Stairwell
A technically credible team with strong early investor backing (Sequoia, Accel) pursuing a genuinely different architecture for threat hunting, but public evidence of named enterprise customers and recent funding momentum is limited.
Visit Website ↗ + Add to Compare Claim This CompanyInnovation Matrix Assessment
Built around a 'ground truth' file/telemetry inspection engine designed to detect threats attackers can't see or evade, founded by the former Chronicle (Google) CSO -- a genuinely novel architectural bet on continuous file inspection rather than signature/behavior-only detection.
Public customer names and deployment scale are not detailed in the sources reviewed, limiting visibility into breadth of production use despite a credible founding team.
$69.5M total raised, with a $20M Series A co-led by Sequoia Capital and Accel; no larger round has been publicly reported since 2021, suggesting momentum has cooled relative to more recently-funded peers.
Rethinking endpoint/threat-hunting architecture around comprehensive, queryable file 'ground truth' is a meaningfully different approach versus traditional EDR, though it remains a technical refinement within the broader detection-and-response category.
Efficacy claims rest primarily on founder pedigree (ex-Chronicle/Google CSO) and investor quality rather than published independent test results or named customer outcomes.
Threat hunting and retrospective compromise detection remain durable needs as attackers increasingly evade real-time detection.
Why CISOs Should Care
Stairwell gives security teams a continuously indexed 'ground truth' of every file across their environment, so they can retroactively hunt for threats that evaded detection at the time of compromise rather than relying solely on real-time alerts.
What Makes It Different
Built by former Chronicle (Google's security moonshot) CSO Mike Wiacek around comprehensive file inspection and historical searchability, differentiating from point-in-time EDR/AV tools that only flag what they catch in the moment.
The Matrix Verdict
65/100 — INCREMENTAL INNOVATOR
A technically credible team with strong early investor backing (Sequoia, Accel) pursuing a genuinely different architecture for threat hunting, but public evidence of named enterprise customers and recent funding momentum is limited.
Editorial Note: Claims vs. Verified Findings
Public information on named customers and independent efficacy testing is limited; claims rely substantially on founder pedigree and investor backing.
Sources
Alternatives to Stairwell
Unknown Cyber Inc.
CISO ReviewedMalware genomics platform using automated deep static analysis and code-lineage comparison to identify unseen malware, variants, and supply-chain…
Synack Inc
A penetration-testing-as-a-service platform pairing a vetted researcher community with AI-driven attack surface discovery for continuous security validation.
Horizon3.ai
Autonomous penetration testing company whose NodeZero platform self-attacks networks without persistent agents, aiming to replace annual manual pentests…
Airlock Digital
Application allowlisting (deny-by-default) platform that blocks unapproved executables, scripts, and processes to prevent ransomware and malware execution.
Cogent Security
Agentic AI platform that autonomously triages, investigates, and remediates vulnerabilities as a force multiplier for security teams.
Reality Defender
Deepfake and synthetic media detection company offering real-time detection across voice, video, image, and text for enterprises and…