Skip to content

Cydelphi

Cydelphi is an AI-native digital forensics and incident response platform aiming to compress catastrophic breach recovery from months to days.

Visit Website ↗ + Add to Compare Claim This Company
48/100Emerging / Unranked

Overview

Cydelphi, founded in 2024 and based in Dallas, Texas, builds an AI-native digital forensics and incident response (DFIR) platform. It was co-founded by Ron Newman, Lee Patenaude, and Doron Kolton, with an R&D team based in Israel bringing a combined two decades of hands-on incident response experience.

The company’s stated goal is to automate the labor-intensive parts of breach investigation and recovery — evidence collection, timeline reconstruction, and remediation planning — that today typically require an elite (and expensive) incident response team, using a framework it calls PIC³RS. The pitch is “operator-first” design informed by practitioners who have run real breach responses, rather than a theoretical automation layer bolted onto existing SIEM/SOAR tooling.

Cydelphi emerged from stealth in February 2026 with a $3 million seed round led by Glasswing Ventures, alongside Blu Ventures, Hyde Park Angels, and Merlin Group. As a pre-revenue, seed-stage company, it has not yet published named customers or independently verified recovery-time metrics, so its claims about compressing recovery timelines remain vendor-stated for now.

Innovation Matrix Assessment

Innovation Velocity 6/10

Applies AI automation to traditionally manual, expert-driven DFIR workflows, built by practitioners with two decades of combined incident-response experience.

Operational Value 6/10

Breach recovery speed is a top CISO pain point; automating evidence collection and remediation planning would have real operational value if delivered as described.

Market Momentum 3/10

Only a $3M seed round and no named customers at this very early, pre-revenue stage; too new for demonstrated market traction.

Category Disruption 5/10

AI-native DFIR is a meaningful shift from manual, consulting-led incident response, though several other startups are pursuing similar automation.

Real-World Efficacy 3/10

No independent validation, named incidents handled, or customer references exist yet; the "months to days" recovery claim is entirely vendor-stated.

Enduring Relevance 6/10

Faster breach recovery remains a durable security need regardless of how the specific threat landscape evolves.

Why CISOs Should Care

Aims to give organizations without an elite in-house IR team access to faster, more structured breach recovery during a crisis.

What Makes It Different

Built by working incident responders around an operator-first framework (PIC³RS) rather than as an automation layer added to existing SIEM/SOAR products.

The Matrix Verdict

48/100 — EMERGING / UNRANKED

An Emerging/Unranked company: credible founding team and a real problem focus, but too early-stage — no named customers, no independent validation — to score above the Incremental threshold yet.

Editorial Note: Claims vs. Verified Findings

All efficacy and recovery-time claims are vendor-stated from the stealth-exit announcement; no independent case study, named customer, or third-party benchmark was found.

Sources