01
An audience that decides
Read by SOC leads, CISOs, security architects, and M&A teams sourcing the next platform in their stack.
aiqueryaiquery is an endpoint visibility and security investigation platform built around a single conviction: that security and IT teams should be able to query any endpoint, at any depth, without needing to be experts in the underlying instrumentation layer. The company extends osquery — the open-source endpoint agent — with an AI-powered layer that removes the friction of writing and managing custom queries, automating what was previously a manual, specialist-driven task. The result is a platform that lets analysts ask questions in plain language and get back actionable telemetry from across the fleet.Read more…
AIStrikeAiStrike, founded in 2023 and headquartered in Dublin, California, builds AI-powered technology designed to enhance cloud security investigation, response, and detection engineering. The company focuses on reducing alert fatigue and accelerating incident mitigation through behavioral analytics, graph-based correlation, and machine learning-driven autonomous workflows. In January 2026, AiStrike received $7 million in seed funding led by Blumberg Capital with participation from Runtime Ventures and Oregon Venture Fund. The company has achieved SOC 2 Type II compliance, underscoring its commitment to security and confidentiality as it helps security teams shift from reactive alert triage to proactive threat identification.Read more…
AndesiteAndesite is a cybersecurity company founded in 2023 and headquartered in McLean, Virginia, building a bionic SOC for human and AI collaboration. The founding team spent decades defending the nation against sophisticated adversaries — serving in senior roles at the CIA, the military, the White House, and some of the most influential enterprises on the planet — and started Andesite to build security products that support and empower the analysts who protect others. Its mission is to elevate cybersecurity teams from the menial to the meaningful, making their work both more effective and more fulfilling.Read more…
AnvilogicUnified detection and triage platform for hybrid SIEM and data lake environments. Runs on Splunk, Sentinel, Snowflake, Databricks, and Azure Data Explorer without replatforming. Delivers detection-as-code, agentic AI workflows, and cross-stack correlation to modernize SOC operations while reducing costs by 80% compared to legacy SIEMs. SOC2 certified with deployments across Fortune 500 enterprises including eBay, T-Mobile, SAP, and Siemens.Read more…
Bonfy.aiBonfy.ai is a cybersecurity startup founded in early 2024 and headquartered in Mountain View, California. The company emerged publicly in June 2025 with a $9.5 million seed round led by TLV Partners with participation from Saban Capital Group. Its flagship product, Adaptive Content Security (ACS)™, delivers real-time protection for unstructured content across AI agents, email, SaaS applications, and collaboration tools including ChatGPT, Claude, Copilot, and custom AI workflows.Read more…
CroglCrogl, founded in 2023, is an AI security operations platform for the enterprise SOC. Founded by CEO Monzy Merza, former VP of Security GTM at Databricks and senior security leader at Splunk, and Chief Engineer Bradford Lovering, formerly Chief Architect at RelationalAI and Splunk. The company raised $30M: a $25M Series A led by Menlo Ventures and a $5M seed led by Tola Capital, both announced in March 2025.Read more…
D3 SecurityD3 Security is a Vancouver-based security automation company whose origins trace back to 2015, when founder Gordon Benoit built what the company describes as the first incident response automation solution. At RSA 2016 it demonstrated integrations with ArcSight, QRadar, and Splunk, establishing itself as a security automation pioneer before Gartner coined the term SOAR for the category it helped create. Over the following years D3 expanded to meet enterprise demand with NIST- and SANS-based playbook libraries, a codeless playbook editor, and MITRE ATT&CK and D3FEND-based content. In 2022 it introduced the Event Pipeline, an ingestion layer that deduplicates, enriches, and normalizes alerts to cut alert assignments by up to 99%, and in 2023 it combined that pipeline with drag-and-drop playbooks and vendor-maintained integrations to deliver Smart SOAR. Its latest platform, Morpheus, was built over 24 months by roughly 60 specialists and performs autonomous L2-depth Attack Path Discovery on every alert, generates response playbooks at runtime, and maintains self-healing integrations, triaging up to 95% of alerts in under two minutes. The platform ships with more than 800 app integrations, targets 100% alert coverage, and is trusted by enterprise and MSSP customers including Scotiabank, S&P Global, Cummins, Cybereason, and Microsoft. D3 holds SOC 2 Type II certification, is MITRE ATT&CK and D3FEND compatible, and is a member of the Microsoft Intelligent Security Association.Read more…
Daylight SecurityDaylight Security, founded in 2024 and headquartered in Tel Aviv, Israel, is a managed detection and response (MDR) provider built around autonomous agentic AI working alongside human analyst expertise. Rather than simply generating alerts, Daylight's platform takes active control of incidents — detecting, investigating, containing, and resolving threats in real time — positioning itself as an AI-augmented replacement for traditional MDR services.Read more…
Dropzone AIDropzone AI, founded in 2023 and headquartered in Seattle, Washington, develops autonomous technology that replaces traditional Tier-1 and Tier-2 analyst workflows with AI-powered investigation agents. Its platform uses agentic AI to replicate the reasoning patterns of elite human analysts, automatically triaging, investigating, and resolving every incoming security alert — typically within 10 minutes. The company has raised $57.35 million across three rounds from investors including Pioneer Square Ventures, Madrona Ventures, Decibel Ventures, In-Q-Tel, and Theory Ventures. RSAC Innovation Sandbox Finalist recognition highlights the platform's technical differentiation in the autonomous SOC category.Read more…
ExaforceExaforce, founded in 2023 by cybersecurity veterans CEO Ankur Singla and CTO Jakub Pavlik, is headquartered in San Jose, California. The company builds an AI-first SOC platform that unifies detection, investigation, and response in a single system. Exaforce raised $75 million in a Series A led by Khosla Ventures, Mayfield, and Thomvest Ventures. Its platform ingests signals from SIEM, XDR, EDR, cloud logs, and identity systems, applying machine learning and orchestration to triage, investigate, and automatically remediate incidents — reducing mean time to response and lowering manual SOC load.Read more…
Legion SecurityLegion Security was founded in 2024 and is based in New York City. The company builds an agentic security operations platform for enterprise teams, centered on KindFire — an adaptive AI agent designed to emulate the reasoning of a human security analyst. Rather than asking teams to rebuild their processes around a new tool, Legion operates through a browser-native interface that observes how analysts actually investigate, capturing institutional knowledge and converting it into repeatable agentic workflows.Read more…
PRE SecurityPRE Security, founded in 2023 in the United States by Paul Jesperson and John Peterson, specializes in AI-driven cybersecurity solutions. Its Predictive AI Cybersecurity platform leverages generative AI to preempt and prevent security incidents, enhancing SOC efficiency. The platform turns the traditional SIEM and XDR SecOps architectures on their head with an AI-native approach to threat anticipation. PRE Security raised an undisclosed sum during its pre-seed round in July 2024, led by global channel reseller and distribution partners, as well as unnamed angel investors.Read more…
Radiant SecurityRadiant Security, founded in 2021 by cybersecurity veterans Shahar Ben-Hador (CEO) and Barry Shteiman (CTO), is a San Francisco-based company that provides an AI-powered SOC Co-Pilot platform designed to automate alert triage, investigation, and response workflows for Security Operations Centers. In November 2023 the company announced a $15 million Series A led by Next47 with participation from Lightspeed Venture Partners, Acrew Capital, Uncorrelated Ventures, Jibe Ventures, and General Advance. Radiant Security's solution delivers full workflow automation — enrichment, triage, investigation, and one-click remediation — across any alert type and tool stack, claiming up to 95% reduction in analyst workload and significantly faster response times.Read more…
RadwareEnterprise application and network security platform with AI-powered threat protection across cloud, on-premises, and hybrid environments. Defends 12,500+ organizations in 80+ countries including Fortune 500 financial institutions, healthcare systems, and e-commerce platforms. Recognized as leader in Aite COMPASS Report for WAAP, QKS SPARK Matrix for DDoS Mitigation and WAF, and GigaOm Application & API Security. Infused with Radware EPIC-AI for intelligent threat detection and automated response.Read more…
SeceonSeceon is an AI-driven cybersecurity platform company headquartered in Westford, Massachusetts, purpose-built to power the next generation of MSSPs, MDRs, and enterprise SOC operations. Founded to eliminate the complexity and cost of assembling fragmented point solutions, Seceon delivers a single unified platform — the aiMSSP — that integrates SIEM, XDR, NDR, UEBA, EDR, SOAR, and compliance reporting into one multi-tenant architecture. The platform protects over 8,800 clients through a network of 640+ channel partners worldwide. Customers running Seceon process upwards of 700 million security events per day while maintaining a sub-1% false positive rate — a benchmark that frees analyst capacity for genuine threat investigation rather than alert triage. One healthcare system reported a 77% increase in IT and SOC personnel efficiency after deployment. Industry recognitions include multiple Gartner Peer Insights Customers' Choice distinctions and consistent leadership rankings across SIEM and XDR categories.Read more…
SimbianSimbian is a Mountain View, California-based cybersecurity company founded in 2023, building what it calls the first fully autonomous security operations platform. The company emerged from stealth in April 2024 with a $10 million seed round from Icon Ventures, Firebolt Ventures, and Rain Capital, and has grown to over 50 employees. Simbian's core thesis is that modern security operations — overwhelmed by alert volume, analyst burnout, and the rapid expansion of AI-enabled threats — cannot scale through headcount alone. Instead, specialized AI agents must take over the repetitive, high-volume work of triage, investigation, and response while human analysts focus on high-judgment decisions. The platform is SOC 2 Type II certified, supports on-premises deployment, and integrates with more than 100 enterprise and security tools across the existing security ecosystem. Customers include leading enterprises and MSSPs, with published case studies from organizations including Matillion, Axelar, and Wipro.Read more…
Stellar CyberFounded in 2015, Stellar Cyber is the only AI-native SecOps platform purpose-built for MSSPs and lean enterprise security teams. Trusted by one-third of the world's top 250 MSSPs and over 14,000 organizations worldwide, Stellar Cyber earned the #2 position in the MSSP Alert 2025 Top 250 MSSPs report — climbing from #10 to #3 to #2 in consecutive years. The platform unifies AI SIEM, NDR/OT, ITDR/UEBA, Open XDR, and Multi-Layer AI™ under a single license, eliminating the tool sprawl that burdens modern security operations. Raised over $68M in total funding including a $38M Series B led by Highland Capital Partners with participation from Samsung, SIG, Valley Capital Partners, and Northern Light Venture Capital.Read more…
StrikeReadyStrikeReady, founded in 2019 and headquartered in Dallas, Texas, provides an AI-powered Security Command Center that accelerates SOC operations through a digital analyst model rather than full autonomy. The company raised $12 million in a Series A led by 33N Ventures with participation from Monta Vista Capital and Hitachi Ventures. Its core AI system, CARA, is designed to absorb institutional knowledge, learn from analyst decisions, and replicate their investigation work — embedding itself in the SOC workflow as a persistent, learning assistant that shortens investigation steps, reduces alert fatigue, and fills skills gaps in understaffed teams.Read more…
SwimlaneSwimlane, founded in 2014 and headquartered in Denver, is the largest pure-play security automation company, specializing in security orchestration, automation, and response (SOAR). Its flagship Turbine platform is an AI-enabled, cloud-native, low-code security automation platform that combines human intelligence, machine learning, and artificial intelligence to serve as a system of record for security operations.Read more…
TorqTorq was founded in 2020 by cybersecurity veterans Ofer Smadari, Leonid Belkind, and Eldad Livni — with backgrounds spanning Luminate Security (acquired by Symantec) and Check Point Software. Headquartered in New York with roots in Israel, Torq has established itself as a leader in agentic AI for Security Operations Centers. The company reached a $1.2 billion valuation after its $140 million Series D in January 2026, bringing total funding to $332 million from investors including Merlin Ventures, Evolution Equity Partners, Bessemer Venture Partners, and Insight Partners. Customers include Chipotle, PepsiCo, Siemens, Telefonica, Wiz, and ZoomInfo across the Fortune 500.Read more…
TracecatTracecat, founded in 2023 and backed by Y Combinator (W24), is an open source security automation platform built for security operations, reliability engineering, and IT teams. The platform is licensed under AGPL v3.0, is SOC 2 Type II certified, and runs sandboxed by default. Teams at Saronic, Wealthsimple, SANS, Depop, Acumen, DEVCOM, CyberUp, and Neo Financial run it in production.Read more…We curate the SOC Automation edition for the security decision-makers who shape the stack. If your platform belongs in the conversation, tell us what you'd show — we'll handle the rest.
Read by SOC leads, CISOs, security architects, and M&A teams sourcing the next platform in their stack.
Not a logo in a card grid. Your platform gets a magazine-quality slot with custom imagery, demo embed, and pull-quote positioning.
Your platform demos live on a dedicated GOTMA page — video assets, executive interviews, analyst briefings — discoverable long after launch.
Or reach out directly: info@it-harvest.com