
Zero Trust CNAPP with eBPF-based runtime enforcement across cloud, Kubernetes, and AI workloads
AccuKnox was founded in 2020 by Nat Natraj, Rahul Jadhav, Asif Ali, and SRI International researcher Phil Porras, and the platform grew out of work on kernel-level workload protection at SRI. Its distinguishing technical choice is enforcement rather than observation: KubeArmor, the open source runtime engine AccuKnox maintains, uses eBPF for visibility and Linux Security Modules such as AppArmor, SELinux, and BPF-LSM to deny process execution, file access, and network calls that fall outside a workload's expected behavior. Policies are generated from observed activity, so the same telemetry that produces alerts also produces the rules that stop the next attempt.
Around that runtime core sits a broader posture stack covering cloud misconfiguration, Kubernetes hardening and admission control, container and VM vulnerability scanning, SAST, DAST and SCA in CI/CD, API discovery and testing, sensitive data discovery, and software bills of materials in several formats. Findings across those sources are correlated and ranked so remediation work is ordered by exposure rather than raw severity, and results map to compliance frameworks including PCI DSS, HIPAA, CIS benchmarks, and the EU AI Act. Newer AI-SPM and agent security modules apply model inventory, prompt inspection, and sandboxed execution to LLM and agentic workloads. The company has raised roughly $10.6M, backed by National Grid Partners, Dolby Family Ventures, and Avanta Ventures.



