","name":"Snowflake","slug":"snowflake","logo":"","brief_summary":"Cloud data platform used for security data lakes and large-scale analytics.","description":"Snowflake provides a managed data platform spanning warehousing, data sharing, and AI workloads. Security teams build data lakes on it to retain years of logs affordably and run detections through connected applications from vendors such as Panther and Hunters. Those tools query the data where it already lives.","category":"siem-security-data","tags":[],"founded":"2012","funding":"Public (NYSE: SNOW)","funding_stage":"public","url":"https://www.snowflake.com","docs_url":"","linkedin":"","bh_tier":"AI Zone","bh_booth":"8206","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"snyk","name":"Snyk","slug":"snyk","logo":"","brief_summary":"Developer security platform scanning code, open source dependencies, containers, and infrastructure as code.","description":"Snyk embeds security scanning into developer workflows: static analysis for code, composition analysis for open source dependencies, and checks for containers and infrastructure as code, with fixes proposed in the tools developers already use. It has extended toward securing AI-generated code. Founded in 2015, it helped make developer-first security a mainstream buying category.","category":"appsec-code-security","tags":[],"founded":"2015","funding":"$1.3B raised (Corporate Round, 2023)","funding_stage":"venture","url":"https://snyk.io","docs_url":"","linkedin":"","bh_tier":"Platinum","bh_booth":"3752","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"socify-by-tac-security","name":"Socify by TAC Security","slug":"socify-by-tac-security","logo":"","brief_summary":"Compliance automation platform for small SaaS teams, with CPA attestation bundled in.","description":"Socify automates the evidence collection and control monitoring behind frameworks like SOC 2, and includes the CPA attestation in its offering rather than leaving customers to source an auditor separately. It targets lean SaaS companies facing their first compliance push. Launched in 2025, it is owned by publicly listed TAC Security.","category":"grc-tprm","tags":[],"founded":"2025","funding":"Owned by TAC Security (public, NSE: TACINFOSEC; launched 2025)","funding_stage":"public","url":"https://www.socify.ai","docs_url":"","linkedin":"","bh_tier":"Silver","bh_booth":"2470","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"socradar","name":"SOCRadar","slug":"socradar","logo":"","brief_summary":"Threat intelligence platform monitoring external risks, dark web activity, and brand exposure.","description":"SOCRadar combines cyber threat intelligence, attack surface monitoring, and digital risk protection in one platform, alerting organizations to leaked credentials, dark web chatter, impersonation, and exposed assets before they are exploited. It positions itself as an affordable option for mid-size security teams as well as enterprises. Founded in 2019, it serves over 800 customers.","category":"threat-intel-dfir","tags":[],"founded":"2019","funding":"$30M raised (Series B, 2024)","funding_stage":"series-b","url":"https://www.socradar.io","docs_url":"","linkedin":"","bh_tier":"Silver Plus","bh_booth":"5726","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"sonatype","name":"Sonatype","slug":"sonatype","logo":"","brief_summary":"Software supply chain management built on open source component analysis and repositories.","description":"Sonatype maintains the Maven Central repository and sells tools that inventory, evaluate, and control open source and third-party components in software builds, including its Nexus repository and lifecycle products. Teams use it to enforce component policy and respond quickly to dependency vulnerabilities, with growing coverage of AI-generated code. It was founded in 2008.","category":"supply-chain-secrets","tags":[],"founded":"2008","funding":"$156M raised (Private Equity, 2018)","funding_stage":"private-equity","url":"https://www.sonatype.com","docs_url":"","linkedin":"","bh_tier":"Gold","bh_booth":"5132","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"sophos-inc","name":"Sophos Inc.","slug":"sophos-inc","logo":"","brief_summary":"Endpoint protection, firewall, and managed detection and response vendor for mid-market and enterprise organizations.","description":"Sophos combines endpoint protection, firewalls, and email security with a large managed detection and response service, and its X-Ops research group feeds threat intelligence across the product line. Founded in 1985, it protects hundreds of thousands of organizations, reaching most of them through channel partners and MSPs.","category":"endpoint-browser-mobile","tags":[],"founded":"1985","funding":"$125M raised (Post-IPO Equity, 2021)","funding_stage":"public","url":"https://www.sophos.com","docs_url":"","linkedin":"","bh_tier":"Diamond","bh_booth":"3239","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"sovereign-ai-by-armor","name":"SOVEREIGN AI by ARMOR","slug":"sovereign-ai-by-armor","logo":"","brief_summary":"Governed AI workspace where security-conscious teams chat, build, and query under strict controls.","description":"SOVEREIGN AI, from managed security provider Armor, is an AI work platform designed for organizations with strict data rules. Users chat with models, build assistants, and query internal data inside an environment with governance and auditability throughout. It targets security teams and regulated businesses wary of consumer AI tools.","category":"agent-security-governance","tags":[],"founded":"2009","funding":"Unit of Armor (PE-backed, The Stephens Group; ~$60M raised)","funding_stage":"venture","url":"https://www.sovai.com","docs_url":"","linkedin":"","bh_tier":"AI Zone","bh_booth":"8308","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"specterops","name":"SpecterOps","slug":"specterops","logo":"","brief_summary":"Identity attack path management platform from the creators of BloodHound.","description":"SpecterOps builds BloodHound, the tool that maps attack paths through Active Directory and Entra ID. Its enterprise platform continuously identifies and helps sever the identity relationships attackers chain together to reach critical assets. The company also provides adversary simulation services and training.","category":"identity-access","tags":[],"founded":"2017","funding":"$108M raised (Series B $75M, 2025, Insight Partners)","funding_stage":"series-b","url":"https://specterops.io","docs_url":"","linkedin":"","bh_tier":"Cyber District","bh_booth":"","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"splunk-a-cisco-company","name":"Splunk, a Cisco Company","slug":"splunk-a-cisco-company","logo":"","brief_summary":"Data platform for searching, monitoring, and analyzing machine data, widely used as a SIEM.","description":"Splunk ingests logs and machine data at scale and lets teams search, correlate, and alert on it, serving both security operations and observability use cases. Its SIEM and SOAR products anchor many enterprise SOCs. Founded in 2003, Splunk was acquired by Cisco in 2024 and now forms the core of Cisco's security analytics portfolio.","category":"siem-security-data","tags":[],"founded":"2003","funding":"$2.4B raised (2022)","funding_stage":"venture","url":"https://www.splunk.com","docs_url":"","linkedin":"","bh_tier":"Business Hall Networking Lounge","bh_booth":"","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"spur-intelligence","name":"Spur Intelligence","slug":"spur-intelligence","logo":"","brief_summary":"Data service that classifies IP addresses as VPNs, residential proxies, or other anonymization services.","description":"Spur maintains intelligence on anonymization infrastructure, letting fraud and security teams check whether traffic comes from a VPN exit, residential proxy network, or similar service. Its API and feeds support fraud prevention, account security, and investigations. Founded in 2017 and bootstrapped for years, it took growth investment from Insight Partners in 2026.","category":"threat-intel-dfir","tags":[],"founded":"2017","funding":"$200M growth round (Insight Partners, 2026); bootstrapped 2017-2026","funding_stage":"bootstrapped","url":"https://spur.us","docs_url":"","linkedin":"","bh_tier":"Exhibitor","bh_booth":"7805","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"spycloud","name":"SpyCloud","slug":"spycloud","logo":"","brief_summary":"Identity threat intelligence built from recaptured breach data, infostealer logs, and darknet sources.","description":"SpyCloud recaptures credentials and identity data circulating in breaches, infostealer malware logs, and darknet markets, then feeds it to enterprises so exposed accounts get reset before criminals use them. Customers apply it against account takeover, ransomware precursors, and fraud. Founded in 2016.","category":"threat-intel-dfir","tags":[],"founded":"2016","funding":"$168M raised (Series D, 2023)","funding_stage":"series-d","url":"https://spycloud.com","docs_url":"","linkedin":"","bh_tier":"Platinum","bh_booth":"4739","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"stackhawk","name":"StackHawk","slug":"stackhawk","logo":"","brief_summary":"API and application security testing that runs in CI/CD, built for developers.","description":"StackHawk puts dynamic application security testing into the development pipeline. It scans running applications and APIs for exploitable issues on every build, with findings routed to the engineers who can fix them. Teams use it to turn DAST from a periodic security exercise into an automated engineering practice.","category":"appsec-code-security","tags":[],"founded":"2019","funding":"$47M raised (Strategic $12M, 2025)","funding_stage":"venture","url":"https://www.stackhawk.com","docs_url":"","linkedin":"","bh_tier":"AI Zone","bh_booth":"5606","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"stairwell","name":"Stairwell","slug":"stairwell","logo":"","brief_summary":"Continuously collects and reanalyzes every executable in an environment to catch missed threats.","description":"Stairwell takes a file-centric approach to detection. It copies every executable and related file from an environment into a private repository, then reanalyzes them continuously as new intelligence arrives, catching malware that slipped past defenses when it first landed. Founded by former Google security leaders, it complements EDR tooling.","category":"threat-intel-dfir","tags":[],"founded":"2019","funding":"$70M raised (Series B, 2022)","funding_stage":"series-b","url":"https://stairwell.com","docs_url":"","linkedin":"","bh_tier":"AI Zone","bh_booth":"5006","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"steg-ai","name":"Steg.AI","slug":"steg-ai","logo":"","brief_summary":"Invisible forensic watermarking for tracing content leaks and verifying authenticity.","description":"Steg.AI embeds imperceptible watermarks into images, video, and documents using deep learning. The marks survive edits, compression, and screenshots, letting owners trace leaked assets to their source, prove provenance, and counter deepfakes. Studios, enterprises, and rights holders use it to protect visual content.","category":"social-engineering-human-risk","tags":[],"founded":"2019","funding":"$6M raised (Seed, 2023)","funding_stage":"seed","url":"https://steg.ai","docs_url":"","linkedin":"","bh_tier":"AI Zone","bh_booth":"5308","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"stellar-cyber","name":"Stellar Cyber","slug":"stellar-cyber","logo":"","brief_summary":"AI-driven security operations platform combining SIEM, NDR, and automated response for lean teams.","description":"Stellar Cyber packages the security operations stack, including data collection, SIEM, network detection, and automated response, into one platform priced and designed for MSSPs and smaller enterprise teams. Its Open XDR approach ingests from existing tools rather than requiring rip-and-replace. Founded in 2017, it emphasizes outcomes achievable without a large SOC staff.","category":"ai-soc-secops","tags":[],"founded":"2017","funding":"$119M raised (Debt Financing, 2026)","funding_stage":"venture","url":"https://stellarcyber.ai","docs_url":"","linkedin":"","bh_tier":"Silver","bh_booth":"5542","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"straiker","name":"Straiker","slug":"straiker","logo":"","brief_summary":"Security platform for assessing and protecting agentic AI applications.","description":"Straiker secures AI agents and applications by combining offensive assessment of how they can be attacked with runtime guardrails against prompt injection, data leakage, and misuse. It sells to teams shipping agentic products who need both testing and protection. The company was founded in 2024.","category":"ai-model-security-red-team","tags":[],"founded":"2024","funding":"$85M raised (Series A, 2026)","funding_stage":"series-a","url":"https://straiker.ai","docs_url":"","linkedin":"","bh_tier":"Gold","bh_booth":"2964","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"strike","name":"Strike","slug":"strike","logo":"","brief_summary":"Offensive security platform pairing AI-driven attack execution with human expert oversight.","description":"Strike runs continuous offensive testing in which AI executes attack techniques against customer environments and experienced pentesters validate and extend the findings. The hybrid model aims to deliver the depth of manual testing at the cadence of automation. Founded in 2021 in Latin America, it raised a $19M Series A.","category":"pentesting-offensive-security","tags":[],"founded":"2021","funding":"$19M raised (Series A, 2025)","funding_stage":"series-a","url":"https://strike.sh","docs_url":"","linkedin":"","bh_tier":"Silver","bh_booth":"5924","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"strike48","name":"Strike48","slug":"strike48","logo":"","brief_summary":"Security operations platform pairing full log visibility with always-on AI agents.","description":"Strike48, a brand of Devo Technology, combines a high-volume log analytics backend with AI agents that work around the clock. Analysts get complete data visibility while agents handle triage and investigation continuously. It targets SOC teams that want automation grounded in all of their telemetry rather than samples.","category":"ai-soc-secops","tags":[],"founded":"2011","funding":"Venture-funded (brand of Devo Technology; $500M+ raised, $2B val 2022)","funding_stage":"venture","url":"https://www.strike48.com","docs_url":"","linkedin":"","bh_tier":"Business Hall Lounges","bh_booth":"","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"subimage","name":"SubImage","slug":"subimage","logo":"","brief_summary":"Cloud security product from the team that maintains the open source Cartography project.","description":"SubImage builds on Cartography, the open source asset-mapping tool its founders maintain, turning infrastructure graph data into cloud security insight. It targets teams that want to understand and reduce cloud risk through the relationships between their assets. Founded in 2024, it raised a $5M seed.","category":"cloud-runtime-security","tags":[],"founded":"2024","funding":"$5M raised (Seed, 2025)","funding_stage":"seed","url":"https://www.subimage.io","docs_url":"","linkedin":"","bh_tier":"Startup City","bh_booth":"6311","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"sublime-security","name":"Sublime Security","slug":"sublime-security","logo":"","brief_summary":"Email security platform with an open detection engine and AI agents for message triage.","description":"Sublime Security detects email threats with a detection engine whose rules are open and editable, plus AI agents that triage user reports and draft new detections. Security teams can inspect and tune the logic behind every verdict. For teams that want email security they can reason about rather than a black box.","category":"social-engineering-human-risk","tags":[],"founded":"2019","funding":"$240M raised (Series C, 2025)","funding_stage":"series-c","url":"https://sublime.security","docs_url":"","linkedin":"","bh_tier":"Platinum Plus","bh_booth":"2952","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"sumo-logic","name":"Sumo Logic","slug":"sumo-logic","logo":"","brief_summary":"Cloud-native log analytics and SIEM platform for security and operational data.","description":"Sumo Logic pioneered cloud-native log management and grew into a full SIEM, letting teams search, correlate, and alert on security and operational telemetry in one SaaS platform. Detection content and analytics target cloud-heavy environments. Founded in 2010, it was taken private by Francisco Partners in 2023.","category":"siem-security-data","tags":[],"founded":"2010","funding":"PE-owned (Francisco Partners, $1.7B take-private 2023)","funding_stage":"","url":"https://www.sumologic.com","docs_url":"","linkedin":"","bh_tier":"Silver","bh_booth":"5641","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"surf-ai","name":"Surf AI","slug":"surf-ai","logo":"","brief_summary":"Agentic platform correlating identity, cloud, data, and IT context to remediate risk.","description":"Surf AI connects context from identity systems, cloud accounts, data stores, and IT tooling, then uses agents to act on the risks it finds rather than only reporting them. Security operations teams use it to close issues that would otherwise sit in queues. The company was founded in 2024.","category":"ai-soc-secops","tags":[],"founded":"2024","funding":"$57M raised (Series A, 2026)","funding_stage":"series-a","url":"https://www.surf.ai","docs_url":"","linkedin":"","bh_tier":"Gold","bh_booth":"4711","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"surface-security","name":"Surface Security","slug":"surface-security","logo":"","brief_summary":"Managed security for browser extensions and in-browser AI use, without replacing the browser.","description":"Surface Security governs what runs inside employees' existing browsers, vetting extensions and giving visibility into AI tool usage at the browser layer. It offers an alternative to enterprise browser replacements for teams that want control without migration. The company was founded in 2026.","category":"endpoint-browser-mobile","tags":[],"founded":"2026","funding":"Funding undisclosed","funding_stage":"","url":"https://surface-security.com","docs_url":"","linkedin":"","bh_tier":"Startup City","bh_booth":"5716","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"sweet-security","name":"Sweet Security","slug":"sweet-security","logo":"","brief_summary":"Runtime security platform detecting and blocking malicious behavior in cloud workloads and AI systems.","description":"Sweet Security operates at runtime, watching what actually executes in cloud environments and stopping malicious activity as it happens rather than reporting it afterward. Coverage extends to AI workloads alongside traditional cloud infrastructure. The company targets security teams that want enforcement, not just alerts. Founded in 2023, it raised a $120M Series B.","category":"cloud-runtime-security","tags":[],"founded":"2023","funding":"$120M raised (Series B, 2025)","funding_stage":"series-b","url":"https://www.sweet.security","docs_url":"","linkedin":"","bh_tier":"Silver Plus","bh_booth":"5721","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"sygnia","name":"Sygnia","slug":"sygnia","logo":"","brief_summary":"Incident response and cybersecurity consulting firm handling major breaches for large enterprises.","description":"Sygnia is a services firm known for hands-on incident response in high-stakes breaches, alongside proactive work such as adversary simulations, threat hunting, and security architecture. Its consultants draw heavily on backgrounds in Israeli intelligence units. Large enterprises and Fortune 500 companies engage the firm both in crisis and to prepare for one.","category":"platforms-integrators","tags":[],"founded":"","funding":"","funding_stage":"","url":"https://www.sygnia.co","docs_url":"","linkedin":"","bh_tier":"Silver Plus","bh_booth":"5348","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"sysdig","name":"Sysdig","slug":"sysdig","logo":"","brief_summary":"Cloud native security platform built on runtime insight from the creators of Falco.","description":"Sysdig created the open source Falco runtime security project and builds its commercial cloud security platform on the same runtime signal. The product covers vulnerability prioritization, posture management, and real-time detection and response for containers and cloud, with agentic AI assisting analysis. The company was founded in 2013.","category":"cloud-runtime-security","tags":[],"founded":"2013","funding":"$730M raised (Series G, 2021)","funding_stage":"series-g","url":"https://sysdig.com","docs_url":"","linkedin":"","bh_tier":"Gold","bh_booth":"5141","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"t-mobile","name":"T-Mobile","slug":"t-mobile","logo":"","brief_summary":"US telecommunications carrier offering network connectivity plus security services for business customers.","description":"T-Mobile operates one of the largest wireless networks in the United States. For business customers it packages connectivity with security capabilities, including network-level protections and managed offerings that build on its 5G infrastructure. Enterprises evaluating carrier-integrated security use it as an alternative to assembling equivalent controls themselves.","category":"platforms-integrators","tags":[],"founded":"","funding":"","funding_stage":"","url":"https://www.t-mobile.com","docs_url":"","linkedin":"","bh_tier":"Silver Plus","bh_booth":"3167","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"tailscale","name":"Tailscale","slug":"tailscale","logo":"","brief_summary":"Mesh VPN building private networks between devices based on identity, replacing traditional VPN concentrators.","description":"Tailscale creates encrypted point-to-point WireGuard connections between a user's devices and servers, with access defined by identity rather than network location. Setup takes minutes and requires no central concentrator, which has driven adoption from homelabs to enterprises, including connectivity for AI and GPU workloads. Founded in 2019, it raised a Series C in 2025.","category":"network-zero-trust","tags":[],"founded":"2019","funding":"$276M raised (Series C, 2025)","funding_stage":"series-c","url":"https://tailscale.com","docs_url":"","linkedin":"","bh_tier":"Silver","bh_booth":"5408 / 7605","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"tanium","name":"Tanium","slug":"tanium","logo":"","brief_summary":"Endpoint management and security platform providing real-time visibility and control at scale.","description":"Tanium lets organizations query and control every endpoint in seconds, regardless of fleet size. The platform unifies asset inventory, patching, configuration, and incident response on a single agent and architecture, with growing autonomous remediation capabilities. Large enterprises and governments use it to converge IT operations and security.","category":"endpoint-browser-mobile","tags":[],"founded":"2007","funding":"$1B+ raised (late-stage private; ~$9B peak valuation)","funding_stage":"venture","url":"https://www.tanium.com","docs_url":"","linkedin":"","bh_tier":"Cyber District","bh_booth":"","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"teleport","name":"Teleport","slug":"teleport","logo":"","brief_summary":"Infrastructure access platform issuing short-lived cryptographic identities to engineers, services, and AI agents.","description":"Teleport replaces passwords, keys, and VPNs for infrastructure access with short-lived certificates tied to identity, covering SSH, Kubernetes, databases, and internal applications. The same model extends to machine workloads and AI agents, with session recording and audit built in. Founded in 2015, it is used by engineering organizations that need provable access control.","category":"identity-access","tags":[],"founded":"2015","funding":"$169M raised (Series C, 2022)","funding_stage":"series-c","url":"https://www.goteleport.com","docs_url":"","linkedin":"","bh_tier":"Silver Plus","bh_booth":"5114","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"tenable","name":"Tenable","slug":"tenable","logo":"","brief_summary":"Vulnerability and exposure management platform covering IT, cloud, identity, and operational technology assets.","description":"Tenable, the company behind the Nessus scanner, assesses vulnerabilities across IT infrastructure, cloud, identity systems, and operational technology. Its exposure management platform consolidates findings from all of these and ranks them by likely attack impact. Founded in 2002 and publicly traded, it is a staple of enterprise vulnerability management programs.","category":"exposure-management-ctem","tags":[],"founded":"2002","funding":"Public company","funding_stage":"public","url":"https://www.tenable.com","docs_url":"","linkedin":"","bh_tier":"Diamond","bh_booth":"2639","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"tenzai","name":"Tenzai","slug":"tenzai","logo":"","brief_summary":"AI agents that penetration test enterprise software, exploit findings, and guide fixes.","description":"Tenzai deploys AI agents that behave like penetration testers, probing enterprise software, exploiting what they find to prove impact, and generating remediation guidance. The model is continuous testing rather than annual engagements. The company was founded in 2025 and raised a large seed round the same year.","category":"pentesting-offensive-security","tags":[],"founded":"2025","funding":"$75M raised (Seed, 2025)","funding_stage":"seed","url":"https://www.tenzai.com","docs_url":"","linkedin":"","bh_tier":"Gold","bh_booth":"1561","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"terra-security","name":"Terra Security","slug":"terra-security","logo":"","brief_summary":"Continuous penetration testing performed by AI agent swarms under human supervision.","description":"Terra Security runs groups of AI agents that carry out offensive testing continuously, with human experts supervising the agents and validating their results. The aim is penetration test coverage that keeps pace with how quickly applications change. The company was founded in 2024.","category":"pentesting-offensive-security","tags":[],"founded":"2024","funding":"$38M raised (Non Equity Assistance, 2025)","funding_stage":"venture","url":"https://www.terra.security","docs_url":"","linkedin":"","bh_tier":"Gold","bh_booth":"4947","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"thales","name":"Thales","slug":"thales","logo":"","brief_summary":"French technology group providing data encryption, hardware security modules, key management, and application security.","description":"Thales is a global aerospace and defense group whose cybersecurity division supplies much of the world's cryptographic infrastructure: hardware security modules, encryption and key management, and access management, plus application security from its Imperva acquisition. Enterprises and governments use it to protect data at rest, in transit, and in use. The group dates to 1893.","category":"pki-crypto-quantum","tags":[],"founded":"1893","funding":"Public company","funding_stage":"public","url":"https://cpl.thalesgroup.com","docs_url":"","linkedin":"","bh_tier":"Silver Plus","bh_booth":"5523","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"thinkst-canary","name":"Thinkst Canary","slug":"thinkst-canary","logo":"","brief_summary":"Deception devices and tokens that alert when attackers touch them, with very few false alarms.","description":"Thinkst Canary sells small hardware and virtual decoys that sit on a network imitating servers, plus free canary tokens embedded in files and credentials. When an attacker interacts with one, the defender gets a high-confidence alert, since legitimate users have no reason to touch them. The South African company is bootstrapped and profitable.","category":"threat-intel-dfir","tags":[],"founded":"2015","funding":"Bootstrapped ($20M ARR, no VC)","funding_stage":"bootstrapped","url":"https://canary.tools","docs_url":"","linkedin":"","bh_tier":"Silver Plus","bh_booth":"2767","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"threat-point","name":"Threat Point","slug":"threat-point","logo":"","brief_summary":"Early-stage Boston company building threat intelligence products for security teams.","description":"Threat Point is an early-stage company based in Boston working in threat intelligence. Public detail about the product remains limited. Its positioning places it among emerging vendors helping security teams collect and act on intelligence about adversaries and their infrastructure.","category":"threat-intel-dfir","tags":[],"founded":"","funding":"","funding_stage":"","url":"https://www.threatpoint.com","docs_url":"","linkedin":"","bh_tier":"AI Zone","bh_booth":"7905","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"threataware","name":"ThreatAware","slug":"threataware","logo":"","brief_summary":"Agentless platform inventorying every device and checking that security tools actually cover them.","description":"ThreatAware connects to the APIs of an organization's existing IT and security tools to build a live inventory of devices and users, then flags where controls are missing, broken, or misconfigured. It answers the basic hygiene question of whether every endpoint is actually protected. Founded in 2019, the UK company raised a Series A in 2026.","category":"exposure-management-ctem","tags":[],"founded":"2019","funding":"$25M raised (Series A, 2026)","funding_stage":"series-a","url":"https://threataware.com","docs_url":"","linkedin":"","bh_tier":"Silver Plus","bh_booth":"5511","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"threatbreaker","name":"ThreatBreaker","slug":"threatbreaker","logo":"","brief_summary":"Automated endpoint forensics that reconstructs attack timelines for MSSP investigations.","description":"ThreatBreaker automates the forensic work that follows an endpoint alert. Its platform collects artifacts and rebuilds the timeline of an intrusion, showing what happened and in what order. It is built for MSSPs and incident responders who need investigation depth without doing manual forensics on every case.","category":"threat-intel-dfir","tags":[],"founded":"","funding":"Pre-seed ($100K angel; MACH37 accelerator)","funding_stage":"pre-seed","url":"https://www.threatbreaker.com","docs_url":"","linkedin":"","bh_tier":"Launch Pad","bh_booth":"6001","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"threatlocker","name":"ThreatLocker","slug":"threatlocker","logo":"","brief_summary":"Endpoint security platform using allowlisting and default-deny policy to block unapproved software and lateral movement.","description":"ThreatLocker takes a default-deny approach to endpoints: only approved applications run, and network and storage access follow explicit policy. That containment model limits ransomware and lateral movement even when credentials are stolen. Founded in 2017, it is popular with MSPs and IT teams that want strict control over what executes on their machines.","category":"endpoint-browser-mobile","tags":[],"founded":"2017","funding":"$489M raised (Series F, 2026)","funding_stage":"series-f","url":"https://www.threatlocker.com","docs_url":"","linkedin":"","bh_tier":"Titanium","bh_booth":"3333","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"tidal-cyber","name":"Tidal Cyber","slug":"tidal-cyber","logo":"","brief_summary":"Platform that tests an organization's defensive stack against the specific behaviors of relevant adversaries.","description":"Tidal Cyber operationalizes threat-informed defense, mapping the techniques of adversaries that target your sector against the coverage your security tools actually provide, and showing the gaps. Detection engineering and threat teams use it to prioritize by real adversary behavior. Founded in 2022 by MITRE ATT&CK veterans, it raised a Series A in 2025.","category":"threat-intel-dfir","tags":[],"founded":"2022","funding":"$24M raised (Series A, 2025)","funding_stage":"series-a","url":"https://www.tidalcyber.com","docs_url":"","linkedin":"","bh_tier":"Startup City","bh_booth":"5910","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"tierpoint","name":"TierPoint","slug":"tierpoint","logo":"","brief_summary":"US data center operator providing colocation, hybrid cloud, disaster recovery, and managed security services.","description":"TierPoint runs a network of US data centers and layers managed services on top, including private and hybrid cloud, backup, disaster recovery, and security operations. It serves mid-market and enterprise IT teams that want regional facilities with managed resilience rather than pure hyperscale cloud.","category":"platforms-integrators","tags":[],"founded":"","funding":"","funding_stage":"","url":"https://www.tierpoint.com","docs_url":"","linkedin":"","bh_tier":"Exhibitor","bh_booth":"3370","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"tines","name":"Tines","slug":"tines","logo":"","brief_summary":"No-code workflow automation platform for security teams, with AI agents inside governed workflows.","description":"Tines lets security and IT teams build automation workflows without code, connecting any tool that has an API, and now runs AI agents inside those workflows with guardrails and audit. Its founders built it out of their own experience running security teams. Founded in 2018 in Dublin.","category":"ai-soc-secops","tags":[],"founded":"2018","funding":"$271M raised (Series C, 2025)","funding_stage":"series-c","url":"https://www.tines.com","docs_url":"","linkedin":"","bh_tier":"Platinum","bh_booth":"1757","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"tonic-security","name":"Tonic Security","slug":"tonic-security","logo":"","brief_summary":"Agentic platform that turns fragmented exposure signals into verified, completed remediation.","description":"Tonic connects the scattered findings from scanners and security tools, uses AI to work out what matters, and drives fixes through to verified completion rather than stopping at a ticket. It targets exposure management teams measured on risk actually removed. Founded in 2024, it raised a $7M seed in 2025.","category":"exposure-management-ctem","tags":[],"founded":"2024","funding":"$7M raised (Seed, 2025)","funding_stage":"seed","url":"https://www.tonicsecurity.com","docs_url":"","linkedin":"","bh_tier":"Startup City","bh_booth":"6211","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"torq","name":"Torq","slug":"torq","logo":"","brief_summary":"Security automation platform applying agentic AI to SOC triage, investigation, and response.","description":"Torq's HyperSOC applies agentic automation to security operations, handling alert triage, enrichment, investigation, and response across a customer's existing tools. It positions itself as the automation layer for enterprise SOCs moving off legacy SOAR products, with workflows that non-developers can build and maintain. Founded in 2020.","category":"ai-soc-secops","tags":[],"founded":"2020","funding":"$330M raised (Series D, 2026)","funding_stage":"series-d","url":"https://torq.io","docs_url":"","linkedin":"","bh_tier":"Platinum","bh_booth":"4935","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"tracebit","name":"Tracebit","slug":"tracebit","logo":"","brief_summary":"Deception platform planting decoy resources in cloud environments to catch intruders.","description":"Tracebit deploys canary resources such as fake credentials, buckets, and infrastructure across cloud environments; any interaction with them is a high-confidence intrusion signal with near-zero false positives. Security teams use it as a detection layer that requires little tuning. Founded in 2023, it raised a $25M Series A in 2026.","category":"threat-intel-dfir","tags":[],"founded":"2023","funding":"$25M raised (Series A, 2026)","funding_stage":"series-a","url":"https://tracebit.com","docs_url":"","linkedin":"","bh_tier":"Startup City","bh_booth":"5911","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"trendai","name":"TrendAI","slug":"trendai","logo":"","brief_summary":"Trend Micro unit providing visibility into enterprise AI usage and protection for AI systems.","description":"TrendAI is Trend Micro's enterprise AI security arm, giving organizations visibility into how AI is used and protection for AI applications and infrastructure. It draws on the parent company's existing detection technology and threat research. Formed in 2026, it addresses enterprises formalizing AI security programs.","category":"ai-model-security-red-team","tags":[],"founded":"2026","funding":"Trend Micro enterprise unit (Public, TYO: 4704)","funding_stage":"public","url":"https://www.trendaisecurity.com","docs_url":"","linkedin":"","bh_tier":"Diamond","bh_booth":"3439","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"trinity-cyber","name":"Trinity Cyber","slug":"trinity-cyber","logo":"","brief_summary":"Network security service inspecting full traffic content and removing threats inline at line speed.","description":"Trinity Cyber operates inline on live network traffic, parsing full session content and surgically removing exploits and malware in transit, invisibly to users, rather than blocking connections after the fact. The technique targets threats that evade signature and flow-based tools. Founded in 2016, it serves enterprises and government customers.","category":"network-zero-trust","tags":[],"founded":"2016","funding":"$49M raised (Debt Financing, 2022)","funding_stage":"venture","url":"https://www.trinitycyber.com","docs_url":"","linkedin":"","bh_tier":"Silver","bh_booth":"5935","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"trojai","name":"TrojAI","slug":"trojai","logo":"","brief_summary":"AI security platform protecting models and applications during development and at runtime, part of A10 Networks.","description":"TrojAI secures machine learning systems on two fronts: testing models for vulnerabilities like poisoning and adversarial weakness before deployment, and defending models, applications, and agents against attacks such as prompt injection at runtime. Founded in 2019 in Canada, it was acquired by A10 Networks to anchor its AI security portfolio.","category":"ai-model-security-red-team","tags":[],"founded":"2019","funding":"$9M raised (2024)","funding_stage":"venture","url":"https://www.troj.ai","docs_url":"","linkedin":"","bh_tier":"Silver","bh_booth":"5548","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"truffle-security-co","name":"Truffle Security Co.","slug":"truffle-security-co","logo":"","brief_summary":"Maker of TruffleHog, the open source tool for finding and verifying leaked secrets in code.","description":"Truffle Security develops TruffleHog, the widely adopted open source scanner that finds API keys, passwords, and other credentials leaked into repositories, CI logs, and cloud storage, and verifies whether they are still live. Its commercial platform adds enterprise-wide scanning, remediation workflows, and analysis of where exposed secrets can lead. Founded in 2019.","category":"supply-chain-secrets","tags":[],"founded":"2019","funding":"$40M raised (Series B, 2025)","funding_stage":"series-b","url":"https://www.trufflesecurity.com","docs_url":"","linkedin":"","bh_tier":"Silver Plus","bh_booth":"5727","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"trustmi","name":"Trustmi","slug":"trustmi","logo":"","brief_summary":"Payment fraud prevention platform using behavioral AI to catch manipulated transactions before funds leave.","description":"Trustmi analyzes the full business payment process, including vendor details, invoices, and human behavior, to detect social engineering, business email compromise, and insider manipulation before a payment executes. It gives finance and security teams a shared control point over outbound funds. Founded in 2021, it raised a $21M Series A.","category":"social-engineering-human-risk","tags":[],"founded":"2021","funding":"$21M raised (Series A, 2023)","funding_stage":"series-a","url":"https://www.trustmi.ai","docs_url":"","linkedin":"","bh_tier":"Silver","bh_booth":"5839","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"turbot","name":"Turbot","slug":"turbot","logo":"","brief_summary":"Cloud governance platform enforcing guardrails that prevent misconfigurations across cloud accounts.","description":"Turbot enforces policy as guardrails across cloud environments, automatically correcting or preventing insecure configurations rather than reporting them for later cleanup. The company also maintains popular open source tools including Steampipe for querying cloud infrastructure with SQL. Founded in 2014 and fully self-funded, it serves large regulated enterprises.","category":"cloud-runtime-security","tags":[],"founded":"2014","funding":"Bootstrapped (100% self-funded)","funding_stage":"bootstrapped","url":"https://turbot.com","docs_url":"","linkedin":"","bh_tier":"Silver","bh_booth":"5742","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"tuxcare","name":"TuxCare","slug":"tuxcare","logo":"","brief_summary":"Live kernel patching and extended support keeping Linux and open source software secure without reboots.","description":"TuxCare applies security patches to running Linux kernels and critical libraries without reboots or maintenance windows, and provides extended lifecycle support for end-of-life distributions and language runtimes still in production. It serves organizations that cannot take systems down or migrate on vendor timelines. TuxCare is a brand of CloudLinux.","category":"supply-chain-secrets","tags":[],"founded":"2009","funding":"CloudLinux brand; self-funded","funding_stage":"","url":"https://www.tuxcare.com","docs_url":"","linkedin":"","bh_tier":"Silver","bh_booth":"6023","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"txone-networks","name":"TXOne Networks","slug":"txone-networks","logo":"","brief_summary":"OT security vendor protecting industrial control systems without interrupting production.","description":"TXOne Networks builds security for operational technology environments: network defense appliances, endpoint protection for industrial machines, and portable inspection devices for air-gapped assets. Its products are engineered around the constraint that factories and utilities cannot tolerate downtime. Founded in 2019 as a Trend Micro and Moxa joint venture, it raised a $145M Series B.","category":"ot-cyber-physical","tags":[],"founded":"2019","funding":"$145M raised (Series B, 2024)","funding_stage":"series-b","url":"https://www.txone.com","docs_url":"","linkedin":"","bh_tier":"Silver","bh_booth":"5541","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"unixi","name":"Unixi","slug":"unixi","logo":"","brief_summary":"Identity security platform that brings unmanaged SaaS applications under existing identity provider control.","description":"Unixi connects enterprise applications that lack native SSO or SCIM support to the company's identity provider, so access policies and lifecycle management apply everywhere. It targets identity and IT teams that want one control point for every app, including the long tail that normally escapes governance. The company was founded in 2023.","category":"identity-access","tags":[],"founded":"2023","funding":"$6.5M raised (Seed)","funding_stage":"seed","url":"https://unixi.io","docs_url":"","linkedin":"","bh_tier":"Silver","bh_booth":"5921","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"upguard","name":"UpGuard","slug":"upguard","logo":"","brief_summary":"Platform for monitoring security posture across an organization's own assets, employees, and third-party vendors.","description":"UpGuard continuously rates and monitors cyber risk in three areas: the organization's external attack surface, its workforce, and its supplier base. Security and vendor risk teams use it to run third-party assessments, detect leaked credentials and exposures, and track posture over time. Founded in 2012, the company has raised over $120M.","category":"grc-tprm","tags":[],"founded":"2012","funding":"$122M raised (Series C, 2026)","funding_stage":"series-c","url":"https://www.upguard.com","docs_url":"","linkedin":"","bh_tier":"Silver","bh_booth":"5933","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"upstream-security","name":"Upstream Security","slug":"upstream-security","logo":"","brief_summary":"Behavioral detection and XDR platform profiling connected assets, APIs, and AI agents.","description":"Upstream Security built its platform detecting anomalies across connected vehicles and mobility APIs, and now applies the same behavior-based approach to AI agents and other machine assets. It profiles how each agent, asset, and API normally behaves and flags deviations. Customers span automotive and enterprise environments.","category":"agent-security-governance","tags":[],"founded":"2017","funding":"$105M raised (Series C $62M, 2021, Mitsui Sumitomo)","funding_stage":"series-c","url":"https://upstream.auto","docs_url":"","linkedin":"","bh_tier":"AI Zone","bh_booth":"5208","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"upwind","name":"Upwind","slug":"upwind","logo":"","brief_summary":"Cloud security platform using runtime data to prioritize and respond to real risk.","description":"Upwind is a cloud native application protection platform that leans on runtime telemetry, correlating what is actually running and exposed with code and posture findings so teams fix what matters first. It includes real-time detection and response for cloud workloads. The company was founded in 2022 by the founders of Spot.io.","category":"cloud-runtime-security","tags":[],"founded":"2022","funding":"$430M raised (Series B, 2026)","funding_stage":"series-b","url":"https://www.upwind.io","docs_url":"","linkedin":"","bh_tier":"Gold","bh_booth":"1764","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"validin","name":"Validin","slug":"validin","logo":"","brief_summary":"DNS and internet infrastructure intelligence built from daily scans of the public internet.","description":"Validin maps the internet's infrastructure every day, collecting DNS records, host responses, and related data at global scale. Investigators use its lookups and pivots to connect domains, IPs, and certificates when tracking threat actor infrastructure. The company is bootstrapped and founder-owned, selling access through an API and web platform.","category":"threat-intel-dfir","tags":[],"founded":"2021","funding":"Bootstrapped (founder-owned, independent)","funding_stage":"bootstrapped","url":"https://www.validin.com","docs_url":"","linkedin":"","bh_tier":"Launch Pad","bh_booth":"6200","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"vanishid","name":"VanishID","slug":"vanishid","logo":"","brief_summary":"Service that continuously removes employees' and executives' personal data from the public internet.","description":"VanishID, formerly Picnic, scrubs the digital footprints of executives and staff, using agentic automation to find and remove the personal information attackers use for social engineering and physical targeting. Enterprises buy it to shrink the human attack surface. The company raised $10M in a round led by Dell Technologies Capital.","category":"privacy-exec-protection","tags":[],"founded":"","funding":"$10M raised (2025, led by Dell Technologies Capital; fka Picnic)","funding_stage":"venture","url":"https://vanishid.com","docs_url":"","linkedin":"","bh_tier":"Startup City","bh_booth":"5813","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"vanta","name":"Vanta","slug":"vanta","logo":"","brief_summary":"Compliance automation and trust management covering SOC 2, ISO 27001, and other frameworks.","description":"Vanta automates evidence collection and continuous control monitoring for frameworks such as SOC 2, ISO 27001, HIPAA, and GDPR, and adds questionnaire automation and trust centers for sharing security posture with customers. AI agents now handle parts of the compliance workflow. Founded in 2016, it reports more than 16,000 customers.","category":"grc-tprm","tags":[],"founded":"2016","funding":"$506M raised (Series D, 2025)","funding_stage":"series-d","url":"https://www.vanta.com","docs_url":"","linkedin":"","bh_tier":"Gold","bh_booth":"5326","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"varonis","name":"Varonis","slug":"varonis","logo":"","brief_summary":"Data security platform mapping and monitoring access to sensitive data across files, SaaS, and cloud.","description":"Varonis discovers sensitive data, maps who can access it, and monitors how it is actually used across file shares, Microsoft 365, SaaS, and cloud stores. It can automatically strip excessive permissions rather than just reporting them. Founded in 2005 and publicly traded, it is increasingly used to govern what data AI assistants can reach.","category":"data-security-dlp","tags":[],"founded":"2005","funding":"Public company","funding_stage":"public","url":"https://www.varonis.com","docs_url":"","linkedin":"","bh_tier":"Platinum Plus","bh_booth":"2948","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"vectra-ai","name":"Vectra AI","slug":"vectra-ai","logo":"","brief_summary":"Network detection and response platform spotting attacker behavior across hybrid, cloud, and identity environments.","description":"Vectra AI analyzes network and identity signals to surface attacker behaviors such as privilege abuse and lateral movement across data centers, cloud, and SaaS. Its detections concentrate on post-compromise activity that endpoint tools tend to miss. Founded in 2011, it is used mostly by enterprise SOC teams.","category":"ai-soc-secops","tags":[],"founded":"2011","funding":"$353M raised (Series F, 2021)","funding_stage":"series-f","url":"https://www.vectra.ai","docs_url":"","linkedin":"","bh_tier":"Diamond","bh_booth":"4534","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"veeam-software","name":"Veeam Software","slug":"veeam-software","logo":"","brief_summary":"Backup and recovery vendor whose platform underpins ransomware resilience for enterprise data.","description":"Veeam is one of the largest vendors in data backup and recovery, protecting workloads across virtual machines, clouds, SaaS applications, and Kubernetes. Its platform has expanded from pure backup into resilience against ransomware, with immutable storage, clean-recovery verification, and data security posture features. Founded in 2006, it serves hundreds of thousands of customers.","category":"resilience-ransomware","tags":[],"founded":"2006","funding":"$2.5B raised (Corporate Round, 2025)","funding_stage":"venture","url":"https://www.veeam.com","docs_url":"","linkedin":"","bh_tier":"Silver Plus","bh_booth":"4911","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"vega-security","name":"Vega Security","slug":"vega-security","logo":"","brief_summary":"Federated security analytics platform querying data where it lives instead of centralizing it in a SIEM.","description":"Vega runs queries and detections directly against the SIEMs, data lakes, and log stores an organization already operates, avoiding the cost and duplication of moving everything into one platform. Coverage stays broad while ingest bills shrink. Founded in 2023, it targets large SOCs whose security data is scattered across systems.","category":"ai-soc-secops","tags":[],"founded":"2023","funding":"$185M raised (Series B, 2025)","funding_stage":"series-b","url":"https://vega.io","docs_url":"","linkedin":"","bh_tier":"Platinum Plus","bh_booth":"3452","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"venice","name":"Venice","slug":"venice","logo":"","brief_summary":"Agentless privileged access management with adaptive policies for human and machine identities.","description":"Venice provides privileged access management in which policies adjust to live context rather than static role assignments, covering human accounts alongside machine and service identities. Deployment is agentless, which shortens rollout in existing environments. The company was founded in 2024.","category":"identity-access","tags":[],"founded":"2024","funding":"$25M raised (Series A, 2025)","funding_stage":"series-a","url":"https://www.venice.io","docs_url":"","linkedin":"","bh_tier":"Gold","bh_booth":"2364","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"veracode","name":"Veracode","slug":"veracode","logo":"","brief_summary":"Application security platform providing static, dynamic, and software composition analysis with AI-assisted fixes.","description":"Veracode delivers static, dynamic, and software composition analysis as a service, with AI-assisted remediation that proposes fixes for findings. Nearly two decades of accumulated scan data inform its policies and benchmarking. Founded in 2006, it fits enterprises running formal application security programs across many development teams.","category":"appsec-code-security","tags":[],"founded":"2006","funding":"$114M raised (Secondary Market, 2014)","funding_stage":"venture","url":"https://www.veracode.com","docs_url":"","linkedin":"","bh_tier":"Platinum","bh_booth":"4927","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"verax-ai","name":"Verax AI","slug":"verax-ai","logo":"","brief_summary":"Monitors and secures employee AI usage across interfaces, models, and integrations.","description":"Verax AI gives enterprises oversight of how AI is actually used inside the organization. It observes activity across chat interfaces, embedded models, and integrations, surfacing risky behavior, data exposure, and reliability problems in production AI systems. Security and AI teams use it to control usage without banning the tools.","category":"agent-security-governance","tags":[],"founded":"2023","funding":"$7.6M raised (Seed, 2024, TQ Ventures)","funding_stage":"seed","url":"https://www.verax.ai","docs_url":"","linkedin":"","bh_tier":"AI Zone","bh_booth":"8208","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"veria-labs","name":"Veria Labs","slug":"veria-labs","logo":"","brief_summary":"AI penetration testing agents built by veterans of a top-ranked US hacking team.","description":"Veria Labs automates offensive security with AI agents developed by members of a top-ranked US competitive hacking team. The agents probe applications and infrastructure the way skilled human testers would, with the goal of making pentest coverage continuous. Founded in 2025, the company is backed by Y Combinator.","category":"pentesting-offensive-security","tags":[],"founded":"2025","funding":"$3.2M raised (Seed, YC-backed)","funding_stage":"seed","url":"https://verialabs.com","docs_url":"","linkedin":"","bh_tier":"AI Zone","bh_booth":"8408","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"verno-labs","name":"Verno Labs","slug":"verno-labs","logo":"","brief_summary":"Offensive LLMs that red team AI agents across a large library of attack classes.","description":"Verno Labs, formerly Pallma AI, builds custom offensive language models for testing AI agents. Its attack suite spans more than 150 original attack classes, probing how agents fail under adversarial pressure. Founded in 2025, it serves teams that need deeper agent red teaming than prompt-injection checklists provide.","category":"ai-model-security-red-team","tags":[],"founded":"2025","funding":"$1.6M raised (Pre-Seed, 2026); formerly Pallma AI","funding_stage":"pre-seed","url":"https://vernolabs.ai","docs_url":"","linkedin":"","bh_tier":"Launch Pad","bh_booth":"6103","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"vetric","name":"Vetric","slug":"vetric","logo":"","brief_summary":"APIs delivering real-time data collection from social and web platforms for trust and safety teams.","description":"Vetric provides collection pipelines that pull live data from social networks and other web platforms, feeding trust and safety, fraud, and OSINT investigations. Teams use its APIs instead of building and maintaining scrapers themselves. Founded in 2022, the company is bootstrapped.","category":"threat-intel-dfir","tags":[],"founded":"2022","funding":"Bootstrapped (no outside funding)","funding_stage":"bootstrapped","url":"https://vetric.io","docs_url":"","linkedin":"","bh_tier":"Startup City","bh_booth":"6112","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"viavi-solutions","name":"VIAVI Solutions","slug":"viavi-solutions","logo":"","brief_summary":"Network test and measurement company providing packet-level capture and forensics for security investigations.","description":"VIAVI Solutions builds network test, monitoring, and assurance products used by carriers and enterprises. Its security-relevant line captures and retains full network traffic, giving incident responders packet-level evidence to reconstruct exactly what happened during an intrusion. The company's roots in network instrumentation date back over a century.","category":"network-zero-trust","tags":[],"founded":"1923","funding":"Public company","funding_stage":"public","url":"https://www.viavisolutions.com","docs_url":"","linkedin":"","bh_tier":"Silver Plus","bh_booth":"5733","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"violetx","name":"VioletX","slug":"violetx","logo":"","brief_summary":"Agentic platform that executes security, compliance, and risk work with verifiable results.","description":"VioletX uses AI agents to carry out security and compliance work rather than just track it. The platform takes on tasks across security operations, compliance programs, and risk management, tying each to evidence of completion. It suits companies that want outcomes from their GRC tooling, not dashboards.","category":"grc-tprm","tags":[],"founded":"2020","funding":"No disclosed funding (likely bootstrapped)","funding_stage":"bootstrapped","url":"https://violetx.com","docs_url":"","linkedin":"","bh_tier":"AI Zone","bh_booth":"5309","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"virtru-corporation","name":"Virtru Corporation","slug":"virtru-corporation","logo":"","brief_summary":"Encryption products that keep data protected and under the owner's control after it is shared.","description":"Virtru applies data-centric encryption to email, files, and SaaS workflows, so senders retain the ability to revoke, expire, or audit access after information leaves their environment. Built around the open Trusted Data Format, it serves organizations sharing sensitive data externally, including government. Founded in 2012, it has raised roughly $190M.","category":"data-security-dlp","tags":[],"founded":"2012","funding":"$190M raised (Series D, 2025)","funding_stage":"series-d","url":"https://www.virtru.com","docs_url":"","linkedin":"","bh_tier":"Exhibitor","bh_booth":"3470","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"vmray-inc","name":"VMRay Inc","slug":"vmray-inc","logo":"","brief_summary":"Malware sandbox using hypervisor-based monitoring that advanced samples cannot easily detect or evade.","description":"VMRay provides dynamic analysis for suspicious files and URLs, observing behavior from the hypervisor layer so malware built to spot sandboxes still executes normally. SOC analysts, incident responders, and threat intel teams use it to triage phishing payloads and dissect advanced samples. The German company was founded in 2013 out of academic research on malware analysis.","category":"threat-intel-dfir","tags":[],"founded":"2013","funding":"$41M raised (Series B, 2022)","funding_stage":"series-b","url":"https://www.vmray.com","docs_url":"","linkedin":"","bh_tier":"Silver","bh_booth":"7506","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"votal-ai","name":"Votal AI","slug":"votal-ai","logo":"","brief_summary":"Runtime protection keeping LLM applications and multi-step agents safe and within policy.","description":"Votal AI monitors and guards AI systems in production, ensuring LLM apps and complex agents behave safely and stay aligned with organizational policy while they run. It targets teams operating agentic systems whose behavior cannot be fully verified before deployment. Founded in 2024, it raised a pre-seed round.","category":"ai-model-security-red-team","tags":[],"founded":"2024","funding":"$2M raised (Pre Seed, 2024)","funding_stage":"seed","url":"https://www.votal.ai","docs_url":"","linkedin":"","bh_tier":"Startup City","bh_booth":"5703","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"vulncheck","name":"VulnCheck","slug":"vulncheck","logo":"","brief_summary":"Vulnerability and exploit intelligence service focused on flaws attackers are actually using.","description":"VulnCheck aggregates data on vulnerabilities, exploit code, and attacker infrastructure, telling security teams which CVEs are weaponized rather than merely published. Its APIs and feeds support prioritization, threat hunting, and product integrations. Founded in 2021, it serves vulnerability management teams that need to cut through CVE volume.","category":"threat-intel-dfir","tags":[],"founded":"2021","funding":"$45M raised (Series B, 2026)","funding_stage":"series-b","url":"https://vulncheck.com","docs_url":"","linkedin":"","bh_tier":"Silver","bh_booth":"5920","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"vyper-security","name":"Vyper Security","slug":"vyper-security","logo":"","brief_summary":"Israeli security startup in stealth, working in the AI agent security space.","description":"Vyper Security is an early-stage Israeli company founded in 2024, working in stealth on technology in the AI agent security space. Details of its product have not been disclosed.","category":"agent-security-governance","tags":[],"founded":"2024","funding":"Stealth; pre-funding / undisclosed","funding_stage":"","url":"https://vyper.security","docs_url":"","linkedin":"","bh_tier":"Startup City","bh_booth":"6214","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"whylabs","name":"WhyLabs","slug":"whylabs","logo":"","brief_summary":"Seattle AI observability and security platform for monitoring model quality, drift, and unsafe behavior in production.","description":"WhyLabs is a US company based in Seattle. Its platform watches production models and LLM applications for quality, drift, and security-relevant failures. Buyers are ML and security teams that need runtime visibility after a model ships. This listing describes the public product. It is not a certification claim.","category":"ai-model-security-red-team","tags":[],"founded":"2019","funding":"","funding_stage":"venture","url":"https://whylabs.ai","docs_url":"","linkedin":"https://www.linkedin.com/company/whylabs","bh_tier":"","bh_booth":"","publish_after":null,"date_added":"2026-08-13","source":"us-intake-2026-08-13"},{"id":"wider-security","name":"Wider Security","slug":"wider-security","logo":"","brief_summary":"Veteran-owned engineering firm delivering cybersecurity services for government and commercial clients.","description":"Wider Security is a veteran-owned firm providing cybersecurity engineering services. It works with government agencies and commercial organizations on securing their systems, networks, and infrastructure. As a services company, its offering centers on hands-on engineering expertise rather than a software product.","category":"platforms-integrators","tags":[],"founded":"","funding":"","funding_stage":"","url":"https://www.widersecurity.com","docs_url":"","linkedin":"","bh_tier":"AI Zone","bh_booth":"5406","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"willow","name":"Willow","slug":"willow","logo":"","brief_summary":"Access management control plane built for AI agents and other non-human workers.","description":"Willow provides a single layer through which autonomous AI workers get access to enterprise systems, replacing shared credentials and ad hoc grants with centrally managed, auditable permissions. It targets companies scaling agent workforces beyond what human-centric IAM can govern. Founded in 2025, it raised a seed round from Hetz Ventures.","category":"agent-security-governance","tags":[],"founded":"2025","funding":"$7M raised (Seed, 2026, Hetz Ventures)","funding_stage":"seed","url":"https://withwillow.ai","docs_url":"","linkedin":"","bh_tier":"Startup City","bh_booth":"5905","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"wirespeed","name":"Wirespeed","slug":"wirespeed","logo":"","brief_summary":"Automated detection and response platform built to contain threats within seconds of detection.","description":"Wirespeed automates the triage and containment work of a SOC, verifying alerts and isolating compromised users or endpoints in machine time instead of analyst time. It is designed for MSPs and lean teams that cannot staff around-the-clock response. Founded in 2024, the company was acquired by cyber insurer Coalition in 2025.","category":"ai-soc-secops","tags":[],"founded":"2024","funding":"Acquired by Coalition (2025)","funding_stage":"acquired","url":"https://wirespeed.co","docs_url":"","linkedin":"","bh_tier":"Silver Plus","bh_booth":"4700","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"witnessai","name":"WitnessAI","slug":"witnessai","logo":"","brief_summary":"Platform that observes and controls how employees and AI agents use AI tools across the network.","description":"WitnessAI sits in the network path to give enterprises visibility into AI usage, applying policy based on what a person or agent is trying to do rather than just which tool they reached. Security and governance teams use it to enable AI adoption while blocking risky prompts and data flows. Founded in 2023, it has raised over $85M.","category":"agent-security-governance","tags":[],"founded":"2023","funding":"$85M+ raised ($58M strategic, 2026, Sound Ventures)","funding_stage":"venture","url":"https://witness.ai","docs_url":"","linkedin":"","bh_tier":"Silver","bh_booth":"5838","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"wiz","name":"Wiz","slug":"wiz","logo":"","brief_summary":"Cloud native application protection platform mapping cloud risk from code through runtime.","description":"Wiz connects to cloud environments without agents and builds a graph of resources, vulnerabilities, identities, and exposure paths, prioritizing the combinations that create real risk. Its CNAPP spans posture, workload protection, and code-to-cloud context. Founded in 2020, it grew unusually fast and agreed to be acquired by Google.","category":"cloud-runtime-security","tags":[],"founded":"2020","funding":"$2B raised (Venture Round, 2024)","funding_stage":"venture","url":"https://www.wiz.io","docs_url":"","linkedin":"","bh_tier":"Platinum Plus","bh_booth":"2148","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"wolfssl","name":"wolfSSL","slug":"wolfssl","logo":"","brief_summary":"Lightweight TLS and cryptography libraries for embedded systems, with FIPS 140-3 validation.","description":"wolfSSL builds compact SSL/TLS and crypto libraries designed for embedded devices, IoT, automotive, and aerospace environments where footprint and certification matter. Its FIPS 140-3 validated modules let vendors ship into regulated markets. Founded in 2004 and bootstrapped, the company's code secures billions of connections.","category":"pki-crypto-quantum","tags":[],"founded":"2004","funding":"Bootstrapped (founded 2004)","funding_stage":"bootstrapped","url":"https://www.wolfssl.com","docs_url":"","linkedin":"","bh_tier":"Silver","bh_booth":"5538","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"xage-security","name":"Xage Security","slug":"xage-security","logo":"","brief_summary":"Privileged access and identity protection platform spanning OT, IT, and cloud environments.","description":"Xage secures privileged access across industrial and enterprise systems with a distributed, mesh-based architecture that keeps working even when sites lose connectivity. Operators of critical infrastructure use it to enforce MFA and zero trust access on assets that were never designed for it. The company was founded in 2017.","category":"identity-access","tags":[],"founded":"2017","funding":"$96M raised (Venture Round, 2026)","funding_stage":"venture","url":"https://xage.com","docs_url":"","linkedin":"","bh_tier":"Exhibitor","bh_booth":"7806","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"xbow","name":"XBOW","slug":"xbow","logo":"","brief_summary":"Autonomous AI system performing penetration tests and discovering exploitable vulnerabilities at machine pace.","description":"XBOW builds an AI system that conducts penetration tests on its own, chaining reconnaissance and exploitation the way skilled human testers do but at machine speed. Its findings have placed it at the top of public bug bounty leaderboards. For organizations that want offensive testing far more often than consultant schedules allow.","category":"pentesting-offensive-security","tags":[],"founded":"2024","funding":"$272M raised (Series C, 2026)","funding_stage":"series-c","url":"https://xbow.com","docs_url":"","linkedin":"","bh_tier":"Platinum Plus","bh_booth":"3448","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"xiid-corporation","name":"Xiid Corporation","slug":"xiid-corporation","logo":"","brief_summary":"Communications control plane that governs traffic between AI agents, APIs, and machines.","description":"Xiid provides a secure channel layer for machine-to-machine communication, mediating how AI agents, services, and APIs talk to each other without exposing inbound ports or credentials. It targets organizations wiring agents into production systems that need that traffic authenticated and governed. The company was founded in 2018.","category":"agent-security-governance","tags":[],"founded":"2018","funding":"Venture-funded (strategic round 2025, Ventura Capital; 8-figure total)","funding_stage":"venture","url":"https://www.xiid.com","docs_url":"","linkedin":"","bh_tier":"Exhibitor","bh_booth":"7505","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"xm-cyber","name":"XM Cyber","slug":"xm-cyber","logo":"","brief_summary":"Attack path management showing how attackers could reach critical assets in hybrid environments.","description":"XM Cyber continuously simulates attacker movement through on-premises and cloud environments, revealing how misconfigurations, credentials, and vulnerabilities chain together toward critical assets. It highlights choke points where one fix breaks many paths. The Israeli company was founded in 2016 and was acquired by Schwarz Group in 2021.","category":"exposure-management-ctem","tags":[],"founded":"2016","funding":"$49M raised (Series B, 2020)","funding_stage":"series-b","url":"https://xmcyber.com","docs_url":"","linkedin":"","bh_tier":"Gold","bh_booth":"5147","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"yubico","name":"Yubico","slug":"yubico","logo":"","brief_summary":"Maker of the YubiKey hardware security key for phishing-resistant multi-factor authentication.","description":"Yubico invented the YubiKey, the small hardware token that authenticates users with a touch and cannot be phished, since authentication is bound to the legitimate site. The company co-authored the FIDO2 and WebAuthn standards that underpin passkeys. Founded in 2007 and now publicly listed, it supplies enterprises, governments, and consumers.","category":"identity-access","tags":[],"founded":"2007","funding":"Public company","funding_stage":"public","url":"https://www.yubico.com","docs_url":"","linkedin":"","bh_tier":"Silver Plus","bh_booth":"5333","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"zafran-security","name":"Zafran Security","slug":"zafran-security","logo":"","brief_summary":"Exposure management platform using runtime signals and existing controls to cut vulnerability noise.","description":"Zafran cross-references vulnerability findings with what is actually running and which compensating controls are already in place, so teams stop patching flaws their environment already neutralizes. The platform deduplicates findings across scanners and can trigger mitigations through existing security tools. Founded in 2022, it raised $130M by 2026.","category":"exposure-management-ctem","tags":[],"founded":"2022","funding":"$130M raised (Venture Round, 2026)","funding_stage":"venture","url":"https://www.zafran.io","docs_url":"","linkedin":"","bh_tier":"Silver Plus","bh_booth":"5520","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"zenity","name":"Zenity","slug":"zenity","logo":"","brief_summary":"Security and governance platform for AI agents and low-code automations across enterprise platforms.","description":"Zenity secures the agents and automations employees build on platforms like Microsoft Copilot Studio, Power Platform, and other low-code and AI tools. It inventories what exists, enforces policies on agent behavior, and pairs posture management with runtime protection. Founded in 2021, it addresses a risk surface most security teams cannot currently see.","category":"agent-security-governance","tags":[],"founded":"2021","funding":"$60M raised (Series B, 2024)","funding_stage":"series-b","url":"https://www.zenity.io","docs_url":"","linkedin":"","bh_tier":"Silver Plus","bh_booth":"5521","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"zerac","name":"Zerac","slug":"zerac","logo":"","brief_summary":"Zero-trust access platform with end-to-end encrypted connections directly to resources.","description":"Zerac provides zero-trust network access built on direct, end-to-end encrypted connections between users and the systems they need. Removing intermediary hops narrows what an attacker can intercept or pivot through. Founded in 2025, it targets organizations replacing VPNs and exposed remote access with per-resource connectivity.","category":"network-zero-trust","tags":[],"founded":"2025","funding":"Funding undisclosed","funding_stage":"","url":"https://www.zerac.com","docs_url":"","linkedin":"","bh_tier":"Launch Pad","bh_booth":"6300","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"zero-networks","name":"Zero Networks","slug":"zero-networks","logo":"","brief_summary":"Automated microsegmentation platform restricting network connections to contain ransomware and lateral movement.","description":"Zero Networks learns how systems communicate, then generates and enforces microsegmentation policy automatically, adding MFA in front of sensitive administrative protocols. The result is containment of ransomware and lateral movement without months of manual rule writing. Founded in 2019, it appeals to teams that found traditional segmentation projects too heavy to finish.","category":"network-zero-trust","tags":[],"founded":"2019","funding":"$100M raised (Series C, 2025)","funding_stage":"series-c","url":"https://zeronetworks.com","docs_url":"","linkedin":"","bh_tier":"Platinum Plus","bh_booth":"1852","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"zerofox","name":"ZeroFox","slug":"zerofox","logo":"","brief_summary":"External threat platform covering brand impersonation, malicious domains, dark web monitoring, and executive protection.","description":"ZeroFox monitors the public internet, social media, and dark web for threats that never touch the corporate network: impersonation accounts, phishing domains, leaked data, and threats against executives. Takedown services get offending content removed. Founded in 2013, it serves security teams responsible for risk outside the perimeter.","category":"threat-intel-dfir","tags":[],"founded":"2013","funding":"$324M raised (Post-IPO Equity, 2022)","funding_stage":"public","url":"https://www.zerofox.com","docs_url":"","linkedin":"","bh_tier":"Platinum Plus","bh_booth":"2452","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"zeropath","name":"ZeroPath","slug":"zeropath","logo":"","brief_summary":"AppSec platform that finds, verifies, and patches exploitable code vulnerabilities using AI.","description":"ZeroPath applies AI to the full vulnerability workflow: it scans code, confirms which findings are actually exploitable, and generates fixes as pull requests. That verification step cuts the false-positive triage that consumes teams using traditional SAST. Founded in 2024, it targets engineering organizations shipping fast with small security teams.","category":"appsec-code-security","tags":[],"founded":"2024","funding":"$10M raised (Seed, 2026)","funding_stage":"seed","url":"https://zeropath.com","docs_url":"","linkedin":"","bh_tier":"AI Zone","bh_booth":"7908","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"zest-security","name":"ZEST Security","slug":"zest-security","logo":"","brief_summary":"Cloud security platform that turns detected risks into concrete remediation plans.","description":"ZEST Security helps cloud and security teams close the gap between finding risks and fixing them. The platform analyzes cloud security findings, works out which are actually resolvable, and produces specific fix options such as code changes or compensating controls. It uses AI to match each issue to the fastest available path to resolution.","category":"cloud-runtime-security","tags":[],"founded":"2023","funding":"$5M raised (Seed, 2024)","funding_stage":"seed","url":"https://zestsecurity.io","docs_url":"","linkedin":"","bh_tier":"Startup City","bh_booth":"5914","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"zimperium","name":"Zimperium","slug":"zimperium","logo":"","brief_summary":"Mobile threat defense and in-app protection for iOS and Android devices and apps.","description":"Zimperium protects mobile devices against phishing, malicious networks, and operating system exploits using on-device detection, and offers app shielding for developers who need to harden their mobile applications. Enterprises and government agencies securing BYOD fleets and consumer-facing apps are typical customers. The company was founded in 2010.","category":"endpoint-browser-mobile","tags":[],"founded":"2010","funding":"$72M raised (2018)","funding_stage":"venture","url":"https://zimperium.com","docs_url":"","linkedin":"","bh_tier":"Gold","bh_booth":"2761","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"zscaler","name":"Zscaler","slug":"zscaler","logo":"","brief_summary":"Cloud-delivered zero trust platform connecting users, workloads, and devices directly to applications.","description":"Zscaler replaces VPNs and appliance stacks with its cloud-delivered Zero Trust Exchange, which inspects traffic and connects users, workloads, and devices directly to applications rather than to networks. That design limits lateral movement by default. Founded in 2008 and publicly traded, it is one of the largest SSE vendors.","category":"network-zero-trust","tags":[],"founded":"2008","funding":"Public company","funding_stage":"public","url":"https://www.zscaler.com","docs_url":"","linkedin":"","bh_tier":"Platinum","bh_booth":"2557","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"},{"id":"zywave","name":"Zywave","slug":"zywave","logo":"","brief_summary":"Insurance industry software whose cyber loss database underpins cyber risk quantification.","description":"Zywave sells software to insurers, brokers, and risk professionals, and maintains a database of hundreds of thousands of cyber loss events. Underwriters and risk teams use this data to model breach frequency and cost, putting dollar figures on cyber exposure. Founded in 1995, the company is owned by Clearlake Capital.","category":"grc-tprm","tags":[],"founded":"1995","funding":"PE-owned (Clearlake Capital, 2020)","funding_stage":"","url":"https://www.zywave.com","docs_url":"","linkedin":"","bh_tier":"Exhibitor","bh_booth":"6035","publish_after":null,"date_added":"2026-08-08","source":"bh2026-seed"}]}