Back to Feed
AI SecuritySep 29, 2026

Rig Security Emerges From Stealth With $12M to Tackle Agentic AI Identity Risks

Rig Security raises $12M for its platform tackling AI agent identity risks.

Summary

Rig Security has launched with $12 million in seed funding to address the security risks posed by autonomous AI agents impersonating human identities. Their platform, featuring RICE and Bifrost, uses an identity dependency graph and endpoint sensors to distinguish between legitimate user actions and rogue AI agent behavior, allowing for policy enforcement without disrupting human users. The solution aims to secure enterprises adopting AI by managing the identities these agents operate under.

Full text

Rig Security has emerged from stealth with $12 million in seed funding and an identity protection platform built for the agentic era. The funding round was led by Ten Eleven Ventures and Brightmind Partners with participation from the CrowdStrike Falcon Fund and a range of angel investors. Tel Aviv-based Rig Security was founded in 2025 by Guy Kozliner (CEO). He was formerly a member of the CTO team at Wiz, the firm co-founded by its CTO Ami Luttwak and a pioneer in graph security solutions. Kozliner realized the graph approach he used at Wiz could also be applied to the new human/AI identity problem. Luttwak, noticeably, is one of Rig’s angel investors. Autonomous Ai agents adopt the identity of the developer or service that created or launched them. Once launched, they act with all the permissions of their assumed identity; but a SIEM cannot distinguish an action between the legitimate human user and a rogue or subverted agent. Anything the source user is allowed to do, the agent can also do with impunity. This breaks traditional security tooling. The standard approach is to block an unrecognized dangerous act. But rogue agents act at machine speed and independent of their creator, and this makes the standard remediation – disable the account – unusable, because it also blocks the employee. It is a new and dangerous gap in security. Identity has long been the dominant breach vector, but the arrival of autonomous agents acting independently and with apparently legitimate permissions has made a difficult situation much worse. Rig Security and the Rig platform intend to close this gap by understanding whether an action is the legitimate action of a permissioned user or the dangerous action of an agent using the user’s identity.Advertisement. Scroll to continue reading. “Today the most active identities in an enterprise are AI agents, and they are acting under human names. Security teams can see that an account did something dangerous. What they cannot see is whether a person did it or an agent did, and they cannot stop the agent without blocking the person,” comments Guy Kozliner, founder and CEO at Rig Security. “The problem is access that is broader than intended, ungoverned, and hiding behind human activity.” There are two primary components to the Rig solution: RICE (Rig identity correlation engine) and Bifrost (its endpoint sensor). Using ML and mathematical-modeling methods RICE resolves the same identity across identity providers, cloud infrastructure, on-premises systems, network edges and endpoints with a claimed >96% accuracy. It creates an identity dependencies graph mapping how identities are connected through accounts, permissions, sessions and trust relationships, and how those relationships can be abused. Bifrost is a lightweight sensor that watches identity behavior at its origin, distinguishes an AI agent’s session from the user’s own and enforces policy. It blocks a rogue or misused agent’s risky action without disrupting the person whose identity the agent borrowed. Together, they allow the Rig platform to provide identity security posture management (ISPM) and identity threat detection and response across AI and non-human identities. Other capabilities include identity correlation, AI discovery and attribution, runtime policy enforcement, and non-human identity security. The platform is already in production with Fortune 200 organizations across financial services, insurance, healthcare and technology. “Rig’s mission is to let enterprises adopt AI without losing control of the identities it runs on,” says Kozliner. The $12 million seed funding will be used to deepen the research and engineering behind Rig (particularly in detection and enforcement), expand the U.S. go-to-market team, and invest in the partner and channels. Related: Kontext Security Emerges With $4 Million for AI Agent Runtime Controls Related: Linux Foundation to Govern TRACE, an Open Standard for AI Runtime Attestation Related: Descope Raises $35 Million in Seed Round Extension Related: Scalekit Raises $5.5 Million to Secure AI Agent Authentication Written By Kevin Townsend Kevin Townsend is a Senior Contributor at SecurityWeek. He has been writing about high tech issues since before the birth of Microsoft. For the last 15 years he has specialized in information security; and has had many thousands of articles published in dozens of different magazines – from The Times and the Financial Times to current and long-gone computer magazines. Daily Briefing Newsletter Subscribe to the SecurityWeek Email Briefing for the latest cybersecurity threats, trends, and expert insights. More from Kevin Townsend IonQ Targets Quantum Error-Correction Bottleneck With Single-CPU DecoderOuterlimit Raises $16 Million to Stop Rogue AI Agents From Causing HarmCISO Conversations: Noopur Davis – The Accidental Global CISO at ComcastRansomware Attacks on Manufacturers Surge as Supply Chain Risk GrowsFirst Agentic AI Data Breach Reported to Spanish RegulatorEU Chief Warns of AI-Powered Hacking, Moves to Rein In Social Media$1 Million Sandbox Challenge Uncovers Linux Kernel FlawsThe Race to Control AI and Protect What Makes Us Human Latest News Four Cyber Threats Harboring Big Plans for the FutureOpenAI Calls Off GPT-6.1 Astra Launch, Details Safety Cases for Frontier TrainingDutch Police Arrest Convicted Hacker in ShinyHunters InvestigationDaemon Tools Hackers’ NeedyMantis Malware Dissected by MicrosoftApple Patches Zero-Day Linked to ‘Extremely Sophisticated Attack’ Modulate Raises $25 Million to Advance Deepfake DetectionCall for Presentations Open for 2026 CISO Forum Virtual SummitPrison Sentence for Former US Soldier Who Hacked AT&T and Verizon Trending Daily Briefing NewsletterSubscribe to the SecurityWeek Email Briefing to stay informed on the latest threats, trends, and technology, along with insightful columns from industry experts. Webinar: Securing AI Agents, MCPs, and AI Automations October 7, 2026 Learn how to address potential risks and not restrict AI adoption in your organization. See what a centralized AI gateway is and how it works in practice. Register Virtual Event: Zero Trust & Identity Strategies Summit 2026 October 14, 2026 Join as we decipher the world of zero trust and share war stories on securing an organization by eliminating implicit trust and continuously validating every stage of a digital interaction. Register People on the MoveDoppel has named Joey Rachid as Chief Security Advisor and Field Chief Information Security Officer.Delinea has appointed Timothy Regan as Chief Financial Officer.Gwen Gann has become State Chief Information Security Officer for the State of Washington at WaTech.More People On The MoveExpert Insights Four Cyber Threats Harboring Big Plans for the Future - AI, supply-chain exposure, quantum computing and geopolitical conflict are testing security programs. Preparing for disruption must become part of day-to-day operations. (Steve Durbin) Begin at the End: How to Enable Agentic Remediation Agentic remediation is not an act of faith. We are talking about fixing known problems, not judgment calls about unfamiliar risk. (Nadir Izrael) “We Think the Security Control Is Working” Is No Longer Good Enough Point-in-time audits and sampled assessments offer only snapshots; continuous control monitoring provides evidence that security controls are working today. (Sravish Sridhar) This Key Will Self-Destruct: An Open Standard for Revocable API Keys Every leaked credential should be dead, or dying, within sixty seconds of being found. Here's a proposal to make that the default. (Matt Honea) What the Hugging Face Incident Teaches Security Leaders About AI Agent Access Security teams must treat autonomous agents as highly privileged identities. (Etay Maor) Flipboard Reddit Whatsapp Whatsapp Email

Entities

Rig Security (vendor)Ten Eleven Ventures (vendor)Brightmind Partners (vendor)CrowdStrike (vendor)Wiz (vendor)RICE (product)