Connect with us

Hi, what are you looking for?

SecurityWeekSecurityWeek

Cybersecurity Funding

Kevin Mandia’s Armadin Raises $255 Million at $2.5 Billion Valuation

The Series B brings the AI-powered offensive security startup’s total funding to roughly $445 million only seven months after its public launch.

Armadin, the AI-native cybersecurity startup founded by Mandiant founder Kevin Mandia, has raised $255.5 million in Series B funding at a valuation topping $2.5 billion.

The company has now raised a total of $445 million only seven months after its public launch.

Mandia founded Mandiant in 2004 and sold the incident response and threat intelligence firm to FireEye in a $1 billion deal in 2014 before its later $5.4 billion acquisition by Google

Andreessen Horowitz and existing investor Accel co-led the round, with participation from new investors Bain Capital Ventures and Redpoint.

The new investment comes just months after Armadin formally launched with $189.9 million in funding in March 2026.

Armadin had previously surfaced quietly in late 2025 with an initial $24 million seed investment.

Advertisement. Scroll to continue reading.

The Palo Alto, California-based company will use the latest funding to expand its agentic security platform and scale its research, model training, and go-to-market operations.

Kevin Mandia, founder and CEO of Armadin
Kevin Mandia previously founded Mandiant, which was acquired by FireEye for $1 billion in 2014 and later by Google for $5.4 billion.

Armadin was founded to address what Mandia sees as a growing mismatch between AI-powered attackers and conventional security defenses. As frontier models reduce the time and expertise required to discover and exploit vulnerabilities, the company argues that periodic penetration tests and vulnerability scanners cannot provide an accurate, continuously updated picture of an organization’s exploitable risk.

“AI lets an attacker find and chain weaknesses faster than any human team can respond,” Mandia said in the company’s funding announcement.

Rather than assess individual vulnerabilities in isolation, Armadin deploys swarms of specialized AI agents designed to behave like skilled adversaries. The agents probe an organization’s attack surface, attempt to exploit weaknesses, and combine seemingly minor security issues into validated attack paths.

Those paths can extend from an internet-facing vulnerability through lateral movement and ultimately to the compromise of cloud resources or sensitive systems. The company says its platform shows customers the paths that attackers could use, along with the potential blast radius, allowing defenders to address exploitable risks instead of responding to thousands of disconnected security findings.

The company says it is already running agentic attack campaigns in production for Fortune 500 companies and government customers.

In August, Armadin and agentic security operations provider TENEX.ai conducted a live AI cyberattack during a three-day exercise. During the exercise, Armadin launched 1,300 attacks involving 26,000 agents and approximately 17 million offensive actions against more than 25,000 services. The exercise produced 238 security findings, including 98 described as significant, and chained them into 38 validated attack paths.

The agents operated without privileged credentials, source code access, or whitelisting of security controls, according to the company. Armadin says each action passed through a control layer overseen by a safety model trained using feedback from human security experts.

Mandia serves as Armadin’s chief executive. His co-founders include CTO Travis Lanham, chief offensive security officer Evan Peña, and chief architect David Slater.

Existing backers 8VC, Ballistic Ventures, GV, In-Q-Tel, Kleiner Perkins, and Menlo Ventures also participated in the funding.

Related: Island Raises $400 Million at $6.4 Billion Valuation

Related: Cyera Raises $400 Million at $12+ Billion Valuation

Written By

For more than 15 years, Mike Lennon has been closely monitoring the threat landscape and analyzing trends in the National Security and enterprise cybersecurity space. In his role at SecurityWeek, he oversees the editorial direction of the publication and is founder and director of several leading cybersecurity industry conferences around the world.

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing for the latest cybersecurity threats, trends, and expert insights.

Trending

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing to stay informed on the latest threats, trends, and technology, along with insightful columns from industry experts.

Learn how to address potential risks and not restrict AI adoption in your organization. See what a centralized AI gateway is and how it works in practice.

Register

Join as we decipher the world of zero trust and share war stories on securing an organization by eliminating implicit trust and continuously validating every stage of a digital interaction.

Register

People on the Move

Lumen Technologies has named Kim Keever as CSO.

Quantum Secure Encryption Corp. has appointed Joseph Hall as CIO.

David Cass has joined Grayscale Investments as Chief Risk Officer.

More People On The Move

Expert Insights

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing to stay informed on the latest cybersecurity news, threats, and expert insights. Unsubscribe at any time.