Lasso Security

Security for AI also known as Lasso

Market readinessHow well the company can compete in its security market, scored across eight dimensions against public evidence. Established: Market readiness of 25 to 30, the typical band where most analyzed companies land.
DefensibilityHow well the company holds its position if competitors catch up on features, scored across seven dimensions against public evidence. Contested: Defensibility of 13 to 14, the typical band, where a moat exists but is under pressure.
Founded 2023
Last updated 2026-07-11

All analysis was generated autonomously, without human review. Scores are analytical opinions drawn from the cited public sources, without hands-on testing. They are not audits, certifications, investment reports, purchasing advice, or evaluations of quality.

Executive Summary

Lasso Security, founded in Tel Aviv in 2023, sells software that discovers the AI agents and applications a company runs, attack-tests them, and enforces policy inline as employees and agents use AI models. Its researchers drew independent coverage by showing Microsoft Copilot could surface once-private GitHub code and that AI assistants invent package names an attacker can register, work The Register and TechCrunch reported. Optibus and Telit Cinterion describe deployments. Axonius co-founder Dean Sysman joined the board. The revenue, detection-accuracy, and federal-adoption claims still come from the company. After SentinelOne bought rival Prompt Security, Lasso is strongest where its research reputation earns buyer trust and weakest where independent proof of traction is absent.

Sourced Details

Description Lasso helps enterprises secure the AI applications and agents they build and run. The platform discovers and inventories them, red-teams them for vulnerabilities, and enforces policy inline at the proxy, API, or AI gateway. [f1]
Founded 2023 [f2]
HQ Tel Aviv, Israel [f3]
Latest funding Seed, $6M (November 2023) [f3]
Deployment SaaS [f4]
Compliance SOC 2 Type 2 [f4]

Products

Product What it does
Lasso Security Platform that discovers and inventories AI agents and applications, red-teams them, and enforces policy inline at the proxy, API, or gateway to protect AI interactions at runtime.

Matrix Coverage

AI Defense Matrix

GovernIdentifyProtectDetectRespondRecover
AI-Workload Platforms Inference servers, training platforms, vector DB platforms, and the model-loading supply chain.
AI Orchestration Tools Agentic orchestration tools, plus their plugins, skills, hooks, system prompts, scaffolding, harnesses, configuration settings, and MCP clients on user devices.
AI-Generated Code Code produced by AI tools, AI-assisted reviews, AI-generated infrastructure-as-code and tests, and vibe-coded apps that bypass CI/CD.
AI Gateways & Routers MCP proxies and gateways, LLM routers, outbound AI-service traffic, shadow AI egress, and model-registry traffic.
AI Model Model weights, fine-tuning checkpoints, model cards, registries, AIBOM, and the third-party LLMs your enterprise consumes.
Training Data Datasets used for training, fine-tuning, and continued learning.
Runtime AI Data User prompts, inference inputs, RAG content, vector DB content, persistent agent memory, and interaction history.
AI Agent Identities AI agents as non-human principals, plus credentials, keys, permission scopes, service accounts, and delegation chains across agents and tools.

Lasso Security discovers and inventories AI agents and applications, red-teams them, and enforces policy inline at the proxy, API, or gateway to protect AI interactions at runtime. It is mapped to the AI Defense Matrix. [f5]

Market Readiness

How well the company can compete in its security market, scored across eight dimensions against public evidence.

Established 27 /40 Established: Market readiness of 25 to 30, the typical band where most analyzed companies land.
Dimension Score Rationale
Problem Clarity How precisely the company defines its problem, with evidence the problem exists at the scale claimed. 3/5 The enterprise CISO buyer and the shadow-AI and agent-risk pain are clearly stated, and independent press (TechCrunch, The Register, CTech) corroborates that AI data exposure is real and widespread. The harm to Lasso's own buyers, though, is quantified only in vendor case studies (Optibus, Telit Cinterion), so the pain is present and credible rather than independently quantified for this product's market. [s16, s19, s25, s28, s9, s11]
Capability Depth How specific the technical capabilities are, with evidence beyond marketing claims such as docs and third-party validation. 3/5 Platform pages describe concrete mechanisms (discovery with an AI bill of materials, MITRE and OWASP red teaming, inline enforcement, intent analysis), and an independent review confirms the five-pillar shape while flagging the headline figures as vendor benchmarks. No third-party benchmark, demo, or public technical documentation in the fetched evidence validates the platform itself, and the accuracy figures are vendor-stated and differ by product (99.83% on Intent Deputy, 98.6% on detection). [s2, s4, s5, s3, s26]
Market Timing Whether the market is ready for this product, with evidence that buyers are actively seeking solutions. 4/5 SentinelOne paid about 250 million dollars for the closest peer in August 2025, Calcalist reports global vendors making buyout offers to Lasso and its cohort, and demand has shifted toward agentic AI within the past year. Multiple independent buyer-side and acquirer signals show incumbents actively converging on GenAI security. The enabler is the 2023 onward enterprise rush into generative AI and 2024 to 2026 agentic adoption that created a new runtime attack surface. [s22, s18, s17]
Team Credibility Demonstrated domain expertise with public signals such as prior exits, publications, and industry recognition. 4/5 Calcalist describes Elad Schulman as a repeat founder returning after two successful exits, the board adds Naftali Bennett and, in February 2026, Axonius co-founder Dean Sysman, and the research team has a sustained, independently covered output, from the 2024 AI package hallucination work (The Register) to the 2025 Copilot exposure (TechCrunch) and 2026 publications on LLM fingerprinting. Depth sits with founders and researchers rather than a named executive bench. [s17, s15, s25, s19, s8]
GTM Proof Evidence of actual traction (customers, revenue signals, partnerships) beyond stated intentions. 3/5 Named customers (Optibus, Glide Identity, Telit Cinterion) appear only in vendor case studies, revenue is founder-relayed and reported by Calcalist as sales nearing one million dollars, and the AWS Marketplace presence is a listing rather than corroborated scale. A small upward note applies for the investor base (Entrée Capital, Samsung Next, SingTel Innov8) and independently reported acquirer interest, keeping the score at present but unproven rather than below it. [s9, s10, s11, s14, s17, s27, s29]
Funding Efficiency Whether funding matches go-to-market ambition, with signs of capital-efficient growth. 3/5 Lasso has raised beyond its 6 million dollar seed (CB Insights records a Seed VC-II stage and added investors such as SingTel Innov8, with reported totals varying across data providers) and ships a four-module platform, a research program, and marketplace listings. The output looks proportional to the capital, but with no disclosed revenue or margin and founder-relayed revenue, efficiency stays unconfirmed, the honest default for a funded private startup. [s27, s16, s7, s2]
Category Clarity Whether the company creates or fits a recognizable category that buyers can quickly place in their stack. 4/5 Independent press places Lasso in the GenAI security category alongside Prompt, Aim, and Pillar without vendor coaching, and the SentinelOne acquisition gave the category a price. The category is clearly emerging and multiply evidenced, short of a 5 because the company's own Intent Security coinage is newer vocabulary no third party in fetched sources has adopted. [s18, s22, s17]
Incumbent Defensibility How vulnerable the core value proposition is to absorption as a feature by a platform vendor. 3/5 In-house detection models, a sub-50ms inline position, and a publishing research team create some friction to absorption, but Schulman names model providers as near-free competitors and platform vendors are acquiring equivalent capability rather than building it. No compliance mandate or demonstrated cross-customer data flywheel blocks substitution, so the friction is real without a structural moat. [s17, s3, s22, s8]
Business Risks SentinelOne's purchase of Prompt Security armed a platform incumbent with a comparable product…
  • SentinelOne's purchase of Prompt Security armed a platform incumbent with a comparable product. Further acquisitions of Aim Security or Pillar Security would put equivalent AI runtime protection inside platforms enterprises already license, compressing the standalone budget line Lasso Security sells against.
  • Model providers could bundle security controls into their own offerings at little or no cost, a dual role as competitor and potential acquirer that Schulman himself acknowledges, eroding the paid defense layer between enterprises and the labs.
  • The sub-50ms latency and detection accuracy figures behind Intent Deputy and AI detection are vendor-stated, and an independent review repeats them as vendor benchmarks. An external evaluation showing materially worse results would undercut the intent-security positioning.
  • Traction claims are own-voice. Reported revenue, federal-agency adoption, and partner growth all originate with the company, and without an independently reported customer or revenue milestone, buyers and investors weigh vendor assertion alone.
  • Reported totals raised diverge across data providers, so the capital base behind an enterprise and federal sales motion is unclear, and rivals in the same cohort have disclosed larger rounds.
  • Reported buyout interest means the founders may sell to a platform vendor, which would fold the product into an acquirer's stack rather than an independent platform.
Problem & Market Lasso Security sells to enterprises whose employees and applications adopted generative AI faster than security teams could see or control it…

Lasso Security sells to enterprises whose employees and applications adopted generative AI faster than security teams could see or control it. The buyer in the company's public materials is the CISO, who faces shadow AI use, sensitive data leaving through prompts, and autonomous agents acting on production systems. SecurityWeek described the company's mission at its 2023 stealth exit as protecting every LLM touchpoint against data exposure and compliance risk.

Named customers describe the pain concretely. Optibus, a transit software company with more than 300 employees, says it started from zero visibility into AI usage, and Telit Cinterion describes employees adopting ChatGPT, Gemini, and Microsoft Copilot ahead of any security control. Both case studies live on the vendor's site, so they carry the vendor's frame, though the named customers speak in their own words.

Independent reporting corroborates that the underlying threat is real and large. Lasso's own research, covered by TechCrunch and CTech, found more than 20,000 once-private GitHub repositories still reachable through Microsoft Copilot, and The Register documented how AI assistants invent installable package names attackers can register. Calcalist separately reports that GenAI security startups, Lasso among them, are fielding buyout offers, a sign incumbents see the demand as durable. [s16, s9, s11, s19, s28, s25, s18]

Product Capabilities The Lasso AI Security Platform runs from discovery to runtime enforcement…

The Lasso AI Security Platform runs from discovery to runtime enforcement. Its discovery module inventories agents and applications and builds an AI bill of materials, an automated red-teaming module maps risks across MITRE and OWASP attack vectors, and the detection and response module enforces policy inline to stop a harmful agent action before it executes.

Intent Deputy is the platform's newest layer and its central technical claim. The vendor states sub-50-millisecond analysis on the Intent Security page, which cites a 99.83% threat detection accuracy rate, while the AI detection page cites 98.6% accuracy for intent-based zero-day protection. An independent AppSec Santa review repeats these as vendor benchmarks, and no third party has tested either figure in any fetched source.

Lasso supplements its product pages with original research that gives the capability claims outside reference points. Its researchers showed Microsoft Copilot could retrieve once-private GitHub repositories, work TechCrunch covered in February 2025, and earlier showed AI assistants recommend non-existent software packages, covered by The Register. The research page published new work on LLM fingerprinting and agentic data exfiltration into 2026. The company also packages the platform for AWS Marketplace with one-line-of-code integration and secures traffic across existing AI gateways such as Kong, Portkey, LiteLLM, and Envoy. No public product documentation portal was found. [s2, s4, s5, s3, s26, s19, s25, s8, s13]

Competitive Positioning Lasso Security competes inside a dense cohort of GenAI security startups that platform vendors have begun buying…

Lasso Security competes inside a dense cohort of GenAI security startups that platform vendors have begun buying. SentinelOne acquired the closest Israeli peer, Prompt Security, in a deal Calcalist valued at about 250 million dollars in August 2025, and the same outlet reported that Lasso, Aim Security, and Pillar Security then began fielding buyout offers from global vendors. Each such acquisition removes an independent rival and arms an incumbent with a comparable product.

The company's stated edges are its own detection models and the intent framing. Elad Schulman told Calcalist that Lasso trains an in-house language model to detect intrusion attempts without degrading application performance, and the company markets Intent Deputy under an Intent Security banner it coined for agent defense. Breadth is the other claim, since one platform covers employee usage, applications, agents, and code.

Schulman himself names the structural threat. He told Calcalist that the model providers behind popular AI tools are developing their own security features and act as both competitors offering nearly free solutions and potential acquirers. The same logic now applies to the security platforms, since any of them can buy a Lasso peer instead of building the capability. [s22, s18, s17, s3, s2]

Go-to-Market & Traction Named customers appear with attributed metrics, all on the vendor's own pages…

Named customers appear with attributed metrics, all on the vendor's own pages. Optibus reports eliminating shadow AI and a 60% drop in AI-related security events across more than 300 employees, Glide Identity says an agent secured by Lasso cut a three-week penetration test to two days, and the Telit Cinterion case study credits Lasso with enabling GenAI adoption at a roughly 1,000-person IoT company. No independently reported customer win appears in fetched press.

Revenue and pipeline claims are the founder's own. Schulman told Calcalist in December 2024 that the company was generating over seven figures in revenue with major deals lined up, while the same article reported sales nearing one million dollars, and the February 2026 board announcement says enterprises and federal agencies already trust the platform. The buyout interest Calcalist reported implies acquirers see commercial substance, but no third party has published Lasso's customer count or revenue.

Channel motion is visible and early. Lasso listed products on AWS Marketplace with contract-based purchasing, runs a partner program for resellers, MSPs, and MSSPs, and claims 6x partner network growth. The investor base has widened beyond the original seed backers Entrée Capital and Samsung Next to include SingTel Innov8, per CB Insights, though reported totals raised vary across providers. [s9, s10, s11, s17, s15, s14, s12, s27, s29]

Team & Credibility Four co-founders run the company across CEO, CTO, CPO, and COO seats…

Four co-founders run the company across CEO, CTO, CPO, and COO seats. Calcalist describes Elad Schulman as returning to founding after two successful exits, Lior Ziv brings over a decade of experience in cybersecurity, GenAI, and machine learning per the team page, Ophir Dror leads product, and Yuval Abadi runs operations. The team page presents all four alongside the 2023 founding.

Board recruitment is the standout governance signal for a company this young. Former Israeli Prime Minister Naftali Bennett, who founded the security company Cyota and sold it in 2005, joined the board after the seed round, and Axonius co-founder Dean Sysman, who ran that company as CEO for its first nine years, joined in February 2026. René Bonvanie, formerly Palo Alto Networks' CMO, joined the advisory board at the seed announcement. No new C-suite appointment appears in the company newsroom.

A named research bench gives the company public technical credibility. The research page lists bylined authors, the team's Copilot findings drew TechCrunch coverage that quoted CPO Ophir Dror, and its AI package hallucination work drew The Register. The researchers kept publishing through 2026, most recently on LLM fingerprinting and agentic data exfiltration. [s6, s17, s15, s19, s25, s8, s7]

Trust Readiness Lasso published a SOC 2 Type 2 announcement on its blog in February 2024, where co-founder Yuval Abadi states the company is officially SOC 2 Type 2 compliant…

Lasso published a SOC 2 Type 2 announcement on its blog in February 2024, where co-founder Yuval Abadi states the company is officially SOC 2 Type 2 compliant. The post gives a generic SOC 2 description rather than naming the auditor or the trust criteria the report covers, and the report itself is not posted, so a buyer still requests it in procurement. Homepage footer seals display ISO 27001, AICPA SOC 2, GDPR, and PCI DSS as images, with no report linked from the footer, and no FedRAMP authorization appears in the public record.

The company sells compliance outcomes beyond what its own SOC 2 covers. The board announcement positions the platform as helping enterprises demonstrate compliance with evolving AI governance requirements, and the Telit Cinterion case study leads with maintaining compliance during GenAI adoption. Mapping customers to frameworks the company has not certified against itself is a common asymmetry at this stage, and the gap is worth tracking.

Research conduct is the trust signal the company controls directly. The team disclosed the Copilot findings to Microsoft in November 2024 before TechCrunch published in February 2025, responsible-disclosure behavior a buyer can verify in independent press. [s21, s24, s15, s11, s19]

Competitors Prompt Security, Aim Security, Pillar Security, Lakera, HiddenLayer, WitnessAI…
Company Relationship Note Compare
Prompt Security competes with The closest Israeli GenAI security peer, acquired by SentinelOne in a deal Calcalist valued at about 250 million dollars in August 2025, which moved equivalent capability inside a platform vendor.
Aim Security competes with Named alongside Lasso in Calcalist's reporting on the GenAI security cohort fielding buyout offers, with a larger disclosed raise.
Pillar Security competes with Named alongside Lasso and Aim Security in Calcalist's M&A reporting as an early-stage Israeli GenAI security player courting the same buyers.
Lakera competes with Sells runtime GenAI application security and AI red teaming aimed at the same enterprise AI defense buyer.
HiddenLayer competes with AI security platform spanning model scanning, red teaming, and runtime defense for enterprise AI estates.
WitnessAI competes with Sells observability and policy enforcement for employee AI usage, the same problem Lasso's employee-facing module addresses.

Add analyzed competitors to compare them side by side with Lasso Security.

Strategy Deep Dive

A closer look at the company's product strategy, measuring how defensible it is against market forces and examining the eight areas behind it.

Defensibility

Contested 13 /21 Contested: Defensibility of 13 to 14, the typical band, where a moat exists but is under pressure. reinforce or reposition

Lasso holds an engineering head start in a category where SentinelOne has already bought rival Prompt Security for about $250 million, per Calcalist. The head start is real-time analysis of agent traffic for malicious intent, backed by a research team that showed Microsoft Copilot serving once-private GitHub code and AI assistants inventing package names, work TechCrunch and The Register covered. Little else is hard to leave or match. Customers integrate and configure the service in their AI workflows, any competitor can earn the same SOC 2 Type 2 attestation, and no cross-customer data pool appears in the public record. A customer that leaves hands a substitute the work of relearning each agent's behavior profile and retuning policies, friction that grows with tenure but is not a lock.

Dimension Score Rationale
Value Delivery Does the product sell software as the product, or judgment, trust, or accountability with software as the delivery mechanism. 1/3 Lasso sells subscription software, discovery, red teaming, and inline enforcement priced per usage, the software-product level. No managed service, liability acceptance, or accountability layer appears in the product as sold.
Switching Cost How expensive leaving is for a customer: data portability, integrations, learned workflows, network effects, regulatory data residency. 2/3 Intent baselines learned per agent, policies tuned per environment, and inline placement in AI traffic flows build real friction over time, but no network effect, residency lock, or cross-customer accumulation appears in fetched sources.
Compliance Moat Whether certifications, liability acceptance, or audit trails block an easy replacement. 1/3 Lasso holds a SOC 2 Type 2 attestation and displays image-only ISO 27001, GDPR, and PCI DSS seals in its footer, table-stakes assurance that eases procurement without blocking substitutes, and no compliance regime mandates this product class. The seals carry no linked report, and the company markets compliance help to customers across frameworks beyond its own certified posture.
Problem Complexity Whether the product requires ML, optimization, real-time systems, or years of specialized expertise. 3/3 Inline intent analysis at vendor-claimed sub-50ms latency, in-house detection models Schulman described to Calcalist, and a research program independently covered for surfacing novel attack classes, from the Copilot exposure to AI package hallucination, is specialized engineering under adversarial pressure, hard for a generalist team to replicate quickly.
Buyer Profile Whether buyers are SMB operators, mid-market IT teams, or regulated enterprises and governments with procurement gates. 3/3 The visible customers are enterprises such as Telit Cinterion and Optibus, and the Optibus case study names its Global CISO as the buyer, with federal agencies claimed. Every path to purchase runs through demos, private offers, and procurement rather than self-service.
Layer Whether the product is an end-user application, a platform with application features, or infrastructure other applications depend on. 2/3 The gateway and intent products sit in the AI traffic flow, which is more than an end-user application, but no other software depends on Lasso to function and a buyer can route around the platform without rearchitecting.
Proprietary Data, Content, or IP Whether the product accumulates datasets, content licenses, or IP that a rival cannot recreate from scratch. 1/3 Lasso's intent product validates user and agent behavior against baselines each environment builds for itself, and the research is published rather than pooled. Schulman described an in-house detection model to Calcalist, but no fetched source shows a non-public cross-customer corpus behind it. No cross-customer data flywheel is demonstrated publicly, so the data position reads as replicable rather than a proprietary non-public asset a new entrant could not assemble.
Strategic Market Segmentation Lasso Security targets enterprises whose AI adoption has outrun their controls, and the visible customer set crosses industries rather than concentrating in one…

Lasso Security targets enterprises whose AI adoption has outrun their controls, and the visible customer set crosses industries rather than concentrating in one. Telit Cinterion is a roughly 1,000-person IoT company, Optibus is a transit software vendor with more than 300 employees, Glide Identity is an identity startup, and the February 2026 board announcement adds federal agencies in the company's own voice. The unifying trait is depth of AI adoption rather than sector.

The newest public product and research activity is current, which matters in a market the frontier labs keep reshaping. Intent Deputy launched in early 2026, and the research page published new work on LLM fingerprinting and agentic data exfiltration into 2026. The pitch itself moved with the model generation, from LLM data leakage at the 2023 stealth exit to agent intent security today, the repositioning a vendor must keep showing to stay fit with a moving market.

Persona targeting splits the economic buyer from the deployment surfaces. The CISO owns the purchase in the customer stories that name a buyer, while the packaging, an employee extension, a developer scanner, and an application gateway, maps onto the distinct teams who touch AI. Geographic strategy is not disclosed, with named customers visible in Israel and the United States and federal interest claimed in the United States.

Product Capabilities & AI Advantages The claimed capabilities cohere into one lifecycle story everywhere they appear…

The claimed capabilities cohere into one lifecycle story everywhere they appear. Lasso discovers agents and applications and builds an AI bill of materials, assesses them with automated red teaming mapped to MITRE and OWASP attack vectors, and protects them at runtime with inline policy enforcement and intent analysis. The marketplace listings, the platform pages, and the customer case studies describe the same mechanism set without contradiction.

The claimed AI advantage is detection technology the company built itself. Schulman told Calcalist that Lasso trains an in-house language model to detect intrusion attempts without compromising software performance, and Intent Deputy extends the claim with behavioral baselines learned per agent. The sub-50-millisecond latency and 99.83% accuracy figures attached to that engine remain vendor-stated, and an independent AppSec Santa review repeats the cost and accuracy numbers explicitly as vendor benchmarks rather than independent measurement.

Research is the capability evidence the product pages cannot supply, and it now carries independent corroboration. The team showed Microsoft Copilot could retrieve once-private GitHub repositories, work TechCrunch covered in February 2025, and earlier documented how AI assistants recommend non-existent software packages, covered by The Register in 2024. Publication continued into 2026 on LLM fingerprinting and agentic data exfiltration. Product-level verification is still the gap. The AWS Marketplace listing points to a vendor knowledge base, and the AppSec Santa review is descriptive rather than a measured test, so no public API documentation, sandbox, or independent benchmark lets a buyer check the platform's depth.

Sales Engagement & Go-to-Market Lasso runs an enterprise sales-assisted motion with the founders out front…

Lasso runs an enterprise sales-assisted motion with the founders out front. The site funnels buyers to demo bookings, the AWS listings route larger buyers to private offers, and no self-service tier or free trial exists. Elad Schulman fronts the press, gave Calcalist the company's revenue and strategy story, and appears across the webinar program, founder-led selling that fits a company at an early revenue stage.

Lasso invested in partner and marketplace channels early in its development. The partner page recruits resellers, MSPs, and MSSPs and claims 6x partner network growth, and the AWS Marketplace presence dates to 2024. The investor base has also widened beyond the original seed backers Entrée Capital and Samsung Next to include SingTel Innov8, and the reported totals disagree, with the CB Insights profile listing $14.5 million raised against the $28 million the AppSec Santa review reports. A rival could assemble similar assets, but they show the company building paths to buyers beyond its own sales calls.

Lasso has claimed federal customers since at least December 2024, when Schulman told Calcalist that U.S. federal agencies are strategic customers, yet the federal motion stays the least evidenced part of the strategy. The Sysman announcement says federal agencies already trust the platform and presents his experience with federal customers as a reason for the board seat. No contract vehicle, FedRAMP status, or named agency appears in fetched sources.

Pricing Model Lasso publishes no prices on its own site, which signals negotiated enterprise deals…

Lasso publishes no prices on its own site, which signals negotiated enterprise deals. The AWS Marketplace listing publishes a $50,000 twelve-month annual commitment for the LLM gateway, points larger buyers to private offers through a sales conversation, and meters additional usage beyond the contract at a published per-unit fee whose unit the listing does not define.

The packaging carries the clearer pricing message. Selling an employee extension, an LLM gateway, and a developer scanner as separate marketplace products lets the company price each AI surface on its own and expand accounts surface by surface. Whether a platform-wide bundle exists, and how negotiated enterprise pricing departs from the published baseline, stays behind the private-offer wall.

Premium positioning is implied but not argued publicly. No fetched page compares Lasso's price to a competitor or to the incumbent platforms now adding AI security features, so the company has not yet had to defend a price premium in public, a question that sharpens as larger security vendors acquire comparable capability, as SentinelOne did in buying Prompt Security.

Product Delivery & Operations Deployment models map onto the product split…

Deployment models map onto the product split. The employee product installs as a browser extension, the gateway product positions between LLMs and data consumers with integration the vendor claims takes one line of code, and discovery connects through platform integrations and CI. A company post describes securing traffic across existing AI gateways such as Kong, Portkey, LiteLLM, and Envoy rather than requiring its own.

Operational claims center on latency, the make-or-break property for inline AI security. The marketplace materials claim high interaction volumes without latency, and the intent page claims analysis in under 50 milliseconds. Both figures are the vendor's own, and no benchmark, SLA, status page, or uptime commitment appears in fetched sources.

Buyer-facing operations collateral is missing. The public record shows no documentation portal, deployment guide, or API reference beyond a knowledge-base entry on the marketplace listing, so evaluating deployment effort requires a sales engagement. For a product whose pitch is frictionless AI adoption, the absence of self-service evaluation material is a notable gap.

Earning Customers' Trust Lasso holds a SOC 2 Type 2 attestation, which it announced on its blog in February 2024 with co-founder Yuval Abadi stating the company is officially SOC 2 Type 2 compliant…

Lasso holds a SOC 2 Type 2 attestation, which it announced on its blog in February 2024 with co-founder Yuval Abadi stating the company is officially SOC 2 Type 2 compliant. The homepage footer also carries image-only ISO 27001, AICPA SOC 2, GDPR, and PCI DSS seals, so the company displays a broader posture than the SOC 2 blog post alone implies. The seals are inline graphics with no linked report, and the blog post describes SOC 2 generically rather than naming the trust criteria the audit covers, so the access the platform requests still draws procurement requests. The platform sits inline on AI traffic and reads prompts, code, and agent actions, and no FedRAMP authorization appears in the public record.

Compliance beyond SOC 2 appears as a customer outcome rather than a vendor posture. The company markets help with AI governance requirements, and the Telit Cinterion case study frames the deployment around maintaining compliance during GenAI adoption, but the frameworks the platform maps customers to go past what Lasso has certified against itself. The federal-agency claim, if accurate, implies procurement scrutiny the public record does not yet fully show.

Research conduct is the trust signal the company controls. The team disclosed the Copilot findings to Microsoft in November 2024 before TechCrunch published in February 2025, responsible-disclosure behavior a buyer can verify in independent press.

Platform Strategy & Ecosystem Positioning Lasso positions as a platform, and the module structure supports the claim…

Lasso positions as a platform, and the module structure supports the claim. Discovery, red teaming, runtime detection and response, and usage control share one inventory and one enforcement plane, so each module deepens the same deployment rather than starting a new one. The Intent Security framing tries to give that platform a category name of its own.

The ecosystem motion is integrate-and-distribute rather than replace. The company describes securing traffic that flows through existing AI gateways such as Kong, Portkey, LiteLLM, and Envoy, sells through AWS Marketplace, and recruits resellers and MSSPs into a partner program with claimed 6x network growth. That posture lowers adoption friction and turns adjacent vendors into channels rather than rivals.

Third-party ecosystem evidence stops there. No public API documentation, developer program, or example of another vendor building on Lasso appears in fetched sources, so the platform ambition currently runs on architecture and packaging rather than network effects.

Team & Execution Capability The founding team covers the four seats an enterprise security company needs…

The founding team covers the four seats an enterprise security company needs. Calcalist describes Elad Schulman as returning after two successful exits to run the company, Lior Ziv leads technology with a decade in cybersecurity and machine learning, Ophir Dror owns product, and Yuval Abadi runs operations and finance. The team page presents the company as founded by these four in 2023.

The named research bench is unusual for the company's size, and its output now carries sustained independent coverage. The research page lists bylined authors, the 2024 AI package hallucination work drew The Register, and the 2025 Copilot findings put the team in front of Microsoft and the trade press through TechCrunch. Publication continued into 2026, so the bench still produces.

Board members and advisors compensate for the missing executive layer. Naftali Bennett brought Cyota founder experience after the seed round, Axonius co-founder Dean Sysman brought category-creation and federal go-to-market experience in February 2026, and René Bonvanie brought Palo Alto Networks marketing pedigree at the seed announcement. No new CRO, CMO, or VP-level hire appears in the company newsroom.

Sources

Company Detail Sources (5)
Id Source Tier Accessed
f1 Lasso: Secure AI Adoption at Enterprise Scale official 2026-07-09
f2 Lasso Security seed funding announcement official 2026-06-11
f3 SecurityWeek coverage of the Lasso Security stealth exit press 2026-06-11
f4 AI Defense Matrix Catalog entry other 2026-06-13
f5 AI Defense Matrix Catalog mapping other 2026-06-23
Profile Analysis Sources (27)
Id Source Tier Accessed
s1 Lasso Security homepage
“Protection for every AI application you build and deploy, wherever it runs.”
official 2026-06-29
s2 Lasso AI Security Platform overview
“Comprehensive discovery, AI risk assessment, and runtime protection with Lasso's AI Security Platform.”
official 2026-06-29
s3 Lasso Intent Security page
“Lasso's Intent Deputy secures your AI agents with real-time intent analysis in under 50ms and an industry-leading 99.83% threat detection accuracy rate.”
official 2026-06-29
s4 Lasso AI Red Teaming page
“Map unforeseen risks across attack vectors like MITRE & OWASP, enable rapid mitigation without extensive training, and continuously tune policies at the speed of AI development.”
official 2026-06-29
s5 Lasso AI Detection & Response page
“This intent-based approach gives you protection against zero-day attacks that bypass rule-based and signature-driven controls with 98.6% accuracy.”
official 2026-06-29
s6 Lasso team page
“founded by 4 entrepreneurs, cyber leaders and LLM and AI pioneers”
official 2026-06-29
s7 Lasso Security seed funding announcement (Tel Aviv, November 2023)
“today announced a $6 million seed round led by Entrée Capital with the participation of Samsung Next”
official 2026-06-29
s8 Lasso Research publications page
“From Lab to Wild: How Robust Is LLM Fingerprinting in the Agentic Era?”
official 2026-06-29
s9 Lasso case study on Optibus
“How Optibus secured every AI interaction across 300+ employees, achieving 100% shadow AI elimination and a 60% reduction in AI-related security events.”
official 2026-06-29
s10 Lasso case study on Glide Identity
“How Glide Identity used Lasso to turn 3 weeks of manual security work into 2 days of automated innovation.”
official 2026-06-29
s11 Lasso case study on Telit Cinterion
“Telit Cinterion, a global leader in end-to-end IoT solutions with approximately 1,000 employees across six continents”
official 2026-06-29
s12 Lasso partners page
“6x growth in partner network 92% partner satisfaction rate 50% faster time-to-market with co-developed solutions”
official 2026-06-29
s13 Lasso AWS Marketplace suite announcement
“With simplified integration via one line of code, it handles high volumes of interactions without latency.”
official 2026-06-29
s14 AWS Marketplace listing, Lasso for Secured Gateway for LLMs
“Pricing is based on the duration and terms of your contract with the vendor, and additional usage.”
other 2026-06-29
s15 Lasso announcement of Axonius co-founder Dean Sysman joining the board (Tel Aviv, February 25, 2026)
“Already trusted by enterprises and federal agencies, Lasso gives security teams full visibility and control over how AI is used, built, and deployed across the organization.”
official 2026-06-29
s16 SecurityWeek coverage of the Lasso Security stealth exit
“End-to-end generative AI security startup Lasso Security has emerged from stealth mode with $6 million in a seed funding round led by Entrée Capital, with additional investment from Samsung Next.”
press 2026-06-29
s17 Calcalist interview with Elad Schulman (December 2024)
“We're already generating over seven figures in revenue, and we have major deals lined up for next year”
press 2026-06-29
s18 Calcalist on the GenAI security M&A spotlight (Lasso, Aim, and Pillar, August 2025)
“After Prompt's quick exit, other early-stage Israeli GenAI security players are fielding buyout offers from global giants.”
press 2026-06-29
s19 TechCrunch on the Lasso Microsoft Copilot research (February 2025)
“Lasso informed Microsoft of its findings in November 2024. Microsoft no longer included links to Bing's cache in its search results starting December 2024.”
press 2026-06-29
s21 Lasso Security blog announcing SOC 2 Type 2 compliance (February 5, 2024)
“As of February 2024, Lasso Security is proud to announce that we are officially SOC 2 Type 2 compliant.”
official 2026-06-29
s22 CTech on the SentinelOne acquisition of GenAI rival Prompt Security (August 2025)
“Calcalist has learned that SentinelOne is acquiring Prompt Security in a blue-and-white deal valued at approximately $250 million.”
press 2026-06-29
s24 Lasso homepage footer attestation seals (ISO 27001, AICPA SOC 2, GDPR, PCI DSS)
“Homepage footer attestation seals displayed as images: ISO 27001 Certified, AICPA SOC 2, GDPR, and PCI DSS Compliant.”
official 2026-06-29
s25 The Register on Lasso AI package hallucination research (Bar Lanyado, March 2024)
“one of the businesses fooled by AI into incorporating the package is Alibaba, which at the time of writing still includes a pip command to download the Python package huggingface-cli in its GraphTranslator installation instructions.”
press 2026-06-29
s26 AppSec Santa independent review of Lasso Security (Suphi Cankurt, April 2026)
“570x more cost-effective than cloud-native guardrails according to vendor benchmarks.”
other 2026-06-29
s27 CB Insights profile of Lasso Security (Seed VC - II stage, $14.5M total raised)
“Investors of Lasso Security include SingTel Innov8, Plug and Play Silicon Valley summit, AWS & CrowdStrike Cybersecurity Accelerator, Entree Capital, Samsung NEXT and 10 more.”
other 2026-06-29
s28 CTech on the Lasso Microsoft Copilot GitHub exposure (February 2025)
“more than 20,000 extracted GitHub repositories, over 100 internal software packages vulnerable to dependency confusion, and at least 300 exposed private security credentials”
press 2026-06-29
s29 Calcalist on Lasso revenue and customer base (December 2024)
“The company has generated nearly $1 million in sales, with clients including major organizations and, critically, U.S. federal agencies.”
press 2026-06-29
Deep-Dive Sources (26)
Id Source Tier Accessed
s1 Lasso Security homepage
“Protection for every AI application you build and deploy, wherever it runs.”
official 2026-06-29
s2 Lasso AI Security Platform overview
“Comprehensive discovery, AI risk assessment, and runtime protection with Lasso's AI Security Platform.”
official 2026-06-29
s3 Lasso Intent Security page
“Lasso's Intent Deputy secures your AI agents with real-time intent analysis in under 50ms and an industry-leading 99.83% threat detection accuracy rate.”
official 2026-06-29
s4 Lasso AI Red Teaming page
“Map unforeseen risks across attack vectors like MITRE & OWASP, enable rapid mitigation without extensive training, and continuously tune policies at the speed of AI development.”
official 2026-06-29
s5 Lasso AI Detection & Response page
“This intent-based approach gives you protection against zero-day attacks that bypass rule-based and signature-driven controls with 98.6% accuracy.”
official 2026-06-29
s6 Lasso team page
“founded by 4 entrepreneurs, cyber leaders and LLM and AI pioneers”
official 2026-06-29
s7 Lasso Security seed funding announcement (Tel Aviv, November 2023)
“today announced a $6 million seed round led by Entrée Capital with the participation of Samsung Next”
official 2026-06-29
s8 Lasso Research publications page
“From Lab to Wild: How Robust Is LLM Fingerprinting in the Agentic Era?”
official 2026-06-29
s9 Lasso case study on Optibus
“How Optibus secured every AI interaction across 300+ employees, achieving 100% shadow AI elimination and a 60% reduction in AI-related security events.”
official 2026-06-29
s10 Lasso case study on Glide Identity
“How Glide Identity used Lasso to turn 3 weeks of manual security work into 2 days of automated innovation.”
official 2026-06-29
s11 Lasso case study on Telit Cinterion
“Telit Cinterion, a global leader in end-to-end IoT solutions with approximately 1,000 employees across six continents”
official 2026-06-29
s12 Lasso partners page
“6x growth in partner network 92% partner satisfaction rate 50% faster time-to-market with co-developed solutions”
official 2026-06-29
s13 Lasso AWS Marketplace suite announcement
“With simplified integration via one line of code, it handles high volumes of interactions without latency.”
official 2026-06-29
s14 AWS Marketplace listing, Lasso for Secured Gateway for LLMs
“Lasso for Secured Gateway for LLMs Annual Commit for Secured Gateway for LLMs $50,000”
other 2026-07-11
s15 Lasso announcement of Axonius co-founder Dean Sysman joining the board (Tel Aviv, February 25, 2026)
“Already trusted by enterprises and federal agencies, Lasso gives security teams full visibility and control over how AI is used, built, and deployed across the organization.”
official 2026-06-29
s16 SecurityWeek coverage of the Lasso Security stealth exit
“End-to-end generative AI security startup Lasso Security has emerged from stealth mode with $6 million in a seed funding round led by Entrée Capital, with additional investment from Samsung Next.”
press 2026-06-29
s17 Calcalist interview with Elad Schulman (December 2024)
“Schulman highlights that Lasso's unique selling point is its in-house language model, trained to detect intrusion attempts and malicious use without compromising software performance for users. "We're already generating over seven figures in revenue, and we have major deals lined up for next year,"”
press 2026-06-29
s18 Calcalist on the GenAI security M&A spotlight (Lasso, Aim, and Pillar, August 2025)
“After Prompt's quick exit, other early-stage Israeli GenAI security players are fielding buyout offers from global giants.”
press 2026-06-29
s19 TechCrunch on the Lasso Microsoft Copilot research (February 2025)
“Lasso informed Microsoft of its findings in November 2024. Microsoft no longer included links to Bing's cache in its search results starting December 2024.”
press 2026-06-29
s21 Lasso Security blog announcing SOC 2 Type 2 compliance (February 5, 2024)
“As of February 2024, Lasso Security is proud to announce that we are officially SOC 2 Type 2 compliant.”
official 2026-06-29
s22 CTech on the SentinelOne acquisition of GenAI rival Prompt Security (August 2025)
“Calcalist has learned that SentinelOne is acquiring Prompt Security in a blue-and-white deal valued at approximately $250 million.”
press 2026-06-29
s24 Lasso homepage footer attestation seals (ISO 27001, AICPA SOC 2, GDPR, PCI DSS)
“Homepage footer attestation seals displayed as images: ISO 27001 Certified, AICPA SOC 2, GDPR, and PCI DSS Compliant.”
official 2026-06-29
s25 The Register on Lasso AI package hallucination research (Bar Lanyado, March 2024)
“one of the businesses fooled by AI into incorporating the package is Alibaba, which at the time of writing still includes a pip command to download the Python package huggingface-cli in its GraphTranslator installation instructions.”
press 2026-06-29
s26 AppSec Santa independent review of Lasso Security (Suphi Cankurt, April 2026)
“It also claims this approach is 570x more cost-effective than cloud-native guardrails. Both sets of numbers are vendor benchmarks, not independent measurements. Backed by $28M in funding from Samsung Next, Singtel Innov8, and Entree Capital.”
other 2026-06-29
s27 CB Insights profile of Lasso Security (Seed VC - II stage, $14.5M total raised)
“Total Raised $14.5M. Investors of Lasso Security include SingTel Innov8, Plug and Play Silicon Valley summit, AWS & CrowdStrike Cybersecurity Accelerator, Entree Capital, Samsung NEXT and 10 more.”
other 2026-06-29
s28 CTech on the Lasso Microsoft Copilot GitHub exposure (February 2025)
“more than 20,000 extracted GitHub repositories, over 100 internal software packages vulnerable to dependency confusion, and at least 300 exposed private security credentials”
press 2026-06-29

Disclaimer

This content is provided "as is" with no warranties.

This site is an experimental research aid created by Zeltser Security Corp. All its data gathering and analysis was performed autonomously without human review, and it can contain errors of fact, interpretation, and judgment that a human reviewer might catch.

The analyses are statements of opinion, not statements of fact. Machine analysis produced the scores, summaries, and matrix placements by weighing the public sources each page cites, and reasonable people can weigh the same sources differently. Where a page states a fact, it cites the public source and the date it was checked, and the statement is only as accurate as that source. Unless a profile expressly says otherwise, the analysis involves no hands-on testing and no independent validation of any company's products or services.

Nothing here is professional, security, legal, financial, investment, or purchasing advice, and nothing here is a recommendation to invest in, do business with, or avoid any company. Inclusion of a company is not an endorsement, and absence of a company is not a judgment about it. Reading this site creates no advisory or client relationship. Verify any detail you plan to act on against the vendor's current materials.

The content is provided "as is" and "as available," with all warranties disclaimed, express or implied, including merchantability, fitness for a particular purpose, accuracy, and non-infringement. No entry is warranted to be complete, current, or correct. Companies change, vendors update their claims, sources can be wrong, and automated analysis can misread them.

To the fullest extent permitted by law, the operator, Zeltser Security Corp, is not liable for any damages that arise from using this site or relying on its content, including direct, indirect, incidental, special, and consequential damages and lost profits, even if advised that such damages were possible. If you are dissatisfied with the site or disagree with these terms, your remedy is to stop using it.

Entries link to vendor pages, press coverage, and other external sites that Zeltser Security Corp does not control and is not responsible for. A link is not an affiliation with the destination or an endorsement of it. Product and company names and trademarks are the property of their owners, used here nominatively to identify the companies described. Short quotations from cited sources appear for identification and commentary.

Use, quotation, automated retrieval, and redistribution of the content are governed by the Terms of Use at cybercompanyprofiles.com/terms, which permit personal and internal business use with attribution and prohibit republication and resale.