Skip to main content
Live
Main content

Glow exits stealth at $1.2B valuation to rebuild endpoint security for AI

Ex-Meta and Snowflake execs raised a $180M Series A to prevent risky AI agents and dev tools from landing on employee devices in the first place.

Jaeden Schafer
Editor in Chief · · 5 min read
Glow exits stealth at $1.2B valuation to rebuild endpoint security for AI

Glow emerged from stealth on Wednesday with a $180 million all-equity Series A that values the endpoint security startup at $1.2 billion, making it a unicorn before it has publicly disclosed a single revenue metric. Sequoia Capital, Cyberstarts, Greenoaks, and Redpoint Ventures led the round, with Index Ventures, Swish Ventures, Lux Capital, Operator Collective, and Holly Ventures also participating. The Palo Alto-headquartered company was founded in 2025 and is pitching itself as the first endpoint platform built around the assumption that AI agents, not just humans, are now the primary things running on employee laptops.

The founding team is unusually senior for a company this young. CEO Roi Tiger was a vice president of engineering at Meta. Co-founder Omer Singer previously ran cybersecurity strategy at Snowflake. Ophir Arie was VP of research and development at industrial security firm Claroty, and Arnon Joseph is another former Meta engineering leader. Chief operating officer Emily Heath was CISO at United Airlines and DocuSign, sat on the board of Anthropic-rival-adjacent cloud security firm Wiz through its $32 billion acquisition by Google, and was previously a partner at Cyberstarts.

Glow's product thesis is that the endpoint has fundamentally changed. Employee devices used to run a bounded set of installed applications; they now host developer tools, AI coding assistants, autonomous agents, and thousands of open-source packages pulled in on demand. The company's platform uses AI agents to continuously map what is running across an enterprise's fleet, score risk in real time, and enforce policy before risky software or agents get installed.

Key facts

  • 01Glow raised a $180M all-equity Series A at a $1.2B valuation, led by Sequoia Capital, Cyberstarts, Greenoaks, and Redpoint Ventures.
  • 02The Palo Alto startup was founded in 2025 by former Meta VP Roi Tiger, ex-Snowflake security head Omer Singer, and ex-Claroty R&D VP Ophir Arie.
  • 03Glow employs nearly 100 people, with about 70% based in Israel and the rest in the US.
  • 04Typical customer deployments span tens of thousands of employee devices, with paying customers in healthcare, retail, and financial services.
  • 05The platform runs on Anthropic and Google Gemini models via Amazon Bedrock, targeting the market held by CrowdStrike, Microsoft, SentinelOne, and Palo Alto Networks.

Tiger argues that incumbents are structurally behind. Existing endpoint detection and response tools, he told TechCrunch, focus on detecting threats after they emerge inside the environment. Glow is designed to prevent risky software, AI agents, and developer tools from entering enterprise environments in the first place — a prevention-first frame that inverts the detect-and-respond posture that has defined the category for a decade.

The competitive set is not small. Glow enters a market dominated by CrowdStrike, Microsoft, SentinelOne, and Palo Alto Networks — four companies with a combined market capitalization measured in the hundreds of billions, deep channel presence, and existing seats on nearly every enterprise device that matters. Displacing an installed EDR agent is one of the hardest sales motions in security software.

Glow says it has already landed paying customers across healthcare, retail, and financial services, though it declined to name any of them or disclose count. Typical deployments span tens of thousands of employee devices across global organizations, according to Tiger — a size range that implies the company has moved past pilots and into production rollouts at large enterprises, which is unusual for a company only publicly disclosed this week.

The platform itself is built on top of external frontier models. Glow uses Claude from Anthropic and Gemini from Google, accessed through Amazon Bedrock, and layers its own software on top to provide enterprise context and improve reliability for security-specific tasks. According to Tiger, the platform has already blocked malicious npm packages from being installed in customer environments, caught AI agents attempting to pull in such packages, and flagged employee devices where existing EDR agents were missing or running with reduced functionality.

The pitch is landing in a market that has grown noticeably more anxious about AI-assisted attacks. Concerns intensified after Anthropic disclosed capabilities in its Mythos model around identifying and exploiting software vulnerabilities, and defenders are now reworking assumptions about how quickly a compromised endpoint can be turned into a foothold. Attackers using generative AI to automate phishing and generate malware compress the window between initial access and lateral movement, which is exactly the window Glow wants to close upstream.

Related · from this week
OpenAI expands Daybreak cyber service with new GPT-5.6-Cyber model
Jaeden Schafer · 4 min read →

The startup employs nearly 100 people, roughly 70% in Israel and the remainder in the US — a split that has become standard for a certain generation of cybersecurity companies incubated out of Cyberstarts. The all-equity structure of the Series A, with no debt component, gives Glow a long runway to expand headcount and go-to-market before it needs to defend the $1.2 billion mark.

Whether AI-native endpoint security becomes a category of its own — as cloud security did with Wiz — or gets absorbed into the roadmaps of the incumbents is the open question. Wiz's $32 billion outcome is what every Sequoia-and-Cyberstarts-backed security founder is now implicitly benchmarking against, and it is why a pre-revenue disclosure round can clear a billion-dollar valuation in a category that already has four public leaders.

The bet worth watching is not whether AI changes endpoint security — it clearly does — but whether prevention-at-install-time is a defensible wedge or a feature CrowdStrike and Microsoft can ship into their existing agents within eighteen months. Glow's team has the pedigree and the capital to find out, and its early production deployments suggest at least a handful of large enterprises are willing to run a second agent on their fleet to answer that question. If the incumbents move slowly, this is a $10 billion outcome. If they move quickly, it is an acquihire at a good price.

ShareXLinkedInEmail
AI Box

Every AI model. One chat.

The latest models from ChatGPT, Claude, Gemini, Sora, ElevenLabs — 80+ models in a single chat. Compare answers side by side. Pick the best one every time.

  • ChatGPT, Claude, Gemini, Grok, DeepSeek — in one chat
  • Generate images & video with Sora, Veo, Ideogram
  • Compare any two models side by side
  • From $8.99/mo · 80+ models, all included
Try AI Boxaibox.ai
Trusted by 3,000+ teams
Got a tip?

Working on something we should cover, or seeing a story we missed? Send leads, documents, or feedback to hello@aichatdaily.com. For sensitive tips, see our secure tips page for Signal and PGP options.

Spotted an error? Email hello@aichatdaily.com with the URL and the issue, or read our full corrections policy.

AI Box Daily briefingFree · Daily · No fluff

Stay ahead of everyone in AI.

The tightly edited AI news email engineers, founders, and investors actually open. One email. Every weekday. Five minutes to finish.

Loved by 10,000+ AI professionals
Free forever. Unsubscribe with one click.

The briefing read inside teams at

Keep reading

More from Security

OpenAI logo
Security

OpenAI expands Daybreak cyber service with new GPT-5.6-Cyber model

The frontier lab splits Daybreak into Blue and Red tiers, with a purpose-trained cyber model available only to trusted partners including Accenture and Crowdstrike.

Jaeden Schafer4 min read
Nvidia logo
Security

Open Secure AI Alliance drafts SAFE guidelines for agentic AI incident sharing

The 120-member Linux Foundation group opened a Request for Comments on shared incident reporting as Black Hat kicks off in Las Vegas.

Jaeden Schafer5 min read
Anthropic logo
Security

Anthropic Opens Claude Security Beta With CrowdStrike, Palo Alto, Big Four On Board

The code-scanning tool launches as Anthropic leans on cybersecurity, the one federal lane still open to it after Pentagon setbacks.

Jaeden Schafer4 min read